mirror of
https://github.com/0xMarcio/cve.git
synced 2026-05-09 19:17:37 +02:00
890 B
890 B
CVE-2016-6255
Description
Portable UPnP SDK (aka libupnp) before 1.6.21 allows remote attackers to write to arbitrary files in the webroot via a POST request without a registered handler.
POC
Reference
- https://www.exploit-db.com/exploits/40589/
- https://www.exploit-db.com/exploits/40589/
- https://www.tenable.com/security/research/tra-2017-10
- https://www.tenable.com/security/research/tra-2017-10