Files
CVEs-PoC/2020/CVE-2020-8816.md
T
2024-05-25 21:48:12 +02:00

33 lines
1.4 KiB
Markdown

### [CVE-2020-8816](https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2020-8816)
![](https://img.shields.io/static/v1?label=Product&message=n%2Fa&color=blue)
![](https://img.shields.io/static/v1?label=Version&message=n%2Fa&color=blue)
![](https://img.shields.io/static/v1?label=Vulnerability&message=n%2Fa&color=brighgreen)
### Description
Pi-hole Web v4.3.2 (aka AdminLTE) allows Remote Code Execution by privileged dashboard users via a crafted DHCP static lease.
### POC
#### Reference
- http://packetstormsecurity.com/files/157861/Pi-Hole-4.3.2-DHCP-MAC-OS-Command-Execution.html
- http://packetstormsecurity.com/files/158737/Pi-hole-4.3.2-Remote-Code-Execution.html
#### Github
- https://github.com/0xT11/CVE-POC
- https://github.com/ARPSyndicate/cvemon
- https://github.com/AndreyRainchik/CVE-2020-8816
- https://github.com/MartinSohn/CVE-2020-8816
- https://github.com/Ostorlab/KEV
- https://github.com/Ostorlab/known_exploited_vulnerbilities_detectors
- https://github.com/cybervaca/CVE-2020-8816
- https://github.com/developer3000S/PoC-in-GitHub
- https://github.com/hectorgie/PoC-in-GitHub
- https://github.com/martinsohn/CVE-2020-8816
- https://github.com/nomi-sec/PoC-in-GitHub
- https://github.com/pengusec/awesome-netsec-articles
- https://github.com/soosmile/POC
- https://github.com/stefanman125/CyberSci-pizzashop
- https://github.com/team0se7en/CVE-2020-8816