mirror of
https://github.com/0xMarcio/cve.git
synced 2026-05-09 19:17:37 +02:00
710 B
710 B
CVE-2017-8894
Description
AeroAdmin 4.1 uses an insecure protocol (HTTP) to perform software updates. An attacker can hijack an update via man-in-the-middle in order to execute code in the machine.
POC
Reference
- https://www.tarlogic.com/advisories/Tarlogic-2017-001.txt
- https://www.tarlogic.com/advisories/Tarlogic-2017-001.txt
Github
No PoCs found on GitHub currently.