CVE-2021-47851

Published
View on NVD ↗
CVSS v3
9.8
CRITICAL
CVSS v2
N/A
Affected
1
PROJECT

Description

Mini Mouse 9.2.0 contains a remote code execution vulnerability that allows attackers to execute arbitrary commands through an unauthenticated HTTP endpoint. Attackers can leverage the /op=command endpoint to download and execute payloads by sending crafted JSON requests with malicious script commands.

=============================== Support WinXP/Vista/7/810&Mac&Other Phone =============================== ****** Phone Control Computer ****** ● Wireless Mouse,Keyboard ● Play Computer's Video/Music ● Computer Screen Shot ● Computer Application management ● Computer Windows Control(Like Maximize,Minimize) ● Computer Keyboard become iPhone Keyboard ● View Computer Documents(Like XLS,PPT,WORD,TXT) ● Image Transfer ● Record Video and Upload to computer ● PPT Remote Control ● Shut Down / Sleep / Restart / Log Off Remotely ● Password Protection ● Support Hotspot Connect ● Volume Control ● Program Control(Remote Open/Close, Activate...) ● File Upload/Download With Computer ● Browser Control ● Contacts Backup ● Your Phone Will Become Your Computer ****** Phone Control Phone ****** ● File Transfer With Each Other ● Play Other Phone's Video,Music ● View Other Phone's Documents(Like XLS/PPT/WORD) ● Get Other Phone's Contacts Data ● Get Other Phone's Album Data OK, Let's DO IT!!! [VIP Member Renewal Instructions] — Subscription period: 7 days, 1 month, 3 months, 1 year (continuous subscription products). — Subscription price: RMB 3/7 days, RMB 8/1 month, RMB 16/3 months, RMB 58 / year. — Payment: The user confirms the purchase and pays it to the iTunes account. — Users can manage their subscriptions and automatic updates through their account settings. — Cancel Renewal: To cancel the renewal, please manually turn off the automatic renewal function in iTunes / Apple ID settings management 24 hours before the current subscription period expires. — Renewal: Member's own recharge account or Apple iTunes account will be deducted within 24 hours before the expiration date. After the deduction is successful, the subscription period will be extended by one subscription period. — Privacy Policy: http://www.iot1001.com/legal/ysxy_en.html — Terms of Use: http://www.iot1001.com/legal/fwxy_en.html
Apple App StoreApple App Store