Athos-Zago/CVE-2024-30973

Athos-Zago/CVE-2024-30973

Releases0
POC VIDEO - https://youtu.be/hNzmkJj-ImM?si=NF0yoSL578rNy7wN

CVE History

CVEPublishedCVSS v3CVSS v2
8.8 HIGH

An issue in V-SOL G/EPON ONU HG323AC-B with firmware version V2.0.08-210715 allows an attacker to execute arbtirary code and obtain sensitive information via crafted POST request to /boaform/getASPdata/formFirewall, /boaform/getASPdata/formAcc.