漏洞关键信息 EDB-ID: 42427 CVE: 2017-11320 Author: GEOLADO Type: WEBAPPS Platform: HARDWARE Date: 2017-08-03 Vulnerable App: Technicolor TC7337 漏洞描述 Device: Technicolor TC7337 Vulnerable URL: Vulnerability: Persistent Cross-Site Scripting (XSS) through SSID 漏洞利用方式 1. XSS through SSID: - Inject SSA tag with source to an attacker's server. - Example: 2. Exploitation Functions: - : Retrieves admin credentials and Wi-Fi passphrase from backup settings. - : Reboots the router using XSS + CSRF. - : Alters DNS configuration to point to the attacker's DNS server. 时间线 08/07/2017: First email sent to the vendor (no answer) 16/07/2017: Second email sent to the vendor (no answer) 18/07/2017: Third email sent to the vendor (no answer) 02/08/2017: Full Disclosure