Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

CVE-2016-5640 PoC — Crestron AirMedia AM-100 目录遍历漏洞

Source
Associated Vulnerability
Title:Crestron AirMedia AM-100 目录遍历漏洞 (CVE-2016-5640)
Description:Directory traversal vulnerability in cgi-bin/rftest.cgi on Crestron AirMedia AM-100 devices with firmware before 1.4.0.13 allows remote attackers to execute arbitrary commands via a .. (dot dot) in the ATE_COMMAND parameter.
Description
Crestron AirMedia AM-100 RCE (CVE-2016-5640) Metasploit Module
Readme
# CVE-2016-5640
Crestron AirMedia AM-100 RCE (CVE-2016-5640) Metasploit Module

Module for exploiting a Remote Command Injection vulnerability in the wireless diagnostics page for Crestron AirMedia AM-100 devices with a firmware version <1.4.0.13. Commands execute as the account running the service (i.e. usually root). An older exploit I worte a module for because I wanted experience writing checks and using the cmdstager .

All credit for the original exposure and writeup of the vulnerabilities should go to Cylance, I guess: https://github.com/CylanceVulnResearch/disclosures/blob/master/CLVA-2016-05-001.md
File Snapshot

[4.0K] /data/pocs/8df33964ee45d3bddfd47b3a58b42fc0b64ef0a8 ├── [5.5K] crestron_exploit.rb └── [ 615] README.md 0 directories, 2 files
Shenlong Bot has cached this for you
Remarks
    1. It is advised to access via the original source first.
    2. Local POC snapshots are reserved for subscribers — if the original source is unavailable, the local mirror is part of the paid plan.
    3. Mirroring, verifying, and maintaining this POC archive takes ongoing effort, so local snapshots are a paid feature. Your subscription keeps the archive online — thank you for the support. View subscription plans →