CVE-2021-37292: KevinLAB BEMS (Building Energy Management System) – Backdoor Account

CVE-2021-37292: KevinLAB BEMS (Building Energy Management System) - Backdoor Account-渗透云记 - 专注于网络安全与技术分享
CVE-2021-37292: KevinLAB BEMS (Building Energy Management System) – Backdoor Account
此内容为付费阅读,请付费后查看
100积分
付费阅读

漏洞标题

CVE-2021-37292: KevinLAB BEMS (Building Energy Management System) – Backdoor Account

漏洞描述

KevinLAB BEMS has an undocumented backdoor account, and these sets of credentials are never exposed to the end-user and cannot be changed through any normal operation of the solution through the RMI. An attacker could exploit this vulnerability by logging in using the backdoor account with highest privileges for administration and gain full system control. The backdoor user cannot be seen in the users settings in the admin panel, and it also uses an undocumented privilege level (admin_pk=1) which allows full availability of the features that the BEMS is offering remotely.

PoC代码

© 版权声明
THE END
喜欢就支持一下吧
点赞0 分享