Linear eMerge E3-Series Access Controller Command Injection

Discussion in 'News Aggregator' started by Packet Storm, 5 Jan 2023.

  1. Packet Storm

    Packet Storm Guest

    This Metasploit module exploits a command injection vulnerability in the Linear eMerge E3-Series Access Controller. The Linear eMerge E3 versions 1.00-06 and below are vulnerable to unauthenticated command injection in card_scan_decoder.php via the No and door HTTP GET parameter. Successful exploitation results in command execution as the root user.

    Continue reading...
     

Share This Page

Loading...