digdat0 / DUMLSploit

Happy 4th of July! have some dated 0day...

Geek Repo:Geek Repo

Github PK Tool:Github PK Tool

DUMLsploit

Known exploits that can be pushed via DUML upgrade process.

TarAndFeather.rb - exploits system() and popen() of "rm" command on unsanatized file names.

Initial manifestation found by jan2642, dji_sys shown to execute system("rm %s") and system("rm -rf %s") depending on AC and firmware version

jan2642 system exploit

Secondary manifestation found by hostile, dji_sys shown to execute popen() on file names passed to the dji_verify command.

hostile popen exploit

About

Happy 4th of July! have some dated 0day...


Languages

Language:Ruby 100.0%