Sploitus

Exploit for Incorrect Default Permissions in Ui Unifi Controller

gitee Β· 2020-08-08

Exploit Code

MARKDOWN10 lines
## https://sploitus.com/exploit?id=4E80B018-2C1F-5E7B-97CF-3B5BB762C436
This is a PoC exploit for CVE-2020-12695, a vulnerability in the CallStranger protocol. The script is designed to check against this vulnerability and demonstrate its exploitation. The vulnerability allows an attacker to bypass DLP (Data Loss Prevention) and exfiltrate data, use millions of Internet-facing UPnP devices as a source of amplified reflected TCP DDoS/SYN Flood, and scan internal ports from Internet-facing UPnP devices.

The script uses the upnpy library for UPnP communication and sends a SUBSCRIBE request to the UPnP device. If the request is successful, it prints a success message. The script also discovers devices on the local network and lists their services.

The script is written in Python and has a simple command-line interface. It takes a URL as input and sends a SUBSCRIBE request to it. If the request is successful, it prints a success message.

The script is designed to be used for educational purposes only and should not be used for malicious activities. The script only simulates data exfiltration and does not actually exfiltrate any data.

The script has a simple license and is released under the MIT License. The license allows for free use, modification, and distribution of the script, as long as the copyright notice and permission notice are