Sploitus

Exploit for Improper Restriction of Operations within the Bounds of a Memory Buffer in Treck Tcp/Ip

githubexploit Β· 2022-11-30

Exploit Code

README9 lines
## https://sploitus.com/exploit?id=6D57A04B-EAC5-5368-80D9-79413083CC5F
Ripple20 Exploit: Digi Connect ME 9210
======================================

Authors: Moshe Kol, Shlomi Oberman

This repository contains a PoC exploit for CVE-2020-11896, a critical heap-based buffer overflow vulnerability in the Track TCP/IP stack (part of the Ripple20 vulnerability suite). 

The exploit achieves remote code execution (RCE) on a Digi Connect ME 9210 device running NET+OS 7.5. You can find the full write-up [here](https://www.jsof-tech.com/wp-content/uploads/2020/06/JSOF_Ripple20_Technical_Whitepaper_June20.pdf).