Chocapikk / CVE-2024-3273

D-Link NAS CVE-2024-3273 Exploit Tool
92 stars 20 forks source link

Not exactly a issue (Data Exifiltration ) #3

Open Altaireo opened 1 day ago

Altaireo commented 1 day ago

Hi, wonderful tool....i have been tinkering and playing around it with in my own time for a while now. I have noticed that these old dlinks run busybox whic is extremely restricted, so how would one exactly exfiltrate data without scp or rsync (even ftp doesnt seem to start).

Im still a student so i was tryna research more on this...any knowledge is appreciated tq

Chocapikk commented 1 day ago

Hi, thanks for your feedback.

Basically, since PHP is on the system you can make sure to send the data using PHP code. Otherwise what is possible to do is to rewrite the admin hash in /etc/shadow and you can log in to the panel like a regular user and therefore view the documents.