Home / os / winmobile

Barco WePresent file_transfer.cgi Command Injection

Posted on 14 January 2020

This Metasploit module exploits an unauthenticated remote command injection vulnerability found in Barco WePresent and related OEM'ed products. The vulnerability is triggered via an HTTP POST request to the file_transfer.cgi endpoint.

 

TOP