Skip to content
This repository has been archived by the owner on Aug 13, 2024. It is now read-only.
/ routeros Public archive

Commit

Permalink
Updated HF set tracefile PoC README again
Browse files Browse the repository at this point in the history
Correcting version range.
  • Loading branch information
jacob-baines authored Aug 26, 2019
1 parent 475a84f commit 8ad991b
Showing 1 changed file with 1 addition and 1 deletion.
2 changes: 1 addition & 1 deletion poc/hf_tracefile/README.md
Original file line number Diff line number Diff line change
@@ -1,6 +1,6 @@
# HackerFantastic Set Tracefile PoC over 8291

In December of 2018, [@HackerFantastic](https://twitter.com/hackerfantastic) dropped a [zero day](https://seclists.org/fulldisclosure/2018/Dec/28) that allows authenticated users to create arbitrary files on MikroTik's RouterOS. HackerFantastic pointed out that this was a create way to create the backdoor file on versions 3.x through 6.41.4. HF's PoC only showed how to manually exploit this vulnerability though. This PoC will automatically do it over the router's Winbox protocol.
In December of 2018, [@HackerFantastic](https://twitter.com/hackerfantastic) dropped a [zero day](https://seclists.org/fulldisclosure/2018/Dec/28) that allows authenticated users to create arbitrary files on MikroTik's RouterOS. HackerFantastic pointed out that this was a create way to create the backdoor file on versions 3.x through 6.42.0. HF's PoC only showed how to manually exploit this vulnerability though. This PoC will automatically do it over the router's Winbox protocol.

This specific implementation only enables the /pckg/option backdoor (6.41 - 6.42.0).

Expand Down

0 comments on commit 8ad991b

Please sign in to comment.