.. / CVE-2021-31755

Exploit for Tenda Router AC11 - Remote Command Injection (CVE-2021-31755)

Description:

Tenda Router AC11 is susceptible to remote command injection vulnerabilities in the web-based management interface that could allow an unauthenticated, remote attacker to perform command injection attacks against an affected device.

Nuclei Template

View the template here CVE-2021-31755.yaml

Validate with Nuclei

echo "$URL" | nuclei -t ~/nuclei-templates/http/cves/2021/CVE-2021-31755.yaml
Copy

References:

https://nvd.nist.gov/vuln/detail/CVE-2021-31755
https://github.com/Yu3H0/IoT_CVE
https://github.com/Yu3H0/IoT_CVE/tree/main/Tenda/CVE_3
https://github.com/Ostorlab/known_exploited_vulnerbilities_detectors
https://www.fortinet.com/blog/threat-research/the-ghosts-of-mirai