11/08/2022
200.000 Routers Vulnerable To Critical RCE Vulnerability π‘π‘οΈ
A recent study found a critical vulnerability that could allow an unauthorised attacker to execute arbitrary code. The exposure has a maximum score of 10.0 and affects 29 router models.
To exploit the vulnerability, an attacker does not require credentials or user interaction - an attack on devices in a standard configuration can be easily carried out over the Internet or a local network.
This vulnerability allows hackers to perform many dangerous actions, such as:
π‘οΈ Full device capture;
π‘οΈ Gaining access to information about the victim;
π‘οΈ Preparing the ground for MitM attacks;
π‘οΈ Change DNS settings;
π‘οΈ Using routers as part of a botnet for DDoS attacks and crypto miners;
π‘οΈ Gaining access to devices connected to a hacked network.
At least 200,000 of the 700,000 routers discovered are vulnerable. The remaining 500,000 can also be attacked by hackers, but only through the local network and cross-site request forgery. To take control of the device's OS, an attacker only needs to use a set of base64-encoded credentials that are entered in the login fields.