BYOB Unauthenticated Remote Code Execution Exploit
Discription

This Metasploit module exploits two vulnerabilities in the BYOB (Build Your Own Botnet) web GUI. It leverages an unauthenticated arbitrary file write that allows modification of the SQLite database, adding a new admin user. It also uses an authenticated command injection in the payload generation page. These vulnerabilities remain…Read More

Back to Main

Subscribe for the latest news: