You signed in with another tab or window. Reload to refresh your session.You signed out in another tab or window. Reload to refresh your session.You switched accounts on another tab or window. Reload to refresh your session.Dismiss alert
name: AMTT Hotel Broadband Operation System (HiBOS) - Command Injection
author: a-b-r-o-w
severity: critical
description: |
AMTT Hotel Broadband Operation System (HiBOS) contains an unauthenticated blind command injection caused by improper validation of the ip parameter in /manager/radius/server_ping.php, letting remote attackers execute arbitrary system commands as the web server user, exploit requires no authentication.