This demo will be done by exploiting a bug to place a binary on the NAS.
Then we will be using that binary along with multiple root remote command execution bugs to write to the screen on the NAS.
To speed up the demo based on the number of vulnerabilities, each vulnerability will write “RCE” and an ID number to the screen.
This entire process is scripted to demo multiple vulnerabilities in a short period of time.
Details and a thorough analysis of each of the vulnerabilities can be found on our wiki at https://Exploitee.rs
Hack Everything.
- Exploitee.rs