Potential backdoor in Dell Kayce K1000 Appliance

  • 11 March 2014
  • 0 replies
  • 444 views

Userlevel 7
Badge +56
  • Retired Webrooter
  • 6752 replies
The "secret" value is hardcoded into the application and cannot be changed by the end user (backdoor++;). Once an attacker knows this value, they are able to bypass the authorization check and upload a file to the server. 
 
Read the rest here, found on reddit.

0 replies

Be the first to reply!

Reply