Congratulations to @wdormann & @briankrebs on identifying this stunning bug https://kb.cert.org/vuls/id/498544/
- with a PoC tester that injects "/sbin/halt" to power off an affected device https://kb.cert.org/artifacts/cve-2020-9054.html … #CVE-2020-9054 PoC makes interesting reading, exploit is in rebootnas(); func.
-
-
I have not encountered Alex before, my tweet meant him no offense! It's a cool bug and also quite quite ridiculous at the same time. :)
Thanks. Twitter will use this to make your timeline better. UndoUndo
-
-
-
This Tweet is unavailable.
-
Ah, but a VU# can be one or multiple vulnerabilities! So maybe I didn't break any rules? And if it's misinterpreted, I don't think I'll feel bad about it.
- 4 more replies
-
Loading seems to be taking a while.
Twitter may be over capacity or experiencing a momentary hiccup. Try again or visit Twitter Status for more information.