Description
COMMAX Smart Home System CDP-1020n contains an SQL injection vulnerability that allows attackers to bypass authentication by injecting arbitrary SQL code through the 'id' parameter in 'loginstart.asp'. Attackers can exploit this by sending a POST request with malicious 'id' values to manipulate database queries and gain unauthorized access.
Problem types
CWE-89: Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')
Product status
CDP-1020n
481 System
Credits
LiquidWorm as Gjoko Krstic of Zero Science Lab
References
www.exploit-db.com/exploits/50207 (ExploitDB-50207)
www.commax.com (Official Product Homepage)
www.zeroscience.mk/en/vulnerabilities/ZSL-2021-5662.php (Zero Science Lab Disclosure (ZSL-2021-5662))
github.com/zeroscience (Zero Science GitHub Repository)
www.vulncheck.com/...tem-sql-injection-authentication-bypass (VulnCheck Advisory: COMMAX Smart Home IoT Control System SQL Injection Authentication Bypass)