Home page logo

nmap-dev logo Nmap Development mailing list archives

[NSE] NSE Script for D-link DSR routers (CVE 2013-5945)
From: Paul AMAR <aos.paul () gmail com>
Date: Mon, 23 Dec 2013 14:11:23 +0100

Hi everybody,

I created a NSE script for CVE 2013-5945 (
This script tries to do SQL injection on the login form to log as an admin
using those credentials:

*login* : admin
*password* : ' or 'a'='a

To try it :

*./nmap -p 443 --script http-vuln-cve2013-5945.nse*

To test it, I discussed with the author of those vulnerabilities (nu11) to
try it and the script is working fine.

Don't hesitate to test it and/or give me any feedback.


Attachment: http-vuln-cve2013-5945.nse

Sent through the dev mailing list
Archived at http://seclists.org/nmap-dev/

  By Date           By Thread  

Current thread:
[ Nmap | Sec Tools | Mailing Lists | Site News | About/Contact | Advertising | Privacy ]