Code from highly respected F5 enterprise web security appliances basically runs tar as root on input from HTTP at /mgmt/tm/util/bash URL π€ And it's 2021.
Just an extra admin console :)
https://github.com/h4x0r-dz/RCE-Exploit-in-BIG-IP/blob/main/f5_rce.py
@kravietz It's good to leave the backdoor open in case you forget your keys right?
@kravietz 77 lines to own a "security" appliance π€£
A *Respected* Enterprise Security Appliance!
@kravietz what could possibly go wrong?