Advantech SUSIAccess versions 3.0 and below suffers from a RecoveryMgmt file upload vulnerability.
7afddd81c9bc2a2655ff371abde673b9ce3d5c9f80dd813d96f9a3659935c76d
This Metasploit module exploits an information disclosure vulnerability found in Advantech SUSIAccess versions 3.0 and below. The vulnerability is triggered when sending a GET request to the server with a series of dot dot slashes (../) in the file parameter.
987feed6e20b7d8688f866350e62c7ccd8559ac0d7a669fdd86a82be99cf233c