SSD Advisory – TerraMaster OS exportUser.php Remote Code Execution

TL;DR Find out how we exploited an unauthenticated TerraMaster OS vulnerability and gained root access to the device. Vulnerability Summary TerraMaster Operating System (TOS) is an operating system designed for TNAS devices. Invalid parameter checking in TOS leads to an unauthenticated Remote Code Execution vulnerability in the product, further to that the executed code runs …

SSD Advisory – TerraMaster OS exportUser.php Remote Code Execution Read More »