Hacker News new | ask | show | jobs
by bill_mcgonigle 30 days ago
For those wondering this gives full system compromise to an authenticated user with permissions to edit the firewall, AIUI.

Nasty but I was expecting a remote unauthenticated attack at 9.9. Hopefully you don't allow admin on WAN!

Thanks for finding the bugs and writing about the design pattern problem, HackerAsk.