diff --git a/CVE b/CVE new file mode 100644 index 0000000000000000000000000000000000000000..2171c8c75c4704c9a93d9aff62b13271f4c7af36 --- /dev/null +++ b/CVE @@ -0,0 +1,3 @@ +CVE-2018-1000500 +Busybox contains a Missing SSL certificate validation vulnerability in The "busybox wget" applet that can result in arbitrary code execution. +This attack appear to be exploitable via Simply download any file over HTTPS using "busybox wget https://compromised-domain.com/important-file". \ No newline at end of file