Overview
Imported from the upstream repository chinarulezzz/nmap-extra-nse. ASUSWRT is a wireless router operating system that powers many routers produced by ASUS. Session hijack vulnerability in httpd in ASUS ASUSWRT on RT-AC53 3.0.0.4.380.6038 devices allows remote attackers to steal any active admin session by sending cgi_logout and asusrouter-Windows-IFTTT-1.0 in certain HTTP headers. If an attacker sets his cookie value to cgi_logout and puts asusrouter-Windows-IFTTT-1.0 into his User-Agent header he will be treated as signed-in if any other administrator session is active. NOTE: This vulnerability is yet to be patched by the vendors.