CVE-2019-12489
TLDR This is a brief report of a vulnerability (CVE-2019-12489) discovered playing around with a Fastgate modem/router of Fastweb and Ghidra The vulnerability allow the execution of a command injection through an http request and can be used to enable an SSH shell Firmware collection and extraction All the firmware files are located in 590121191:8080/ACS-server/file