From 5348bd4c0409c1c18c869dd86380ec0417b306a8 Mon Sep 17 00:00:00 2001 From: Goby <50955360+gobysec@users.noreply.github.com> Date: Fri, 7 Jul 2023 15:33:31 +0800 Subject: [PATCH] Create koronsoft_AIO_management_system_UtilServlet_fileName_File_Read_vulnerability.md add koronsoft AIO management system UtilServlet fileName File Read vulnerability --- ...m_UtilServlet_fileName_File_Read_vulnerability.md | 12 ++++++++++++ 1 file changed, 12 insertions(+) create mode 100644 koronsoft_AIO_management_system_UtilServlet_fileName_File_Read_vulnerability.md diff --git a/koronsoft_AIO_management_system_UtilServlet_fileName_File_Read_vulnerability.md b/koronsoft_AIO_management_system_UtilServlet_fileName_File_Read_vulnerability.md new file mode 100644 index 0000000..8e48f37 --- /dev/null +++ b/koronsoft_AIO_management_system_UtilServlet_fileName_File_Read_vulnerability.md @@ -0,0 +1,12 @@ +## koronsoft AIO management system UtilServlet fileName File Read vulnerability + +| **Vulnerability** | **koronsoft AIO management system UtilServlet fileName File Read vulnerability** | +| :----: | :-----| +| **Chinese name** | 科荣 AIO 管理系统 UtilServlet 文件 fileName 参数文件读取漏洞 | +| **CVSS core** | 9.0 | +| **FOFA Query** (click to view the results directly)| [body="changeAccount('8000')"](https://en.fofa.info/result?qbase64=Ym9keT0iY2hhbmdlQWNjb3VudCgnODAwMCcpIg%3D%3D) | +| **Number of assets affected** | 1976 | +| **Description** | KoronsoftAIO management system is a very excellent enterprise management tool.The UtilServlet file reading vulnerability of koronsoftAIO management system can be used to obtain sensitive information of the system. | +| **Impact** | The UtilServlet file reading vulnerability ofkoronsoftAIO management system can be used to obtain sensitive information of the system. | + +![](https://s3.bmp.ovh/imgs/2023/07/07/57f1d03fa857d0ea.gif)