Create koronsoft_AIO_management_system_UtilServlet_fileName_File_Read_vulnerability.md

add koronsoft AIO management system UtilServlet fileName File Read vulnerability
This commit is contained in:
Goby 2023-07-07 15:33:31 +08:00 committed by GitHub
parent 7d9ead6b3c
commit 5348bd4c04
No known key found for this signature in database
GPG Key ID: 4AEE18F83AFDEB23

View File

@ -0,0 +1,12 @@
## koronsoft AIO management system UtilServlet fileName File Read vulnerability
| **Vulnerability** | **koronsoft AIO management system UtilServlet fileName File Read vulnerability** |
| :----: | :-----|
| **Chinese name** | 科荣 AIO 管理系统 UtilServlet 文件 fileName 参数文件读取漏洞 |
| **CVSS core** | 9.0 |
| **FOFA Query** (click to view the results directly)| [body="changeAccount('8000')"](https://en.fofa.info/result?qbase64=Ym9keT0iY2hhbmdlQWNjb3VudCgnODAwMCcpIg%3D%3D) |
| **Number of assets affected** | 1976 |
| **Description** | KoronsoftAIO management system is a very excellent enterprise management tool.The UtilServlet file reading vulnerability of koronsoftAIO management system can be used to obtain sensitive information of the system. |
| **Impact** | The UtilServlet file reading vulnerability ofkoronsoftAIO management system can be used to obtain sensitive information of the system. |
![](https://s3.bmp.ovh/imgs/2023/07/07/57f1d03fa857d0ea.gif)