Add Kingsoft V8V9 get_file_content.php File Read

This commit is contained in:
xiaoheihei1107 2021-08-30 16:03:21 +08:00 committed by GitHub
parent c36ca0e372
commit 637865471e
No known key found for this signature in database
GPG Key ID: 4AEE18F83AFDEB23

View File

@ -0,0 +1,9 @@
# Kingsoft V8 V9 get_file_content.php Arbitrary File Read
Kingsoft V8, V9 terminal security system has arbitrary file reading vulnerabilities. Attackers can download arbitrary files in the WEB directory through the vulnerabilities.
FOFA **query rule**: [body="金山安全管理" && title="终端安全系统"](https://fofa.so/result?qbase64=Ym9keT0i6YeR5bGx5a6J5YWo566h55CGIiYmdGl0bGU9Iue7iOerr%2BWuieWFqOezu%2Be7nyI%3D)
# Demo
![Kingsoft_V8V9_get_file_content_php_Arbitrary_File_Read](Kingsoft_V8V9_get_file_content_php_Arbitrary_File_Read.gif)