Add Kyan Network monitoring time RCE

This commit is contained in:
xiaoheihei1107 2021-09-10 14:33:43 +08:00 committed by GitHub
parent ff4a2ce593
commit c687e687ed
No known key found for this signature in database
GPG Key ID: 4AEE18F83AFDEB23

View File

@ -0,0 +1,9 @@
# Kyan Network monitoring time RCE
Kyan network monitoring equipment time.php can execute arbitrary commands after authentication, and can obtain server permissions with the account password leaked by the host.
FOFA **query rule**: [app="Kyan设计"](https://fofa.so/result?qbase64=YXBwPSJLeWFu6K6%2B6K6hIg%3D%3D)
# Demo
![Kyan_Network_monitoring_time_RCE](Kyan_Network_monitoring_time_RCE.gif)