mirror of
https://github.com/gobysec/GobyVuls.git
synced 2025-05-05 10:16:59 +00:00
2.0 KiB
2.0 KiB
RSeeyou-OA wpsAssistServlet templateUrl Arbitrary File Read Vulnerability
Vulnerability | Seeyou-OA wpsAssistServlet templateUrl Arbitrary File Read Vulnerability |
---|---|
Chinese name | 致远互联-OA wpsAssistServlet 文件 templateUrl 参数任意文件读取漏洞 |
CVSS core | 7.5 |
FOFA Query (click to view the results directly) | body="/seeyon/USER-DATA/IMAGES/LOGIN/login.gif" || title="用友致远A" || (body="/yyoa/" && body!="本站内容均采集于") || header="path=/yyoa" || server=="SY8044" || (body="A6-V5企业版" && body="seeyon" && body="seeyonProductId") || (body="/seeyon/common/" && body="var _ctxpath = '/seeyon'") || (body="A8-V5企业版" && body="/seeyon/") || banner="Server: SY8044" |
Number of assets affected | 53406 |
Description | Seeyou-OA is a collaborative office software that digitally builds the digital collaborative operation platform of enterprises and provides one-stop big data analysis solutions for various business scenarios of enterprises.Seeyou-OA wpsAssistServlet has arbitrary file reading vulnerabilities, and attackers can read sensitive information such as system passwords to further control the system. |
Impact | Seeyou-OA wpsAssistServlet has arbitrary file reading vulnerabilities, and attackers can read sensitive information such as system passwords to further control the system. |