GobyVuls/CNVD-2023-03903.md
Goby ed4231ba5e
Create CNVD-2023-03903.md
add CNVD-2023-03903
2023-06-28 18:25:19 +08:00

1.9 KiB
Raw Blame History

Arbitrary file reading vulnerability of edusoho classroom-course-statisticsCNVD-2023-03903

Vulnerability Arbitrary file reading vulnerability of edusoho classroom-course-statisticsCNVD-2023-03903
Chinese name edusoho 教培系统 classroom-course-statistics 任意文件读取漏洞CNVD-2023-03903
CVSS core 9.0
FOFA Query (click to view the results directly) title="Powered By EduSoho" || body="Powered by <a href="http://www.edusoho.com/" target="_blank">EduSoho" || (body="Powered By EduSoho" && body="var app")
Number of assets affected 6957
Description The edusoho education and training system <v22.4.7 has unauthorized file reading vulnerability. Through this vulnerability, an attacker can read the contents of the config/parameters.yml file and obtain sensitive information such as the secret value saved in the file and database account password. After the secret value is obtained, an attacker can implement RCE with symfony _fragment routing
Impact EduSoho Education and training system is an open source network school system developed by Hangzhou Kozhi Network Technology Company. The education and training system <v22.4.7 has unauthorized arbitrary file reading vulnerability, through which an attacker can read the contents of the config/parameters.yml file. Get the secret value saved in the file, database account password and other sensitive information. After the secret value is obtained, an attacker can implement RCE with symfony _fragment routing