mirror of
https://github.com/gobysec/GobyVuls.git
synced 2025-05-28 17:20:48 +00:00
JingHang online marking Arbitrary File Upload
Hengshui Jinhang Online Marking System fileUpload has an arbitrary file upload vulnerability. Attackers can use this vulnerability to upload malicious Trojan horses to obtain sensitive system information, control server permissions, etc.
FOFA query rule: title="金航网上阅卷系统" || body="金航网上阅卷系统"