Update Adobe-ColdFusion任意文件读取漏洞CVE-2024-20767.md

This commit is contained in:
wy876 2024-04-03 23:38:02 +08:00 committed by GitHub
parent 56acb10364
commit 627b9f2d52
No known key found for this signature in database
GPG Key ID: B5690EEEBB952194

View File

@ -1,5 +1,11 @@
## Adobe-ColdFusion任意文件读取漏洞CVE-2024-20767
Adobe ColdFusion 由于在鉴权方面存在疏漏导致了可未授权访问从而通过pms接口进行任意文件读取。
## fofa
```
app="Adobe-ColdFusion"
```
## poc
```python