2021-08-02 02:07:14 +00:00
id : zhiyuan-file-upload
info :
2021-10-25 07:07:28 +00:00
name : Zhiyuan OA arbitrary file upload vulnerability
2021-08-02 02:07:14 +00:00
author : gy741
severity : critical
2021-10-25 07:07:28 +00:00
description : A vulnerability in Zhiyuan OA allows remote unauthenticated attackers to upload arbitrary files to the remote server which they can later access and cause their code to be executed.
2021-08-02 02:07:14 +00:00
reference : https://www.programmersought.com/article/92658169875/
tags : zhiyuan,rce
requests :
- method : GET
path :
- "{{BaseURL}}/seeyon/thirdpartyController.do.css/..;/ajax.do"
matchers-condition : and
matchers :
- type : word
words :
- "java.lang.NullPointerException:null"
- type : word
words :
- "text/html"
part : header
- type : status
status :
- 200