Code Monkey home page Code Monkey logo

Comments (6)

aiapple97 avatar aiapple97 commented on July 28, 2024

能说明一下是哪个应用的具体什么漏洞吗?

from securitylist.

m1cc0s0ft avatar m1cc0s0ft commented on July 28, 2024

eoffice ,在你这篇文章中提到https://github.com/ax1sX/SecurityList/blob/main/Other_OA/%E6%B3%9B%E5%BE%AEE-Office.md
image

from securitylist.

aiapple97 avatar aiapple97 commented on July 28, 2024

好久之前,他们网上发布的补丁包分析的。当时/iWebOffice/OfficeServer.php和/iWebOffice/OfficeServer2.php这两个出来后,10版本这个路由下有类似的漏洞。

from securitylist.

m1cc0s0ft avatar m1cc0s0ft commented on July 28, 2024

好久之前,他们网上发布的补丁包分析的。当时/iWebOffice/OfficeServer.php和/iWebOffice/OfficeServer2.php这两个出来后,10版本这个路由下有类似的漏洞。

搭建环境复现时候发现一直返回500,请问大佬你有遇到?

from securitylist.

aiapple97 avatar aiapple97 commented on July 28, 2024

具体版本号我忘了,但是21年以前的v10版本才可以

from securitylist.

m1cc0s0ft avatar m1cc0s0ft commented on July 28, 2024

具体版本号我忘了,但是21年以前的v10版本才可以

------WebKitFormBoundaryLpoiBFy4ANA8daew
Content-Disposition: form-data;name="FormData"

{'ATTACHMENTID':'sample','MIME':'doc','OPTION':'DOWNLOAD'}
------WebKitFormBoundaryLpoiBFy4ANA8daew-- 我用了这个正常也返回500,版本是v10,

from securitylist.

Related Issues (9)

Recommend Projects

  • React photo React

    A declarative, efficient, and flexible JavaScript library for building user interfaces.

  • Vue.js photo Vue.js

    🖖 Vue.js is a progressive, incrementally-adoptable JavaScript framework for building UI on the web.

  • Typescript photo Typescript

    TypeScript is a superset of JavaScript that compiles to clean JavaScript output.

  • TensorFlow photo TensorFlow

    An Open Source Machine Learning Framework for Everyone

  • Django photo Django

    The Web framework for perfectionists with deadlines.

  • D3 photo D3

    Bring data to life with SVG, Canvas and HTML. 📊📈🎉

Recommend Topics

  • javascript

    JavaScript (JS) is a lightweight interpreted programming language with first-class functions.

  • web

    Some thing interesting about web. New door for the world.

  • server

    A server is a program made to process requests and deliver data to clients.

  • Machine learning

    Machine learning is a way of modeling and interpreting data that allows a piece of software to respond intelligently.

  • Game

    Some thing interesting about game, make everyone happy.

Recommend Org

  • Facebook photo Facebook

    We are working to build community through open source technology. NB: members must have two-factor auth.

  • Microsoft photo Microsoft

    Open source projects and samples from Microsoft.

  • Google photo Google

    Google ❤️ Open Source for everyone.

  • D3 photo D3

    Data-Driven Documents codes.