泛微OA某处缺陷可遍历和操作系统文件

- AV AC AU C I A
发布: 2025-04-13
修订: 2025-04-13

### 简要描述: RT ### 详细说明: 文件位于plugin\ewe\jsp\config.jsp ``` <% String sUsername, sPassword, aStyle, aToolbar; sUsername = "sysadmin"; sPassword = "weaversoft"; ..... ``` 编辑器的用户名密码 [<img src="https://images.seebug.org/upload/201601/14144058c83d7fcfdbdb2ac614d5d8acffa1c8cf.jpg" alt="Snap300.jpg" width="600" onerror="javascript:errimg(this);">](https://images.seebug.org/upload/201601/14144058c83d7fcfdbdb2ac614d5d8acffa1c8cf.jpg) [<img src="https://images.seebug.org/upload/201601/14144347c2fde3c0b82d7df6077e35708dd4bbe2.jpg" alt="Snap301.jpg" width="600" onerror="javascript:errimg(this);">](https://images.seebug.org/upload/201601/14144347c2fde3c0b82d7df6077e35708dd4bbe2.jpg) [<img src="https://images.seebug.org/upload/201601/14144353a1d4c7f1f24f6858f1a34203cd7a67d4.jpg" alt="Snap302.jpg" width="600" onerror="javascript:errimg(this);">](https://images.seebug.org/upload/201601/14144353a1d4c7f1f24f6858f1a34203cd7a67d4.jpg) 新建一个文档 [<img...

0%
暂无可用Exp或PoC
当前有0条受影响产品信息