青果软件某系统存在通信敏感信息泄露漏洞

- AV AC AU C I A
发布: 2025-04-13
修订: 2025-04-13

### 简要描述: 青果软件某系统存在敏感信息泄露 ### 详细说明: 青果软件邮件系统 https://mail.kingosoft.com/ 存在OpenSSL心脏出血漏洞,导致敏感信息泄漏 [<img src="https://images.seebug.org/upload/201410/081859573a531878d6d430fe99455cdb64d15528.jpg" alt="1.jpg" width="600" onerror="javascript:errimg(this);">](https://images.seebug.org/upload/201410/081859573a531878d6d430fe99455cdb64d15528.jpg) ### 漏洞证明: ``` Connecting... Sending Client Hello... Waiting for Server Hello... ... received message: type = 22, ver = 0302, length = 66 ... received message: type = 22, ver = 0302, length = 770 ... received message: type = 22, ver = 0302, length = 203 ... received message: type = 22, ver = 0302, length = 4 Sending heartbeat request... ... received message: type = 24, ver = 0302, length = 16384 Received heartbeat response: 0000: 02 40 00 D8 03 02 53 43 5B 90 9D 9B 72 0B BC 0C .@....SC[...r... 0010: BC 2B 92 A8 48 97 CF BD 39 04 CC 16 0A 85 03 90 .+..H...9....... 0020: 9F 77 04 33 D4 DE 00 00 66 C0 14 C0 0A C0 22 C0 .w.3....f.....". 0030: 21 00 39...

0%
暂无可用Exp或PoC
当前有0条受影响产品信息