Inspur ClusterEngineV4.0 Remote Code...

- AV AC AU C I A
发布: 2025-04-13
修订: 2025-04-13

# Inspur ClusterEngineV4.0 Remote Code Execution # 0x01 Description Today, i found a `Inspur Server Cluster Management System` in our intranet, which login page looks like that. ![](https://github.com/NS-Sp4ce/Inspur/blob/master/ClusterEngineV4.0%20Vul/img/1573267238057.png) It doesn't have verification code, so i decide to crack a login account. ![](https://github.com/NS-Sp4ce/Inspur/blob/master/ClusterEngineV4.0%20Vul/img/1573267410033.png) when burpsuite crack finished, i noticed if post data has `;'`, the response packet is abnormal. ![](https://github.com/NS-Sp4ce/Inspur/blob/master/ClusterEngineV4.0%20Vul/img/1573267472820.png) At now, I realize that there may be a remote code execution, and I put this packet in repeater to repeat it, I found if there is a `'` in post data, the system will throw an exception. ![](https://github.com/NS-Sp4ce/Inspur/blob/master/ClusterEngineV4.0%20Vul/img/1573267667895.png)...

0%
暂无可用Exp或PoC
当前有0条受影响产品信息