References https://github.com/eeeeeeeeee-code/POC/blob/main/wpoc/%E4%BD%91%E5%8F%8B%E9%98%B2%E7%81%AB%E5%A2%99/%E4%BD%91%E5%8F%8B%E9%98%B2%E7%81%AB%E5%A2%99%E5%90%8E%E5%8F%B0%E6%8E%A5%E5%8F%A3maintain%E5%AD%98%E5%9C%A8%E5%91%BD%E4%BB%A4%E6%89%A7%E8%A1%8C%E6%BC%8F%E6%B4%9E.md https://www.cnblogs.com/loser-time/p/14685734.html https://github.com/Threekiii/Vulnerability-Wiki/blob/master/docs-base/docs/iot/%E4%BD%91%E5%8F%8B%E9%98%B2%E7%81%AB%E5%A2%99-%E5%90%8E%E5%8F%B0%E5%91%BD%E4%BB%A4%E6%89%A7%E8%A1%8C%E6%BC%8F%E6%B4%9E.md https://www.ctfiot.com/78730.html https://cn-sec.com/archives/343001.html https://cn-sec.com/archives/339386.html https://disk.scan.cm/All_wiki/Qingy%E5%AE%89%E5%85%A8%E6%BC%8F%E6%B4%9E%E5%BA%9320210715/Web%E5%AE%89%E5%85%A8/%E4%BD%91%E5%8F%8B%E9%98%B2%E7%81%AB%E5%A2%99%E5%90%8E%E5%8F%B0%E5%91%BD%E4%BB%A4%E6%89%A7%E8%A1%8C/%E4%BD%91%E5%8F%8B%E9%98%B2%E7%81%AB%E5%A2%99%20%E5%90%8E%E5%8F%B0%E5%91%BD%E4%BB%A4%E6%89%A7%E8%A1%8C%E6%BC%8F%E6%B4%9E/%E4%BD%91%E5%8F%8B%E9%98%B2%E7%81%AB%E5%A2%99%20%E5%90%8E%E5%8F%B0%E5%91%BD%E4%BB%A4%E6%89%A7%E8%A1%8C%E6%BC%8F%E6%B4%9E.md https://github.com/tzwlhack/Vulnerability/blob/main/%E4%BD%91%E5%8F%8B%E9%98%B2%E7%81%AB%E5%A2%99%20%E5%90%8E%E5%8F%B0RCE-%E9%BB%98%E8%AE%A4%E5%8F%A3%E4%BB%A4.md https://www.saury.net/1520.html
Related Vulnerabilities电子证据管理系统-index.php存在SQL注入JoomShaper SP LMS /index.php?option=com_splms&view=cart 文件上传漏洞(CVE-2026-48909)NukeViet /index.php 服务器端请求伪造漏洞(CVE-2026-55372)ZLMediaKit /index/ 未授权访问漏洞(CVE-2024-27488)WordPress Time Capsule /wp-tcapsule-bridge/upload/php/index.php 文件上传漏洞(CVE-2024-8856)OpenCATS /index.php 默认口令漏洞Joomla JCE /index.php com_jce 文件上传漏洞(CVE-2026-48907)深信服DC数据中心管理系统 /src/sangforindex XML 外部实体注入漏洞时空智友企业流程化管控系统 /formservice indexService.notice SQL 注入漏洞TPshop /index.php 默认口令漏洞WIFISKY 7层流控路由器 /portal/ibilling/index.php 命令执行漏洞XYHCMS /index.php?s=Api/lt/gbooklist SQL 注入漏洞智慧票务管理系统 /book/tickettypeindex.action 代码执行漏洞