References https://www.mhtsec.com/298/ https://cn-sec.com/archives/2505091.html https://github.com/0day404/HV-2024-POC/blob/main/%E6%B9%96%E5%8D%97%E5%BB%BA%E7%A0%94-%E6%A3%80%E6%B5%8B%E7%B3%BB%E7%BB%9F%20admintool%20%E4%BB%BB%E6%84%8F%E6%96%87%E4%BB%B6%E4%B8%8A%E4%BC%A0.md https://github.com/eeeeeeeeee-code/POC/blob/main/wpoc/%E6%B9%96%E5%8D%97%E5%BB%BA%E7%A0%94%E6%A3%80%E6%B5%8B%E7%B3%BB%E7%BB%9F/%E6%B9%96%E5%8D%97%E5%BB%BA%E7%A0%94%E8%B4%A8%E9%87%8F%E7%9B%91%E6%B5%8B%E7%B3%BB%E7%BB%9Fupload.ashx%E6%96%87%E4%BB%B6%E4%B8%8A%E4%BC%A0%E6%BC%8F%E6%B4%9E.md https://www.ddpoc.com/DVB-2024-7093.html https://github.com/eeeeeeeeee-code/POC https://gitee.com/ZhouWenchang/POC1 https://zhuanlan.zhihu.com/p/1932214870562047555
Related Vulnerabilities东胜物流软件 /Account/Chfee_payapplication/FileUpload 文件上传漏洞锐明技术Crocus系统 DeviceFileUpload.do 文件读取漏洞锐明技术 Crocus系统 DeviceFileUpload.do 任意文件读取漏洞锐捷EWEB路由器 /ddi/server/fileupload.php 文件上传漏洞锐明技术Crocus系统 DeviceFileUpload.do 任意文件读取漏洞MagicINFO SWUpdateFileUploader 文件上传漏洞dahua-bitmap-fileupload: 大华智慧园区综合管理平台bitmap接口存在任意文件上传e-weaver-eoffice-webservice-upload-fileupload: E-Weaver EOffice webservice upload file uploadjeecgboot-commoncontroller-parserxml-fileupload: Jeecgboot commonController parserXml fileupload