References https://github.com/emadshanab/goby-POC3/blob/master/2023HW/2023.8.15/%E5%B8%86%E8%BD%AF%E6%8A%A5%E8%A1%A8channel%E5%8F%8D%E5%BA%8F%E5%88%97%E5%8C%96%E8%BF%9C%E7%A8%8B%E5%91%BD%E4%BB%A4%E6%89%A7%E8%A1%8C%E6%BC%8F%E6%B4%9E.py https://zhuanlan.zhihu.com/p/4179583157 https://stack.chaitin.com/vuldb/detail/551b68d5-2e74-4bd2-b779-3eef80ace52d https://blog.csdn.net/qq_51295677/article/details/131789320 https://github.com/7wkajk/Frchannel https://help.fanruan.com/finereport/edition-view-64033-0.html https://avd.aliyun.com/detail?id=AVD-2022-1395693 https://help.fanruan.com/finereport/edition-view-60149-57.html https://blog.csdn.net/gray5/article/details/153514578 https://ddpoc.com/DVB-2024-7851.html https://cn-sec.com/archives/3601932.html https://blog.csdn.net/lostnerv/article/details/132493086 https://buaq.net/go-217270.html https://y4tacker.github.io/2024/07/28/year/2024/7/%E5%B8%86%E8%BD%AFchannel%E6%8E%A5%E5%8F%A3%E5%8F%8D%E5%BA%8F%E5%88%97%E5%8C%96%E5%89%8D%E4%B8%96%E4%BB%8A%E7%94%9F%E5%8F%8A%E5%88%A9%E7%94%A8%E9%93%BE%E6%80%BB%E7%BB%93/
Related VulnerabilitiesPoC福建科立讯通信指挥调度平台 /dm/dispatch/channel/upload 文件上传漏洞帆软报表存在未授权访问漏洞PoCCNVD-2018-04757: 帆软报表 V8 get_geo_json 任意文件读取漏洞PoCfanruan-finereport-fr-log-rce: 帆软 FineReport Fr Log RcePoCfanruan-oa-v9-designsavevg-upload-file: 帆软报表 V9 design_save_svg 任意文件覆盖文件上传PoCseeyon-fanruan-report-server-directory-travesal: 致远OA 帆软组件 ReportServer 目录遍历漏洞PoCfine-report-v9-file-upload: FineReport v9 Arbitrary File OverwritePoCfinereport-path-traversal: FineReport 8.0 - Local File InclusionPoCfinereport-sqli-rce: FineReport SQLi - Remote Code Execution致远OA-帆软报表组件 dbcommit 命令执行漏洞帆软报表 dbcommit 命令执行漏洞帆软pdf接口远程命令执行帆软报表 /report/v9/print/ie/pdf SQL注入漏洞