References https://github.com/eeeeeeeeee-code/POC/blob/main/wpoc/%E5%85%A8%E7%A8%8B%E4%BA%91OA/%E5%85%A8%E7%A8%8B%E4%BA%91OA-svc.asmxSQL%E6%B3%A8%E5%85%A5%E6%BC%8F%E6%B4%9E.md https://www.ddpoc.com/DVB-2021-2832.html https://cn-sec.com/archives/2373418.html https://blog.csdn.net/weixin_43567873/article/details/137461620
Related VulnerabilitiesEnjoySCM 供应链管理系统 /BackCommunication/wcfCommunicate.svc SQL 注入漏洞全程云OA /OA/SMS/download.ashx 文件读取漏洞全程云OA /OA/Common/API/Huawei.asmx SQL 注入漏洞PoC全程云OA /oa/Common/WF/WorkFlow/WorkFlow.asmx SQL 注入漏洞全程云OA QCHMS.asmx SQL注入漏洞金蝶云星空 /Kingdee.BOS.WebApi.ServicesStub.AuthService.ValidateLoginInfo.common.kdsvc 命令执行漏洞全程云OA QCHMS.asmx 存在SQL注入漏洞全程云OA /OA/HMS/QCHMS.asmx SQL 注入漏洞PoCgcloud-func-inactive-svc-acc: Inactive Service Accounts in Google Cloud FunctionsPoCgcp-func-default-svc-acc: Google Cloud Functions Using Default Service AccountPoCeqccd-oa-mod-ajax-sqli: 全程云OA SQL注入漏洞