漏洞描述 【漏洞对象】Hsort报刊管理系统 【涉及版本】Hsort报刊管理系统 【漏洞描述】Hsort报刊管理系统/Admin/fileManage.aspx文件action参数前台getshell。
相关漏洞推荐 iis-put-getshell: IIS Put Getshell ruijie-excu-shell-disclosure: 锐捷交换机 WEB 管理系统 EXCU_SHELL 信息泄露 thinkcmf-write-shell: Thinkcmf write shell POC spring4shell-CVE-2022-22965: Spring Framework RCE via Data Binding on JDK 9+ POC CVE-2019-12725: Zeroshell 3.9.0 - Remote Command Execution POC CVE-2020-29390: Zeroshell 3.9.3 - Command Injection POC CVE-2019-12725: Zeroshell 3.9.0 Remote Command Execution POC china-telecom-f460-gateway-rce: 电信天翼网关 F460 web_shell_cmd.gch 远程命令执行漏洞 POC insecure-powershell-execution-policy: Insecure PowerShell Execution Policy - Detect POC natshell-arbitrary-file-read: Natshell Arbitrary File Read POC powershell-script-block-logging-disabled: PowerShell Script Block Logging - Disabled POC winrm-remote-shell-access-allowed: Remote Shell Access Allowed POC tongda-insert-sql-inject-getshell: 通达OA v11.6 insert SQL注入漏洞