漏洞描述 W&Jsoft-D-Security数据仿泄露系统(DLP)是一个集内容管理与发布于一体的智能平台,广泛服务于新闻媒体及内容创作行业。平台支持多端协同和多渠道分发,拥有素材管理、内容编辑、智能审核等核心功能。W&Jsoft-D-Security数据仿泄露系统(DLP)存在任意文件读取漏洞,攻击者通过该漏洞获取器服务器文件敏感信息。
相关漏洞推荐 POC wp-security-hidden-login-exposure: WordPress All-in-One Security <=4.4.1 - Hidden Login Page Exposure Exrick Xboot Swagger SecurityController.java服务器端请求伪造(CVE-2025-8527) POC CVE-2019-14287: Sudo <= 1.8.27 - Security Bypass POC CVE-2014-6308: Osclass Security Advisory 3.4.1 - Local File Inclusion POC CVE-2016-4977: Spring Security OAuth2 Remote Command Execution POC CVE-2017-7925: Dahua Security - Configuration File Disclosure POC CVE-2018-8719: WordPress WP Security Audit Log 3.1.1 - Information Disclosure POC CVE-2019-1003000: Jenkins Script Security Plugin <=1.49 - Sandbox Bypass POC CVE-2020-3187: Cisco Adaptive Security Appliance Software/Cisco Firepower Threat Defense - Directory Traversal POC CVE-2020-3452: Cisco Adaptive Security Appliance (ASA)/Firepower Threat Defense (FTD) - Local File Inclusion POC CVE-2021-32618: Python Flask-Security - Open Redirect POC CVE-2021-39327: WordPress BulletProof Security 5.1 Information Disclosure POC CVE-2021-46387: Zyxel ZyWALL 2 Plus Internet Security Appliance - Cross-Site Scripting