References https://github.com/zan8in/wy876-POC/blob/main/%E4%B8%87%E6%88%B7OA/%E4%B8%87%E6%88%B7ezOFFICE%E7%B3%BB%E7%BB%9Fgraph_include.jsp%E5%AD%98%E5%9C%A8SQL%E6%B3%A8%E5%85%A5%E6%BC%8F%E6%B4%9E.md https://www.secevery.com/toBugInfo?id=1821791942430859265 https://cn-sec.com/archives/3055005.html https://blog.csdn.net/fushuang333/article/details/137557320 https://zhuanlan.zhihu.com/p/1932214870562047555
Related Vulnerabilities万户 ezOFFICE /defaultroot/iWebOfficeSign/OfficeServer.jsp/../../platform/bpm/work_flow/operate/wf_relation.jsp SQL 注入漏洞万户OA officeserver 任意文件上传漏洞PoC万户ezOFFICE协同管理平台 /defaultroot/modules/govoffice/gov_documentmanager/receivefile_gd.jsp;.js SQL 注入漏洞万户ezOFFICE协同管理平台 /defaultroot/platform/custom/customizecenter/js/getAutoCode.jsp;.js SQL 注入漏洞万户ezOFFICE协同平台 /defaultroot/iWebOfficeSign/OfficeServer.jsp/../../modules/hrm/report/customize/checkSQL_httprequest.jsp SQL 注入漏洞万户 ezOFFICE WeiXin!callback.action XXE漏洞万户 ezOFFICE /defaultroot/wpsservlet loadFile 文件读取漏洞(CNVD-2021-76461)万户OA /defaultroot/govezoffice/custom_documentmanager/smartUpload.jsp 文件上传漏洞