References https://avd.aliyun.com/detail?id=AVD-2021-903440 https://www.trs.com.cn/gjlm_zqnr/cpfwhhyfadljjPDF/202305/P020230524636201699939.pdf https://it.ruc.edu.cn/wlaq/c5e89cf9b7534feeaa2d34e6111589fb.htm https://www.trs.com.cn/xyfa/szzf/zwgk/ https://github.com/Pa55w0rd/pa55w0rd.github.io/issues/17 https://cn-sec.com/archives/1748609.html https://blog.csdn.net/weixin_43650289/article/details/109072674 https://www.trs.com.cn/fwyzc_755/wdzx/202212/P020221215360592838002.pdf https://report.iresearch.cn/wx/news.aspx?id=195 https://mp.weixin.qq.com/s/0L240Zrl3a8S4OxGA6gczQ http://file.finance.sina.com.cn/211.154.219.97:9494/MRGG/CNSESZ_STOCK/2025/2025-8/2025-08-21/11320134.PDF https://www.pa55w0rd.online/trs/ https://blog.csdn.net/qq_39101049/article/details/93623748 https://www.trs.com.cn/ljwm/xwhd/201903/t20190329_8725.html https://cn-sec.com/archives/tag/%E6%8B%93%E5%B0%94%E6%80%9D
Related Vulnerabilities拓尔思 媒资管理系统存在信息泄露漏洞拓尔思 媒资管理系统 /mas/front/vod/main.do newList 信息泄露漏洞拓尔思TRS媒资管理系统 uploadThumb 文件上传漏洞拓尔思-WAS 存在任意文件下载漏洞拓尔思-政府网站集约化存在敏感信息泄露拓尔思-MAS Comment 插件存在XML实体注入拓尔思-WCM 存在敏感信息泄露漏洞拓尔思-WCM 存在任意文件上传漏洞拓尔思-WCM 存在SQL注入漏洞拓尔思-政府网站集约化存在未授权访问拓尔思-政府网站集约化存在XML实体注入