References https://mrxn.net/jswz/defaultroot-ezOFFICE-name_judge-sqli.html https://cn-sec.com/archives/4308416.html https://www.wlaqsys.com/archives/12225 https://ddpoc.com/news.html https://ddpoc.com/DVB-2025-9803.html https://cn-sec.com/archives/tag/judge https://mrxn.net/tag/Java/page/6 https://adg.csdn.net/694cfdbb5b9f5f31781ac04d.html
Related VulnerabilitiesPoC万户OA /defaultroot/evo/weixin/WeiXin!callback.action XML 外部实体注入漏洞万户OA /defaultroot/modules/govoffice/gov_documentmanager/govdocumentmanager_sendfile_gd.jsp;.js SQL 注入漏洞万户OA officeserver 任意文件上传漏洞万户OA informationmanager_upload.jsp 任意文件上传漏洞万户OA freemarkeService 远程命令执行漏洞万户OA /defaultroot/yzConvertFile/file2Html.controller 任意文件上传漏洞万户 ezOFFICE WeiXin!callback.action XXE漏洞wanhu-evointerfaceservlet-unauth: 万户 OA 未授权访问获取所有账户密码wanhu-oa-documentedit-sqli: 万户OA DocumentEdit.jsp SQL注入漏洞万户OA /defaultroot/govezoffice/custom_documentmanager/smartUpload.jsp 文件上传漏洞