Description 协众OA是一款由广州协众软件科技有限公司开发的协同办公管理软件,旨在为各类企业和事业单位提供高效的办公解决方案。协众OA存在SQL注入漏洞,攻击者可通过该漏洞获取数据库敏感数据。
References https://github.com/hackoadmin/POC2/blob/main/%E5%8D%8F%E4%BC%97OA/%E5%8D%8F%E4%BC%97OA%E7%B3%BB%E7%BB%9F%E6%8E%A5%E5%8F%A3checkLoginQrCode%E5%AD%98%E5%9C%A8SQL%E6%B3%A8%E5%85%A5%E6%BC%8F%E6%B4%9E%E5%A4%8D%E7%8E%B0.md https://www.ddpoc.com/DVB-2024-8585.html https://www.tutusec.com/1136.html https://cn-sec.com/archives/tag/checkloginqrcode https://blog.csdn.net/2202_75337448/article/details/144733516 https://github.com/Nriver/wy876-POC https://6cloudtech.com/portal/article/index/id/1471.html
Related VulnerabilitiesPoCcnoa-checkLoginQrCode-sqli: 协众 OA checkLoginQrCode SQL InjectionPoC协众OA checkLoginQrCode SQL注入漏洞