References https://github.com/adysec/POC/blob/main/wpoc/%E5%A4%A7%E5%8D%8E/%E5%A4%A7%E5%8D%8E%E6%99%BA%E6%85%A7%E5%9B%AD%E5%8C%BA%E7%BB%BC%E5%90%88%E7%AE%A1%E7%90%86%E5%B9%B3%E5%8F%B0bitmap%E6%8E%A5%E5%8F%A3%E5%AD%98%E5%9C%A8%E4%BB%BB%E6%84%8F%E6%96%87%E4%BB%B6%E4%B8%8A%E4%BC%A0%E6%BC%8F%E6%B4%9E.md https://www.lmboke.com/archives/da-hua-zhi-hui-yuan-qu-zong-he-guan-li-ping-tai-ren-yi-wen-jian-shang-chuan-lou-dong https://github.com/projectdiscovery/nuclei-templates/blob/main/http/vulnerabilities/dahua/dahua-bitmap-fileupload.yaml https://nvd.nist.gov/vuln/detail/CVE-2023-7309 https://github.com/tequilasunsh1ne/dahua_bitmap_fileupload https://www.ddpoc.com/DVB-2024-6052.html https://github.com/advisories/GHSA-44w2-cgm4-695p
Related Vulnerabilities大华智慧园区综合管理平台 backStoragePlan_deleteAll SQL注入漏洞PoCCVE-2024-13985: Dahua EIMS - Unauthenticated Remote Code Execution via capture_handlePoC大华智慧园区综合管理平台 config_changePort SQL注入漏洞PoCdahua-icc-default-login: Dahua ICC Default Login大华智慧园区综合管理平台 /portal/itc/attachment_downloadByUrlAtt.action 文件读取漏洞PoCDahua-智能物联综合管理平台 /evo-apigw/evo-arsm/1.0.0/ars/list SQL 注入漏洞大华智慧园区综合管理平台 access modifyOrg.action 反序列化漏洞PoC大华智慧园区综合管理平台 /publishing/publishing/material/file/image 文件上传漏洞e-weaver-eoffice-webservice-upload-fileupload: E-Weaver EOffice webservice upload file uploadjeecgboot-commoncontroller-parserxml-fileupload: Jeecgboot commonController parserXml fileuploadyongyou-grp-u8-smartupload01-fileupload: 用友 GRP u8 SmartUpload01 文件上传漏洞