References https://github.com/Threekiii/Vulnerability-Wiki/blob/master/docs-base/docs/webapp/%E7%B4%AB%E5%85%89%E6%A1%A3%E6%A1%88%E7%AE%A1%E7%90%86%E7%B3%BB%E7%BB%9F-upload.html-%E5%90%8E%E5%8F%B0%E6%96%87%E4%BB%B6%E4%B8%8A%E4%BC%A0%E6%BC%8F%E6%B4%9E.md https://www.cnblogs.com/fuchangjiang/p/17713330.html https://cn-sec.com/archives/2048247.html https://cn-sec.com/archives/2012995.html https://cn-sec.com/archives/2132184.html https://blog.csdn.net/qq_33530840/article/details/140021862 https://www.ddpoc.com/DVB-2025-10064.html https://stack.chaitin.com/poc/detail/3146
Related Vulnerabilities紫光软件系统有限公司 -- 紫光电子档案管理系统存在目录遍历PoC紫光电子档案管理系统 /Archive/ErecordManage/selectFileRemote SQL 注入漏洞PoC紫光电子档案管理系统 /Archive/ErecordManage/mergeFile SQL 注入漏洞PoC紫光电子档案管理系统 System/WorkFlow/download.html 文件读取漏洞PoC紫光电子档案管理系统 System/WorkFlow/download.html 任意文件读取漏洞紫光电子档案管理系统 uploadScan SQL注入漏洞紫光电子档案管理系统 InterfaceList 存在SQL注入漏洞紫光电子档案管理系统 mergeFile SQL注入漏洞PoC紫光电子档案管理系统 /System/WorkFlow/upload 文件上传漏洞