References https://github.com/eeeeeeeeee-code/POC/blob/main/wpoc/%E5%B9%BF%E8%81%94%E8%BE%BEOA/%E5%B9%BF%E8%81%94%E8%BE%BEOA%E7%B3%BB%E7%BB%9F%E6%8E%A5%E5%8F%A3do.asmx%E5%AD%98%E5%9C%A8%E4%BB%BB%E6%84%8F%E6%96%87%E4%BB%B6%E5%86%99%E5%85%A5%E6%BC%8F%E6%B4%9E.md https://github.com/eeeeeeeeee-code/POC/blob/main/wpoc/%E5%B9%BF%E8%81%94%E8%BE%BEOA/%E5%B9%BF%E8%81%94%E8%BE%BEOA%E7%B3%BB%E7%BB%9F%E6%8E%A5%E5%8F%A3do.asmx%E5%AD%98%E5%9C%A8%E4%BB%BB%E6%84%8F%E6%96%87%E4%BB%B6%E8%AF%BB%E5%8F%96%E6%BC%8F%E6%B4%9E.md https://blog.csdn.net/xc_214/article/details/142378215 https://cn-sec.com/archives/3182565.html https://www.ddpoc.com/DVB-2023-4256.html
Related Vulnerabilities广联达OA /GB/LK/Document/DataExchange/DataExchange.ashx XML 外部实体注入漏洞广联达OA /Mail/Services/EmailAccountOrgUserService.asmx/GetUserEmailByOrgEmails XML 外部实体注入漏洞广联达OA /Org/service/Service.asmx/GetChangeUsers 信息泄露漏洞广联达OA /GTP/IM/Services/Group/Broadcast/MsgBroadcastContent.aspx SQL 注入漏洞glodon-oa-msgbroadcastuploadfile-uploadfile: 广联达oa 后台文件上传漏洞 (需登录)PoCglodon-linkworks-Getuserbyusercode-sqli: 广联达oa Linkworks Getuserbyusercode 存在SQL注入PoChongyun-mobileaction-filedownload.yaml: 鸿运主动安全监控云平台存在任意文件读取漏洞联达OA 前台SQL注入漏洞鸿运主动安全监控云平台 /08gps/MobileAction_downLoad.action 文件读取漏洞广联达-OA FsAjax SQL注入漏洞广联达OA 身份验证绕过漏洞广联达OA UserQueryService.asmx SQL注入漏洞