References https://github.com/eeeeeeeeee-code/POC/blob/main/wpoc/LVS%E7%B2%BE%E7%9B%8A%E4%BB%B7%E5%80%BC%E7%AE%A1%E7%90%86%E7%B3%BB%E7%BB%9F/LVS%E7%B2%BE%E7%9B%8A%E4%BB%B7%E5%80%BC%E7%AE%A1%E7%90%86%E7%B3%BB%E7%BB%9FFileImport%E5%AD%98%E5%9C%A8%E4%BB%BB%E6%84%8F%E6%96%87%E4%BB%B6%E4%B8%8A%E4%BC%A0.md https://www.secevery.com/toBugInfo?id=1895386042997719041 https://github.com/eeeeeeeeee-code/POC https://www.cnvd.org.cn/flaw/show/CNVD-2020-64766 https://github.com/Threekiii/Awesome-POC https://www.saury.net/poc-navigation https://zhuanlan.zhihu.com/p/4249525215
Related Vulnerabilities东胜物流软件 /Account/Chfee_payapplication/FileUpload 文件上传漏洞锐明技术Crocus系统 DeviceFileUpload.do 文件读取漏洞锐明技术 Crocus系统 DeviceFileUpload.do 任意文件读取漏洞锐捷EWEB路由器 /ddi/server/fileupload.php 文件上传漏洞锐明技术Crocus系统 DeviceFileUpload.do 任意文件读取漏洞MagicINFO SWUpdateFileUploader 文件上传漏洞dahua-bitmap-fileupload: 大华智慧园区综合管理平台bitmap接口存在任意文件上传e-weaver-eoffice-webservice-upload-fileupload: E-Weaver EOffice webservice upload file uploadjeecgboot-commoncontroller-parserxml-fileupload: Jeecgboot commonController parserXml fileupload