zm-system-log-detect: zm-system-log-detect

日期: 2025-08-01 | 影响软件: zm-system-log-detect | POC: 已公开

漏洞描述

Zm system log file exposed.

PoC代码[已公开]

id: zm-system-log-detect

info:
  name: zm-system-log-detect
  author: pussycat0x
  severity: low
  description: Zm system log file exposed.
  reference:
    - https://www.exploit-db.com/ghdb/6926
  metadata:
    max-request: 2
  tags: logs,zm,exposure,discovery

http:
  - method: GET
    path:
      - "{{BaseURL}}/?view=log"
      - "{{BaseURL}}/zm/?view=log"

    stop-at-first-match: true

    matchers-condition: and
    matchers:
      - type: word
        words:
          - "<title>ZM - System Log</title>"

      - type: status
        status:
          - 200
# digest: 4b0a00483046022100bd7756ed3a038359e6280a1d29cea9bd00bc17103649499ca1502699a0b390a602210090b8608d3e41aaf1c15c048ebb6ca078ec8f8680702f8c50b98f394862e33b8a:922c64590222798bb761d5b6d8e72950