Post

Deepin Service Application Delivery Management System Sys_user Conf Account Password Leakage Vulnerability

Deepin Service Application Delivery Management System Sys_user Conf Account Password Leakage Vulnerability

#Shenxinshui Application Delivery Management System sys_user.conf Account Password Leakage Vulnerability

Vulnerability Description

Deepin Service Application Delivery Management System File sys_user.conf can be accessed directly without authorization, resulting in account password leakage

Vulnerability Impact

Shenxinshui Application Delivery Management System

Network surveying and mapping

Vulnerability reappears

Login page

img

Verify POC

1
/tmp/updateme/sinfor/ad/sys/sys_user.conf

img

This post is licensed under CC BY 4.0 by the author.