Post

Inspur Clusterenginev4 0 Any User Login Vulnerability

Inspur Clusterenginev4 0 Any User Login Vulnerability

Inspur ClusterEngineV4.0 Any user login vulnerability

Vulnerability Description

Inspur ClusterEngineV4.0 has a login vulnerability for any user. Constructing a malicious username and password to obtain background permissions.

Vulnerability Impact

Inspur ClusterEngineV4.0

Network surveying and mapping

title=”TSCEV4.0”

Vulnerability reappears

The login page is as follows

img

USER: admin|pwd
PASS:  任意

Log in to the background successfully, some functions cannot be used

img

This post is licensed under CC BY 4.0 by the author.