Post

Zhongwang Network Wechat Discussion Management System Background Updatefile Html Any File Upload Vulnerability

Zhongwang Network Wechat Discussion Management System Background Updatefile Html Any File Upload Vulnerability

Zhongwang Network WeChat discussion management system background updatefile.html any file upload vulnerability

Vulnerability Description

Zhongwang Network WeChat Advisory Management System Backend Updatefile.html page with any file upload vulnerability, and attackers can upload malicious files to control the server through the vulnerability

Vulnerability Impact

Zhongwang Network Micro-conference Management System

Network surveying and mapping

Vulnerability reappears

Login page

img

Default password amdin/admin, server update interface upload PHP files

img

Visit the page

1
/Updatefiles/文件名.php

img

This post is licensed under CC BY 4.0 by the author.