通达OA11.6 preauth RCE 0day分析
Tags
attack-pattern: Data
Common Information
Type Value
UUID 87122acb-be88-4221-9887-affffc18884f
Fingerprint 9fa927df7f348ca9
Analysis status DONE
Considered CTI value 0
Text language
Published Aug. 18, 2020, 8:12 a.m.
Added to db Jan. 18, 2023, 9:37 p.m.
Last updated Nov. 11, 2024, 7:13 p.m.
Headline Driver Tom's Blog
Title 通达OA11.6 preauth RCE 0day分析
Detected Hints/Tags/Attributes 6/1/10
Attributes
Details Type #Events CTI Value
Details Domain 2
auth.inc
Details File 1
会删除auth.inc
Details File 8
print.php
Details File 1
简单来讲就是把auth.inc
Details File 1
auth.inc
Details File 1
于是如果发现auth.inc
Details File 1
删掉auth.inc
Details File 97
upload.php
Details File 1
这前面包含的header.inc
Details Url 1
https://drive.google.com/file/d/1l3wg58eqpcufwqotrp3lfq7iy6pyyqz-/view?usp=sharing