RosarioSIS 在 12.9 之前的版本中,在“用户”和“学生”模块中未对文件名请求参数进行有效校验,使得经过身份验证的用户能够通过路径穿越(path traversal)解除对允许列表(allow-listed)文件的链接。攻击者可利用父目录序列(如 )逃出上传目录,从而在安装目录内删除 CSS、XML、JSON 等资源以及其他用户的文档文件。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| RosarioSIS | RosarioSIS | 0 ~ 12.9 | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POCNo comments yet