The system address is http: // 218.58.70.214/haiergc. I don't know what domain name the project management system is bound to. I only know that this is a new system in section C, you can see in the internal navigation. Register first. This registration is the origin of a vulnerability. It is best to register an internal account with another user to disable open registration. After entering the system, create a new one and maintain the information. If you see the ID = xx you want to inject, you are more happy to see the upload. Uploading is not filtered here. Hurt your mind, upload any aspx, And take webshell. Check whether there are many items on the server, especially the customer information.
The permission is NT, but it is easy to raise the permission ~~ Is there a large Intranet penetration for servers on the Intranet? IP Address ............: 10.135.6.85 Subnet Mask ...........: 255.255.255.0 Default Gateway .........: 10.135.6.254Solution:
0x1: Disable registration to prevent unauthorized registration. 0x2: No file should be uploaded. 0x3: do not grant the execution permission to the file upload directory. 0x4: server directory permission control.