乌云(WooYun.org)历史漏洞查询---http://wy.zone.ci/
乌云 Drops 文章在线浏览--------http://drop.zone.ci/
2014-01-06: 细节已通知厂商并且等待厂商处理中 2014-01-11: 厂商已经主动忽略漏洞,细节向公众公开
RT
http://xiaoxi.daoyoudao.com/user/login_check.do
-->>ls /usr/local/enterprisepaper/ -l总用量 424-rw-r--r-- 1 root root 2335 2012-01-06 404.html-rw-r--r-- 1 root root 16 2011-12-30 bdsitemap.txt-rw-r--r-- 1 root root 2989 2012-07-12 chongzhi.jspdrwxr-xr-x 2 root root 4096 2012-02-14 cssdrwxr-xr-x 2 root root 4096 2012-02-20 cxsmsdrwxr-xr-x 2 root root 4096 2012-01-13 download-rw-r--r-- 1 root root 18543 2012-02-01 ecsnMonitor.jspdrwxr-xr-x 4 root root 4096 2012-07-16 fusioncharts-rw-r--r-- 1 root root 53 2011-12-30 googlee2288411256549d1.html-rw-r--r-- 1 root root 2006 2012-04-28 Html5.htmldrwxr-xr-x 4 root root 4096 2012-02-13 images-rw-r--r-- 1 root root 46 2011-12-03 index.jsp-rw-r--r-- 1 root root 2956 2011-01-27 infosend.jspdrwxr-xr-x 15 root root 4096 2012-07-16 jsdrwxr-xr-x 5 root root 4096 2013-02-20 jsp-rw-r--r-- 1 root root 33619 9月 7 13:37 k8cmd.jspdrwxr-xr-x 2 root root 4096 2011-12-30 log-rw-r--r-- 1 root root 3380 2012-01-06 map.htmldrwxr-xr-x 2 root root 4096 2012-01-19 META-INFdrwxr-xr-x 6 root root 4096 2012-01-17 pagedrwxr-xr-x 2 root root 4096 2011-12-04 partnerdrwxr-xr-x 2 root root 4096 2012-01-25 publicdrwxr-xr-x 6 root root 4096 2012-05-02 qxt-rw-r--r-- 1 root root 36152 9月 11 13:14 rc.jsp-rw-r--r-- 1 root root 207 2012-01-04 robots.txt-rw-r--r-- 1 root root 2658 2012-01-13 SendSms.jspdrwxr-xr-x 2 root root 4096 2011-12-04 service-rw-r--r-- 1 root root 36146 9月 21 13:12 shell.jsp-rw-r--r-- 1 root root 32 2011-02-09 sina_verified_check.txt-rw-r--r-- 1 root root 1647 2011-12-31 sitemap.xml-rw-r--r-- 1 root root 1782 2012-02-11 smspush.jspdrwxr-xr-x 3 root root 4096 2012-01-19 styledrwxr-xr-x 2 root root 4096 2011-12-30 system-rw-r--r-- 1 root root 1550 2012-03-29 testpush.jspdrwxr-xr-x 4 root root 4096 2011-12-04 themesdrwxr-xr-x 3 root root 4096 2012-02-21 uploaddrwxr-xr-x 6 root root 4096 2013-02-08 WEB-INF-rw-r--r-- 1 root root 3112 2012-01-06 web.xml-rw-r--r-- 1 root root 11 1月 6 13:51 wooyun.txt
http://xiaoxi.daoyoudao.com/wooyun.txt
升级
危害等级:无影响厂商忽略
忽略时间:2014-01-11 14:54
2014-01-16:已修复