当前位置:WooYun >> 漏洞信息

漏洞概要 关注数(24) 关注此漏洞

缺陷编号:wooyun-2012-010067

漏洞标题:支付平台通商宝Struts2命令执行漏洞

相关厂商:通商宝

漏洞作者: %22

提交时间:2012-07-24 12:38

修复时间:2012-09-07 12:39

公开时间:2012-09-07 12:39

漏洞类型:命令执行

危害等级:高

自评Rank:15

漏洞状态:未联系到厂商或者厂商积极忽略

漏洞来源: http://www.wooyun.org,如有疑问或需要帮助请联系 [email protected]

Tags标签:

4人收藏 收藏
分享漏洞:


漏洞详情

披露状态:

2012-07-24: 积极联系厂商并且等待厂商认领中,细节不对外公开
2012-09-07: 厂商已经主动忽略漏洞,细节向公众公开

简要描述:

Struts2漏洞 满地都是了

详细说明:

Struts2漏洞
http://www.t3pay.cn/gameAction!getSingleGame.action

漏洞证明:

http://www.t3pay.cn/gameAction!getSingleGame.action

uid=0(root) gid=0(root) groups=0(root),1(bin),2(daemon),3(sys),4(adm),6(disk),10(wheel)
?? 194
drwxr-xr-x 2 root root 4096 2010-05-20 bin
drwxr-xr-x 4 root root 1024 2010-12-14 boot
-rw-r--r-- 1 503 mailuser 4819 2012-01-10 buttom18-2.png
drwxr-xr-x 11 root root 3600 07-16 18:25 dev
drwxr-xr-x 104 root root 12288 07-24 04:06 etc
drwxr-xr-x 43 root root 4096 07-19 17:30 home
drwxr-xr-x 13 root root 4096 2010-05-20 lib
drwx------ 2 root root 16384 2010-05-20 lost+found
drwxr-xr-x 2 root root 4096 07-16 18:25 media
-rw-r--r-- 1 root root 10240 06-21 16:59 mini.tar
drwxr-xr-x 2 root root 0 07-16 18:25 misc
drwxr-xr-x 3 root root 4096 2010-05-28 mnt
drwxr-xr-x 2 root root 0 07-16 18:25 net
drwxr-xr-x 3 root root 4096 2010-05-22 opt
dr-xr-xr-x 253 root root 0 07-16 18:24 proc
drwxr-x--- 21 root root 4096 07-23 19:18 root
drwxr-xr-x 2 root root 12288 2010-05-20 sbin
drwxr-xr-x 2 root root 4096 2010-05-20 selinux
drwxr-xr-x 2 root root 4096 2008-08-08 srv
drwxr-xr-x 11 root root 0 07-16 18:24 sys
drwxr-xr-x 3 root root 4096 2010-05-20 tftpboot
drwxrwxrwt 7 root root 12288 07-24 04:05 tmp
drwxr-xr-x 19 root root 4096 06-21 17:01 usr
drwxr-xr-x 27 root root 4096 05-21 20:42 var
drwxr-xr-x 19 root root 4096 2011-07-13 webbackup
drwxr-xr-x 3 root root 4096 07-09 15:11 WEB-INF
drwxr-xr-x 4 root root 4096 05-29 11:08 WebRoot

修复方案:

打补丁

版权声明:转载请注明来源 %22@乌云


漏洞回应

厂商回应:

未能联系到厂商或者厂商积极拒绝