Reproduce arbitrary file reading vulnerability of traggo server (CVE-2023-34843)

Table of contents

1. Vulnerability description

Two, the impact version

3. Asset surveying and mapping 

4. Vulnerability recurrence


1. Vulnerability description

        Traggo Server is a tag-based time tracking tool. In Traggo, there are no tasks, only marked time spans. It can be used to track and analyze where your time is spent every day, so that you can manage your time better and improve your efficiency. Traggo Server has an arbitrary file read vulnerability.


2. Impact version

Guess you like

Origin blog.csdn.net/xiaofengdada/article/details/131657605