【1day】Reproduce the SQL injection vulnerability of Dahua Smart Park Integrated Management Platform

Table of contents

1. Vulnerability description

Two, the impact version

3. Asset surveying and mapping

4. Vulnerability recurrence 


1. Vulnerability description

        Dahua Smart Park Integrated Management Platform is a smart park management platform that integrates intelligence, informatization, networking, and security. It aims to provide a one-stop solution for the park, including security, energy management, environmental monitoring, personnel Management, parking management and many other aspects. There is a SQL injection vulnerability in the comprehensive management platform of Dahua Smart Park. Remote unauthorized attackers can use this vulnerability to obtain sensitive information, and further exploit it to obtain target system permissions.


Guess you like

Origin blog.csdn.net/xiaofengdada/article/details/132251627