MSG
Action View中存在安全漏洞。攻击者可利用该漏洞泄露文件内容。
信息
预览:
规则
pcre:"/Accept\x3a[^\n]*\{\{[^\S]/"
flow:established,to_server; pcre:"/Accept\x3a[^\n]+\{\{[^\S]/Hi";reference:url,https://mp.csdn.net/mdeditor/89084204; classtype:web-application-attack; sid:80000015; rev:1; metadata:created_at 2019_04_08, updated_at 2019_04_08;)
参考
https://www.freebuf.com/vuls/199617.html
http://www.cnnvd.org.cn/web/xxk/ldxqById.tag?CNNVD=CNNVD-201903-826
https://xz.aliyun.com/t/4448