1.
blog.viettelcybersecurity.com | 漏洞 | | 原文 ↗ | #rce | #deserialization | #exploitation | #vulnerability
Viettel 系列第 2 篇解析 Telerik UI 的 CVE-2019-18935:RadAsyncUpload 对 JSON 反序列化处理不当导致 RCE,可与 CVE-2017-11317 任意文件上传组合上传恶意 DLL,文章附检测要点与 Suricata 规则。
Skip to content