### 简要描述:
RT
### 详细说明:
存在漏洞的地址:
http://oa5.hanweb.com/notice/admin/login/login.action
http://oa6.hanweb.com/jact/admin/login/login.action
[<img src="https://images.seebug.org/upload/201309/201529352afc6a00ad6ebdd54a4731fcfa4c5e73.jpg" alt="1.jpg" width="600" onerror="javascript:errimg(this);">](https://images.seebug.org/upload/201309/201529352afc6a00ad6ebdd54a4731fcfa4c5e73.jpg)
[<img src="https://images.seebug.org/upload/201309/20153006e0eb6b303d0ef272c3bd2c9665cc308e.jpg" alt="2.jpg" width="600" onerror="javascript:errimg(this);">](https://images.seebug.org/upload/201309/20153006e0eb6b303d0ef272c3bd2c9665cc308e.jpg)
不是小厂商吧?
### 漏洞证明:
[<img src="https://images.seebug.org/upload/201309/2015294101e4941ee088e1b11bb33177e4a30965.jpg" alt="1.jpg" width="600" onerror="javascript:errimg(this);">](https://images.seebug.org/upload/201309/2015294101e4941ee088e1b11bb33177e4a30965.jpg)
[<img src="https://images.seebug.org/upload/201309/20153012b683332658b8c317fddeba8cfbf18ce4.jpg" alt="2.jpg" width="600" onerror="javascript:errimg(this);">](https://images.seebug.org/upload/201309/20153012b683332658b8c317fddeba8cfbf18ce4.jpg)
暂无评论