Rule Name:Tongda OA general/netdisk/upload Interface has Arbitrary File Upload Vulnerability
Severity:high
CVE ID:
Descripiton:
Tongda OA (Office Anywhere Network Intelligent Office System) is a set of collaborative office automation software of China Tongda Company. Tongda OA has any user login vulnerability. Attackers can upload arbitrary file through general/netdisk/upload interface. This rule supports to defend the A6: Vulnerable and Outdated Components of OWASP Top 10 - 2021. Other reference:None