Tongda.Office.Anywhere.gateway.php.handling.Path.Traversal

description-logoDescription

This indicates an attack attempt to exploit a Directory Traversal Vulnerability in Tongda Office Anywhere.
This vulnerability is due to improper handling of the request parameters in the vulnerable application. A remote attacker could exploit this vulnerability by sending a crafted HTTP request to the targeted server. Successful exploitation of the vulnerability could lead to disclosure of sensitive information or remote code execution which may be used to facilitate further exploitation.

affected-products-logoAffected Products

Tongda OA 2013
Tongda OA 2015
Tongda OA 2016
Tongda OA 2017
Tongda OA V11

Impact logoImpact

System Compromise: Remote attackers can gain control of vulnerable systems.

recomended-action-logoRecommended Actions

Apply the most recent upgrade or patch from the vendor.
http://www.tongda2000.com/news/673.php

Telemetry logoTelemetry

Coverage

IPS (Regular DB)
IPS (Extended DB)

Version Updates

Date Version Detail
2020-05-06 15.838 Default_action:pass:drop
2020-05-06 15.837 Default_action:drop:pass
2020-05-06 15.836 Default_action:pass:drop
2020-04-16 15.819