KaiYuanTong ECT Platform Command Injection Vulnerability in HTTP POST Request Handler

Vulnerability

A critical command injection vulnerability has been identified in KaiYuanTong ECT Platform versions through 2.0.0. The issue resides in the file '/public/server/runCode.php', within the HTTP POST Request Handler component. The vulnerability allows remote attackers to inject commands by manipulating the 'code' argument, exploiting improper handling of input that could alter command execution.

Impact

Exploitation of this vulnerability allows for arbitrary command execution on the server where KaiYuanTong ECT Platform is installed.

Reproduction

To reproduce this vulnerability, send an HTTP POST request to the '/public/server/runCode.php' endpoint. Include a 'code' argument with a payload that exploits the command injection flaw. The vulnerability can be identified by searching for the 'runCode.php' file using Google Hacking techniques.

Added: Jun 9, 2025, 7:46 PM
Updated: Jun 9, 2025, 7:46 PM

Vulnerability Rating

Custom Algorithm
spread
0.0
impact
10.0
exploitability
8.7
remediation
0.0
relevance
0.0
threat
6.4
urgency
2.9
incentive
5.8

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.