Security
Headlines
HeadlinesLatestCVEs

Headline

CVE-2021-46203: arbitrary file read vulnerability · Issue #13 · taogogo/taocms

Taocms v3.0.2 was discovered to contain an arbitrary file read vulnerability via the path parameter.

CVE
#vulnerability#git

poc

After login as admin,file manager and downloadfunction
image
after change path param can read arbitrary file
image

analysis

location:include/File.php
image

image
we can use …/ to traverse to the previous directory

suggest

you can check path ,for example check if it has .. then refuse this request

CVE: Latest News

CVE-2023-50976: Transactions API Authorization by oleiman · Pull Request #14969 · redpanda-data/redpanda
CVE-2023-6905
CVE-2023-6903
CVE-2023-6904
CVE-2023-3907