havok89 / Hoosk

Hoosk Codeigniter CMS
http://hoosk.org
Other
128 stars 87 forks source link

Hoosk v1.8 has an arbitrary file upload vulnerability #64

Open pwdid opened 2 years ago

pwdid commented 2 years ago

Vulnerability exists in /attachments routing

After logging in to the background, there is an interface for uploading arbitrary files. You can upload php files by building network packages to obtain webshell

image-20221011101029899 image-20221011101052588