taogogo / taocms

taoCMS is an incredible tiny CMS( Content Management System) , writen in PHP and support MySQL/Sqlite as the database(MIT License)
MIT License
60 stars 21 forks source link

There is a Arbitrary file download attack at " File Management column"(administrator authority) #10

Open 7wkajk opened 2 years ago

7wkajk commented 2 years ago

First, we enter the background and use the administrator admin we created:

image-20211210101406045

Let's click "file management" on the left:

image-20211210102337699

Then use Burp Suite and click Download to grab the request package

image-20211210101704321

image-20211210101728293

Changing the “path” parameter

image-20211210101826206