Quate CMS多个输入验证漏洞

- AV AC AU C I A
发布: 2025-04-13
修订: 2025-04-13

BUGTRAQ ID: 29348 Quate CMS是运行在PHP和MySQL上的网站内容管理系统。 Quate CMS的多个模块没有正确验证用户提供的输入,可能导致跨站脚本攻击、泄露敏感信息或入侵有漏洞的系统。 1) 当bypass_installed设置为1的时候,admin/includes/header.php文件中没有正确地验证对secure_page_path参数的输入便用于包含文件: ################################################# if ($bypass_installed != 1) { if (!is_file("../includes/installed")) { ... require("../includes/simple_gui.php"); exit(); } } if ($bypass_restrict != 1) { require_once($secure_page_path. "includes/secure.php"); } $admin_template_default = "default"; if ($not_logged_in != 1) { //echo $row_secure['account_theme']; if (file_exists("includes/themes/" .$row_secure['account_theme']. "/header.php")) { require_once("themes/" .$row_secure['account_theme']. "/header.php"); } else { require_once("themes/" .$admin_template_default. "/header.php"); } } else { require_once("themes/" .$admin_template_default. "/header.php"); }...

0%
暂无可用Exp或PoC
当前有0条受影响产品信息