# N/A
## 概述
SourceCodester Pet Grooming Management System 1.0 存在路径穿越漏洞,位于 `admin/manage_website.php` 组件中。
## 影响版本
SourceCodester Pet Grooming Management System 版本 1.0
## 细节
漏洞允许具有管理员权限的认证用户通过提交特制的 POST 请求,执行路径穿越操作。
## 影响
攻击者可利用该漏洞删除 Web 服务器或底层操作系统上的任意文件。
| # | POC 描述 | 源链接 | 神龙链接 |
|---|---|---|---|
| 1 | A path traversal vulnerability was identified in SourceCodester Pet Grooming Management System 1.0, affecting the admin/manage_website.php component. An authenticated user with administrative privileges can leverage this flaw by submitting a specially crafted POST request, enabling the deletion of arbitrary files on the web server. | https://github.com/z3rObyte/CVE-2025-63298 | POC详情 |
标题: GitHub - z3rObyte/CVE-2025-63298: A path traversal vulnerability was identified in SourceCodester Pet Grooming Management System 1.0, affecting the admin/manage_website.php component. An authenticated user with administrative privileges can leverage this flaw by submitting a specially crafted POST request, enabling the deletion of arbitrary files on the web server. -- 🔗来源链接
标签:
暂无评论