simple-php-router 5.4.1.7 及之前版本存在一个 IP 限制绕过漏洞,位于 IpRestrictAccess 中间件中。该漏洞允许远程未认证的攻击者通过伪造 X-Forwarded-For、CF-Connecting-IP 或 Client-IP 请求头,冒充白名单中的 IP 地址或绕过黑名单限制,从而访问受 IP 限制的路线。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| pecee | simple-router | 0 ~ 5.4.1.7 | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POCNo comments yet