PictShare 3.7.1 之前的版本存在一个信息泄露漏洞,允许未认证的攻击者通过调用 API::info() 端点获取秘密的 delete_code 和上传者元数据。该端点返回完整的原始元数据对象,而没有进行字段白名单过滤。攻击者可以利用公开可见的文件哈希,通过 info API 检索 delete_code,然后调用 delete API 永久删除任意文件。同时,该漏洞还会泄露上传者的 IP 地址、User Agent、远程端口以及 SHA-1 哈希值,从而导致内容完整性、可用性以及上传者隐私的丧失。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| HaschekSolutions | pictshare | 2.0.0 ~ 3.7.1 | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POCNo comments yet