Discuz! X5.0是Discuz!团队的一款PHP网络论坛程序。 Discuz! X5.0存在加密问题漏洞,该漏洞源于UCenter集成与dbbak.php数据库备份API之间共享加密密钥,可能导致未经身份验证的远程攻击者在登录时通过username参数注入特制有效载荷,滥用logging_ctl::logging_more()中的加密预言机获取合法签名令牌,从而绕过数据库导出和导入操作的授权,并触发竞争条件冒充任意用户。以下版本受到影响:20260320版本至20260501版本。
| Vendor | Product | Version Range | Status |
|---|---|---|---|
| Discuz! | Discuz! X5.0 | 20260320≤ 20260501 |
affected |
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| Discuz! | Discuz! X5.0 | 20260320 ~ 20260501 | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|---|---|---|
| 1 | Discuz! X5.0 20260320 through 20260501 contains an authentication bypass caused by exploitation of a shared cryptographic key and encryption oracle in dbbak.php and logging_ctl::logging_more(), letting unauthenticated remote attackers access database backup and restore functions, exploit requires crafted payload injection via username parameter. | https://github.com/projectdiscovery/nuclei-templates/blob/main/http/cves/2026/CVE-2026-49952.yaml | POC Details |
No public POC found.
Login to generate AI POC| CVE-2026-49954 | 7.2 HIGH | Discuz! X5.0 Local File Inclusion via enable_disable.php Plugin Directory |
| CVE-2026-49953 | 6.5 MEDIUM | Discuz! X5.0 CAPTCHA Bypass via Predictable Character Set |
No comments yet