Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

CVE-2020-11034 PoC — Teclib GLPI 输入验证错误漏洞

Source
Associated Vulnerability
Title:Teclib GLPI 输入验证错误漏洞 (CVE-2020-11034)
Description:Teclib GLPI是法国Teclib公司的一套开源的IT资产管理套件。该套件包含设备状态管理、资产清单存储、管理流程和工作日志管理等功能。 Teclib GLPI 9.4.6之前版本中存在安全漏洞。攻击者可利用该漏洞绕过开放重定向保护。
Description
GLPI prior 9.4.6 contains an open redirect vulnerability based on a regexp.
File Snapshot

id: CVE-2020-11034 info: name: GLPI <9.4.6 - Open Redirect author: pikpikcu severity: medium ...
Shenlong Bot has cached this for you
Remarks
    1. It is advised to access via the original source first.
    2. If the original source is unavailable, please email f.jinxu#gmail.com for a local snapshot (replace # with @).
    3. Shenlong has snapshotted the POC code for you. To support long-term maintenance, please consider donating. Thank you for your support.