Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

CVE-2020-27191 PoC — Lionwiki 安全漏洞

Source
Associated Vulnerability
Title:Lionwiki 安全漏洞 (CVE-2020-27191)
Description:Lionwiki是Lionwiki团队的一个使用Php编写的基于文件模板的小型wiki建站系统。 LionWiki 3.2.12之前版本存在安全漏洞,该漏洞允许未经身份验证的用户通过在index.php f1变量(即本地文件包含)中创建字符串,以web服务器用户的身份读取文件。注意:此漏洞仅影响维护者不再支持的产品。
Description
LionWiki before 3.2.12 allows an unauthenticated user to read files as the web server user via crafted strings in the index.php f1 variable, aka local file inclusion.
File Snapshot

id: CVE-2020-27191 info: name: LionWiki <3.2.12 - Local File Inclusion author: 0x_Akoko sever ...
Shenlong Bot has cached this for you
Remarks
    1. It is advised to access via the original source first.
    2. If the original source is unavailable, please email f.jinxu#gmail.com for a local snapshot (replace # with @).
    3. Shenlong has snapshotted the POC code for you. To support long-term maintenance, please consider donating. Thank you for your support.