Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

CVE-2020-12478 PoC — TeamPass 注入漏洞

Source
Associated Vulnerability
Title:TeamPass 注入漏洞 (CVE-2020-12478)
Description:TeamPass是NILS LAUMAILL?软件开发者的一款开源的密码管理器。 TeamPass 2.1.27.36版本中存在安全漏洞。攻击者可利用该漏洞检索TeamPass Web根目录下的文件(包括备份文件或LDAP调试文件)。
Description
TeamPass 2.1.27.36 is susceptible to improper authentication. An attacker can retrieve files from the TeamPass web root, which may include backups or LDAP debug files, and therefore possibly obtain sensitive information, modify data, and/or execute unauthorized operations.
File Snapshot

id: CVE-2020-12478 info: name: TeamPass 2.1.27.36 - Improper Authentication author: arafatansar ...
Shenlong Bot has cached this for you
Remarks
    1. It is advised to access via the original source first.
    2. If the original source is unavailable, please email f.jinxu#gmail.com for a local snapshot (replace # with @).
    3. Shenlong has snapshotted the POC code for you. To support long-term maintenance, please consider donating. Thank you for your support.