Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

CVE-2015-5354 PoC — Novius OS 开放重定向漏洞

Source
Associated Vulnerability
Title:Novius OS 开放重定向漏洞 (CVE-2015-5354)
Description:Novius OS是一套开源的基于PHP的内容管理系统(CMS)。 Novius OS 5.0.1版本中存在开放重定向漏洞。远程攻击者可借助admin/nos/login URI的‘redirect’参数中的URL利用该漏洞将用户重定向到任意Web站点,实施钓鱼攻击。
Description
Novius OS 5.0.1 (Elche) allows remote attackers to redirect users to arbitrary web sites and conduct phishing attacks via a URL in the redirect parameter to admin/nos/login.
File Snapshot

id: CVE-2015-5354 info: name: Novius OS 5.0.1-elche - Open Redirect author: 0x_Akoko severity ...
Shenlong Bot has cached this for you
Remarks
    1. It is advised to access via the original source first.
    2. If the original source is unavailable, please email f.jinxu#gmail.com for a local snapshot (replace # with @).
    3. Shenlong has snapshotted the POC code for you. To support long-term maintenance, please consider donating. Thank you for your support.