Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

CVE-2023-38501 PoC — Copyparty 跨站脚本漏洞

Source
Associated Vulnerability
Title:Copyparty 跨站脚本漏洞 (CVE-2023-38501)
Description:Copyparty是ed个人开发者的一个便携式文件服务器。 copyparty 1.8.7之前版本存在跨站脚本漏洞,该漏洞源于参数k304和setck存在反射型跨站脚本(XSS)漏洞。
Description
Copyparty is a portable file server. Versions prior to 1.8.6 are subject to a reflected cross-site scripting (XSS) Attack.Vulnerability that exists in the web interface of the application could allow an attacker to execute malicious javascript code by tricking users into accessing a malicious link.
File Snapshot

id: CVE-2023-38501 info: name: CopyParty v1.8.6 - Cross Site Scripting author: ctflearner,r3Y3r ...
Shenlong Bot has cached this for you
Remarks
    1. It is advised to access via the original source first.
    2. If the original source is unavailable, please email f.jinxu#gmail.com for a local snapshot (replace # with @).
    3. Shenlong has snapshotted the POC code for you. To support long-term maintenance, please consider donating. Thank you for your support.