Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

CVE-2024-57252 PoC — OTCMS 代码问题漏洞

Source
Associated Vulnerability
Title:OTCMS 代码问题漏洞 (CVE-2024-57252)
Description:OTCMS(网钛CMS)是网钛(OTCMS)公司的一套文章类网站内容管理系统(CMS)。 OTCMS 7.46版本及之前版本存在代码问题漏洞,该漏洞源于/admin/read.php包含一个服务器端请求伪造问题。
Readme
[description]
 > OtCMS <=V7.46 is vulnerable to SSRF in the /admin/read.php, which can Read system files arbitrarily.
[VulnerabilityType Other]
> SSRF
[Vendor of Product]
> http://otcms.com/
[Affected Product Code Base]
> otcms - <= V7.46
[Affected Component]
> OtCMS <=V7.46 is vulnerable to SSRF in the /admin/read.php, which can Read system files arbitrarily.
[Attack Type]
> Remote
File Snapshot

[4.0K] /data/pocs/d372fab50e33cc931dc7bc898177cb11395e98c9 ├── [ 386] README.md └── [1.5M] ssrf.pdf 0 directories, 2 files
Shenlong Bot has cached this for you
Remarks
    1. It is advised to access via the original source first.
    2. If the original source is unavailable, please email f.jinxu#gmail.com for a local snapshot (replace # with @).
    3. Shenlong has snapshotted the POC code for you. To support long-term maintenance, please consider donating. Thank you for your support.