Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

CVE-2019-18952 PoC — SibSoft Xfilesharing 代码问题漏洞

Source
Associated Vulnerability
Title:SibSoft Xfilesharing 代码问题漏洞 (CVE-2019-18952)
Description:SibSoft Xfilesharing是俄罗斯SibSoft公司的一套文件共享解决方案。 SibSoft Xfilesharing 2.5.1及之前版本中存在代码问题漏洞。远程攻击者可借助包含短代码的.html文件利用该漏洞执行代码。
Description
SibSoft Xfilesharing through 2.5.1 allows cgi-bin/up.cgi arbitrary file upload.This can be combined with CVE-2019-18951 to achieve remote code execution via a .html file, containing short codes, that is served over HTTP.
File Snapshot

id: CVE-2019-18952 info: name: Xfilesharing 2.5.1 - Arbitrary File Upload author: daffainfo s ...
Shenlong Bot has cached this for you
Remarks
    1. It is advised to access via the original source first.
    2. If the original source is unavailable, please email f.jinxu#gmail.com for a local snapshot (replace # with @).
    3. Shenlong has snapshotted the POC code for you. To support long-term maintenance, please consider donating. Thank you for your support.