Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

CVE-2023-24735 PoC — PMB 输入验证错误漏洞

Source
Associated Vulnerability
Title:PMB 输入验证错误漏洞 (CVE-2023-24735)
Description:PMB是PMB Services团队的一个 100% 免费文档管理的参考工具。 PMB v7.4.6版本存在安全漏洞,该漏洞源于通过组件/opac_css/pmb.php发现包含开放重定向漏洞。攻击者利用该漏洞通过特制的URL将受害用户重定向到外部域。
Description
PMB v7.4.6 contains an open redirect vulnerability via the component /opac_css/pmb.php. An attacker can redirect a user to an external domain via a crafted URL and thereby potentially obtain sensitive information, modify data, and/or execute unauthorized operations.
File Snapshot

id: CVE-2023-24735 info: name: PMB 7.4.6 - Open Redirect author: r3Y3r53 severity: medium d ...
Shenlong Bot has cached this for you
Remarks
    1. It is advised to access via the original source first.
    2. If the original source is unavailable, please email f.jinxu#gmail.com for a local snapshot (replace # with @).
    3. Shenlong has snapshotted the POC code for you. To support long-term maintenance, please consider donating. Thank you for your support.