目标达成 感谢每一位支持者 — 我们达成了 100% 目标!

目标: 1000 元 · 已筹: 1359 元

100%

CVE-2024-50677 PoC — OroPlatform 安全漏洞

来源
关联漏洞
标题: OroPlatform 安全漏洞 (CVE-2024-50677)
Description:OroPlatform是Oro开源的一个 PHP 业务应用程序平台 (BAP),旨在使自定义业务应用程序的开发更容易、更快。 OroPlatform v5.1版本存在安全漏洞,该漏洞源于容易受到跨站脚本攻击,攻击者可以通过构造的有效载荷注入到Search参数中执行任意网页脚本或HTML。
Description
This repository presents a proof-of-concept of CVE-2024-50677
介绍
# CVE-2024-50677 | Two-Click Reflected XSS in OroPlatform CMS v5.1
This repository presents a proof-of-concept of CVE-2024-50677

## Disclaimer:
This code is a proof of concept of the vulnerability. I will not be held responsible for any use of this exploit.

## Description:
CVE-2024-50677 refers to a two-click reflected XSS that is present in default configurations of OroPlatform CMS v5.1, specifically the Demo platform here: https://github.com/oroinc/docker-demo

The vulnerability lies within how the application controls user input to the search function, if a user clicks on the search bar in the webpage's UI that has javascript as a query such as

```
<script>alert(1)</script>
```

The application will then load and execute this javascript freely.

This CVE was discovered by @ZumiYumi

## POC:
1. Attacker crafts a payload:
```
http://vulnerable-website/product/search?search=%3Cscript%3Ealert(1)%3C%2Fscript

```
2. Attacker phishes a user to click it.
3. Victim clicks on the search bar, or chained with another vulnerability to click the search bar.
4. Javascript executes.


## Versions Concerned:
* OroPlatform CMS v5.1

## References:
https://www.cve.org/CVERecord?id=CVE-2024-50677
文件快照

登录后查看神龙缓存的 POC 文件快照

登录查看
备注
    1. 建议优先通过来源进行访问。
    2. 本地 POC 快照面向订阅用户开放;当原始来源失效或无法访问时,本地镜像作为订阅权益的一部分提供。
    3. 持续抓取、验证、维护这份 POC 档案需要不少投入,因此本地快照已纳入付费订阅。您的订阅是让这份资料能继续走下去的关键,由衷感谢。 查看订阅方案 →