Flatpress v1.3 中存在一个跨站脚本 (XSS) 漏洞,攻击者可通过注入到 email 字段的恶意载荷执行任意 Web 脚本或 HTML。
漏洞类型:
跨站脚本 (XSS)
产品供应商:
https://github.com/flatpressblog/flatpress
受影响产品代码库
受影响版本:FlatPress 1.2.1 最新版 - 将在 FlatPress 版本 1.3 中修复。
受影响组件:
FlatPress 安装程序(email 参数)中的跨站脚本 (XSS)
攻击类型:
远程
发现者:
Parag Bagul
参考:
https://portswigger.net/web-security/cross-site-scripting
https://drive.google.com/file/d/1GBL-iY5ZRaxRqLVqpBe1w6dVgEfywAG7/view?usp=sharing
复现步骤:
1.从可信来源下载 FlatPress CMS。(https://github.com/flatpressblog/flatpress)
2.使用命令启动本地 PHP 服务器:php -S 127.0.0.1:80
3.在浏览器中打开以下 URL:https://127.0.0.1/setup.php
"> or "><script>alert(1)</script>
'''