Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

CVE-2024-0352复现(likeshop v2.5.7文件上传漏洞) #208

Open
wsxk opened this issue Sep 4, 2024 · 0 comments
Open

CVE-2024-0352复现(likeshop v2.5.7文件上传漏洞) #208

wsxk opened this issue Sep 4, 2024 · 0 comments

Comments

@wsxk
Copy link
Owner

wsxk commented Sep 4, 2024

https://wsxk.github.io/cve20240352/

  1. 简介

    1.1 漏洞详情

  2. 漏洞复现

  3. 漏洞分析
    references

  4. 简介
    likeshop是一款开源的单商户商城系统,产品定位为B2C模式,类似京东自营商城。可以在https://github.com/likeshop-github/likeshop搜到其开源代码
    免费企业版和付费企业版功能基本相同,只落后了付费企业版几个版本,可以说是非常良心了

1.1 漏洞详情
漏洞出现在Likeshop up to 2.5.7.20210311版本中,通过

  1. 漏洞复现

  2. 漏洞分析

references
likeshop v2.5.7文件上传漏洞分析(CVE-2024-0352)

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Projects
None yet
Development

No branches or pull requests

1 participant