CVE-2024-54879

项目无限充值会员逻辑漏洞分析

一、Project overview

itemcontentremark
Authorized penetration rangehttp://192.168.88.141/Local test
Source code downloadhttps://www.seacms.net/SeaCMS_V13.1_install_f.zipOpen source project
Scope of vulnerabilitySeaCMS_V13.1

二、Vulnerability description

1、Logic bug - Unlimited top-up members

categorycontentremark
Vulnerability location(URL)http://192.168.200.141/member.php?action=hyz&gid=3&mon=1
Vulnerability typeLogic hole
Vulnerability descriptionSeaCMS has a logical flaw that could be exploited by an attacker to allow any user to recharge members indefinitely

*Visit a center and click on Super Member*

img

*Click on 100 gold per month and grab the pack*

image-20241228233046755

*If the gid parameter is changed to 1, the system returns that the recharge is successful*

image-20241228233155449

*Refresh the Personal Center page, successfully add one month membership time*

image-20241228233211064

*Multiple packages, refresh the personal center page again, you can see the time lengthened*

image-20241228233238238

评论
添加红包

请填写红包祝福语或标题

红包个数最小为10个

红包金额最低5元

当前余额3.43前往充值 >
需支付:10.00
成就一亿技术人!
领取后你会自动成为博主和红包主的粉丝 规则
hope_wisdom
发出的红包
实付
使用余额支付
点击重新获取
扫码支付
钱包余额 0

抵扣说明:

1.余额是钱包充值的虚拟货币,按照1:1的比例进行支付金额的抵扣。
2.余额无法直接购买下载,可以购买VIP、付费专栏及课程。

余额充值