CivetWeb:PUT + SSI = RCE
bugpwn.com | 研究 | #rce | #vulnerability-research | #web-security | #file-upload | #civetweb | #ssi | #cwe-434 | #embedded-http-server | #source-code-audit
摘要
对 CivetWeb 1.17 的源码审计发现:带认证的 PUT 上传与默认开启的 SSI #exec 两个合法功能组合,可让任意具备 PUT 权限的账号获得远程代码执行(CWE-434 + CWE-1188),官方视为文档行为未发 CVE,建议关闭 ssi_pattern 或分离 docroot。
- 发布时间
- 收录时间
Skip to content