sanluan/PublicCMS

There is a brute force vulnerabillity via publiccms/admin/login.html

Echox1 opened this issue · 0 comments

when I login, i find if i use a wrong username:
1536729794 1

So we can use brute force to get the correct username beacuse the correct username has different response lenth
1536725379 1

after we got the correct username,use the same way to get the correct password

1536725765 1
1536729635 1

302 redirect means we login successful