mirror of
https://github.com/0xMarcio/cve.git
synced 2025-05-28 01:04:30 +00:00
866 B
866 B
CVE-2018-12519
Description
An issue was discovered in ShopNx through 2017-11-17. The vulnerability allows a remote attacker to upload any malicious file to a Node.js application. An attacker can upload a malicious HTML file that contains a JavaScript payload to steal a user's credentials.
POC
Reference
- https://cxsecurity.com/issue/WLB-2018060185
- https://cxsecurity.com/issue/WLB-2018060185
- https://www.exploit-db.com/exploits/44978/
- https://www.exploit-db.com/exploits/44978/
Github
No PoCs found on GitHub currently.