Skip to content

PHP-Proxy <= 5.1.0 - The decrypt key is flawed and cause the vulnerability of LFI #139

@0xUhaw

Description

@0xUhaw

We discovered the PHP-Proxy str_rot_pass encrypt function is flawed. Despite the user change the default key, the remote attacker can easily decrypt the key and cause the vulnerability of Local File Inclusion.

4-1

5

Detailed steps and sample payload:
https://github.com/0xUhaw/CVE-Bins/tree/master/PHP-Proxy

We suggest that the encryption rules should be strengthened because the logic of decryption is too easy.

Metadata

Metadata

Assignees

No one assigned

    Labels

    No labels
    No labels

    Projects

    No projects

    Milestone

    No milestone

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions