References https://stack.chaitin.com/techblog/detail/278 https://github.com/zan8in/wy876-POC/blob/main/Likeshop/Likeshop-formimage%E4%BB%BB%E6%84%8F%E6%96%87%E4%BB%B6%E4%B8%8A%E4%BC%A0.md https://www.lmboke.com/archives/likeshopren-yi-wen-jian-shang-chuan-lou-dong-cve-2024-0352 https://blog.csdn.net/maxiluo/article/details/135865768 https://cn-sec.com/archives/2399145.html https://zhuanlan.zhihu.com/p/598780174 https://cn-sec.com/archives/2402015.html https://blog.csdn.net/shelter1234567/article/details/135918508 https://www.sentinelone.com/vulnerability-database/cve-2024-0352/ https://cn-sec.com/archives/2404317.html https://cn-sec.com/archives/2398446.html https://cn-sec.com/archives/2412513.html
Related VulnerabilitiesPoCCVE-2024-0352: Likeshop < 2.5.7.20210311 - Arbitrary File UploadPoCCVE-2024-0352: Likeshop userFormImage 文件上传漏洞Campcodes Online Shopping Portal 注入漏洞Code-Projects Shopping Portal 注入漏洞PHPGurukul Online Shopping Portal 注入漏洞WordPress plugin brodos.net Onlineshop Plugin 跨站脚本漏洞Adobe Photoshop 数字错误漏洞DbShop商城任意文件上传漏洞DbShop商城系统弱口令漏洞PHPGurukul Online Shopping Portal 跨站脚本漏洞