1.About
Seven Bears is a library CMS system similar to Baidu Library, which can share and sell documents. After the user uploads the source document, seven bears will automatically transcode the document into HTML, after success, the document HTML back library CMS. Realize plug-in-free, online browsing.
CMS address:
https://gitee.com/mirweiye/wenkucms
Address of the vulnerability replay
https://www.jianshu.com/p/add86fa50048
2.Exploit
Build CMS to the local computer.After testing, it is found that the interface is not authorized to verify, using the interface can upload any file to the server
http://127.0.0.1/wenkucms-master/index.php?g=admin&m=attachment&a=editer_upload
The HTML is constructed locally
Use the following