Technical articles migrated from Yuque.
[Responsible Disclosure] Tipask Contains an Authenticated Arbitrary Local File Download Vulnerability
http://tipask/attach/download/attachments-2021-09-4oFjTAjm6142e9d617e23.pdf attachments-2021-09-4oFjTAjm6142e9d617e23.pdf E:\Desktop\CodeAudit\v3.5.5\storage\app\ attachments\2021\09 E:\Desktop\CodeAudit\v3.5.5\storage\logs\laravel.log # E:\Desktop\CodeAudit\v3.5.5\storage\app\..-logs-laravel.log E:\Desktop\CodeAudit\v3.5.5\.env E:\Desktop\CodeAudit\v3.5.5\storage\app\..-..-.env The latest version of Tipask contains an “arbitrary local file download” vulnerability. An attacker can craft special input to download arbitrary files on the Tipask server, such as .env, /etc/passwd, laravel.log, etc., leaking important sensitive information from the server. The impact is significant, and roughly 700+ customers on the public internet may be affected. ...