Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1310 CNY

100%

CVE-2021-27180 PoC — MDaemon Technologies WorldClient 跨站脚本漏洞

Source
Associated Vulnerability
Title:MDaemon Technologies WorldClient 跨站脚本漏洞 (CVE-2021-27180)
Description:An issue was discovered in MDaemon before 20.0.4. There is Reflected XSS in Webmail (aka WorldClient). It can be exploited via a GET request. It allows performing any action with the privileges of the attacked user.
Description
MDaemon Advisories - CVE-2021-27180, CVE-2021-27181, CVE-2021-27182, CVE-2021-27183
Readme
# MDaemon-Advisories
MDaemon Advisories:

- CVE-2021-27180 (Reflected XSS)

- CVE-2021-27181 (CSRF Token Fixation)

- CVE-2021-27182 (Iframe injection)

- CVE-2021-27183 (Remote Code Execution)

Those vulnerabilities were already patched on January 2021 and are published for CVE purposes. They can be chained to achieve RCE/Account Takeover over email message (user interaction required).

Timeline:

15-Dec-2020: Vulnerabilities reports sent to the vendor

12-Jan-2021: Patch published

Patch notes:

https://www.altn.com/Support/SecurityUpdate/MD011221_MDaemon_EN/

Thank you MDaemon Technologies for quick fixes and good cooperation. :)
File Snapshot

Log in to view the POC file snapshot cached by Shenlong Bot

Log in to view
Remarks
    1. It is advised to access via the original source first.
    2. Local POC snapshots are reserved for subscribers — if the original source is unavailable, the local mirror is part of the paid plan.
    3. Mirroring, verifying, and maintaining this POC archive takes ongoing effort, so local snapshots are a paid feature. Your subscription keeps the archive online — thank you for the support. View subscription plans →