2013-10-12: 细节已通知厂商并且等待厂商处理中 2013-10-14: 厂商已经确认,细节仅向厂商公开 2013-10-24: 细节向核心白帽子及相关领域专家公开 2013-11-03: 细节向普通白帽子公开 2013-11-13: 细节向实习白帽子公开 2013-11-26: 细节向公众公开
管理员备份文件也太那个了把,直接在备份文件后面加BAK格式!导致文件直接下载,包括数据库信息泄漏!
源码和数据库信息泄漏:http://3g.happigo.com/webconfig.php.bak还有一些我就懒得下载了哦!下面是一些关键信息的截图!
数据库信息!
<?php//数据库连接信息define("ORDERDB_DB", "orderdb");define("ORDERDB_HOST", "localhost");define("ORDERDB_USER", "wap");define("ORDERDB_PASS", "happiwap12320130523");define("GOODSADMIN_DB", "goods_admin");define("GOODSADMIN_HOST", "localhost");define("GOODSADMIN_USER", "wap");define("GOODSADMIN_PASS", "happiwap12320130523");define("APP_DB", "app_manager");define("APP_HOST", "localhost");define("APP_USER", "wap");define("APP_PASS", "happiwap12320130523");define("TOUCH_DB", "touch_manager");define("TOUCH_HOST", "localhost");define("TOUCH_USER", "wap");define("TOUCH_PASS", "happiwap12320130523");define("WAP_DB", "wap_manager");define("WAP_HOST", "localhost");define("WAP_USER", "wap");define("WAP_PASS", "happiwap12320130523");define("ZT_DB", "msg");define("ZT_HOST", "10.10.66.101");define("ZT_USER", "cmsgogo");define("ZT_PASS", "XWW3U011");/*define("ZT_DB", "wap_manager");define("ZT_HOST", "localhost");define("ZT_USER", "root");define("ZT_PASS", "");define("ZT_DB", "msg");define("ZT_HOST", "10.10.66.101");define("ZT_USER", "cmsgogo");define("ZT_PASS", "XWW3U011");*/define("TS_DB", "goods_admin");define("TS_HOST", "10.10.66.46");define("TS_USER", "tongji");define("TS_PASS", "zxcasdqwe");define("LOGDIR", "/tmp/");define("MAXROWS", "300");define("WAPDNS", "http://m.happigo.com/");define("IMAGEPHP", "http://g1.happimg.com");define("DATAIURL", "http://m.happigo.com/datai/bus.php?cps_id=33&");define("TOUCHDNS", "http://3g.happigo.com/");define("WEBDATAURL", "http://www.happigo.com/system/crontab/wap/wap_save_opinion.php");//自定义参数define("URLPARAMS", "cps_id,cps_u_id,uid,sessionid,acckey,mobile,from,ysrc,ychannel,ycid,ywi,yurl");//用户登录define('LOGIN_URL', 'http://member.happigo.com/index.php?app=user');//单点登录请求地址define('LOGIN_KEY', 'weiry2374934wehfkdsfsaqw67123hd623hd'); // 与用户中心的通信密钥, define('APPID', '100'); // 用户中心接口交互使用的id//韵味湖南define("CPS_YWHN", "17");//中广睛彩商城define("CPS_CMMB", "20");//快乐通宝define('HAPPIPAY_ACC_KEY', 'sd4Sdf34ggg4k');//搜索关键字define('SEARCH_KEYWORD', '');//手机支付-联合登录define('CMPAY_LOGIN_KEY', 'o$p@e!n*apib'); // 移动手机支付联合登录的通信密钥, define('CO_LOGIN_URL', 'http://www.happigo.com/cache/api_co_login/wapcall.php?');define('CO_LOGIN_PWD_KEY', '_*&Wn|!9');define('PROMOTIONID_10YUAN', '201301010003');//自助订购立减10元促销id$g_gift_coupon= array( 'HG4007051111' => '181,182,183,184','quan20' => '402','quan30' => '403','quan50' => '404',);?>
删除备份文件,修改数据库和一些接口信息!
危害等级:高
漏洞Rank:15
确认时间:2013-10-14 16:00
感谢xlz0iza1对漏洞的提交!
暂无