JIZHICMS Improper Authorization Vulnerability in Article Handler Component

Vulnerability

A vulnerability allowing improper authorization has been identified in JIZHICMS versions through 1.7.0. This issue resides in the Article Handler component, specifically within the file '/user/release.html'. The vulnerability arises from the manipulation of the 'ishot' parameter, which, when set to '1', allows unauthorized users to modify article data by marking it as popular. This flaw can be exploited remotely, without any authentication requirements.

Impact

Exploitation of this vulnerability allows for unauthorized data modification in the article publishing feature, potentially leading to incorrect or misleading information being presented as factual.

Reproduction

To reproduce this vulnerability, send a POST request to '/user/release.html' with the 'ishot' parameter set to '1'. This can be done using a web browser or a tool like cURL or Postman. The request should include a valid PHP session cookie to simulate an authenticated user. Once the request is sent, the article will be published with the 'popular' designation, despite lacking the necessary authorization.

Added: Jun 9, 2025, 7:46 PM
Updated: Jun 9, 2025, 7:46 PM

Vulnerability Rating

Custom Algorithm
spread
1.0
impact
2.5
exploitability
9.7
remediation
0.0
relevance
0.0
threat
6.4
urgency
2.9
incentive
10.0

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.