deathslayer999

TImeforlearning Security Vuln

Oct 9th, 2019
328
0
Never
Not a member of Pastebin yet? Sign Up, it unlocks many cool features!
text 1.51 KB | None | 0 0
  1. Hello, I'm a student at the website https://www.time4learning.com/
  2. and i found a In that Site U Guy's own,
  3.  
  4. POC
  5. How i found This is Because when i clicked any of the Quiz i saw in the URL it Was going to a new site using a url input
  6. what i found it was using this to redirect the user to the Quiz,
  7. https://www.time4learning.com/App/Admin/ActivityPlanner/LtiHandler.ashx/?type=activity&ltiurl=https://www.thelearningodyssey.com/lti/resources/lessonquiz/SS7A4&activity=LQ1834&source=5
  8.  
  9. i seen that is was redirecting using the iurl= method so i was thinking hmm i could probs change that to www.google.com like this
  10.  
  11. https://www.time4learning.com/App/Admin/ActivityPlanner/LtiHandler.ashx/?type=activity&ltiurl=https://www.google.com/&activity=LQ1834&source=5
  12.  
  13. then boom it went to google.com i saw that it was using the POST method to send the url so i was thinking again these owners are not that stupid to let a file download so i made this link
  14. and it downloads.
  15. https://www.time4learning.com/App/Admin/ActivityPlanner/LtiHandler.ashx/?type=activity&ltiurl=https://www.exploit-db.com/download/42745/&activity=LQ1834&source=5
  16.  
  17. pretty sad.
  18.  
  19.  
  20.  
  21. What this could do to users
  22.  
  23. a "hacker" could use this to a user put it in a urlshortner and the user would click on it thinking it was timeforlearning
  24. and it downloads malware on the targets computer phone ETC.
  25.  
  26. This Was Found By N..
  27. This will be posted on pastebin thank u for the time
Add Comment
Please, Sign In to add comment