Metinfo 5.2 /search/search.php SQL 注入

- AV AC AU C I A
发布: 2025-04-13
修订: 2025-04-13

漏洞文件:/search/search.php ``` }else{ $module=intval($module); if($class1)$module=0; if(intval($module)){ $serch_sql.=" where lang='$lang' and (recycle='0' or recycle='-1') and displaytype='1' "; }else{ $class1_info=$class_list[$class1]; if(!$class1_info)okinfo('../',$pagelang[noid]); $class1sql=" class1='$class1' "; $class2sql=" class2='$class2' "; $class3sql=" class3='$class3' "; if($_GET['class1re']){ $class1re = ''; } if($class1&&!$class2&&!$class3){ foreach($module_list2[$class_list[$class1]['module']] as $key=>$val){ if($val['releclass']==$class1){ $class1re.=" or class1='$val[id]' "; } } if($class1re){ $class1sql='('.$class1sql.$class1re.')'; } } if($class_list[$class2]['releclass']){ $class1sql=" class1='$class2' "; $class2sql=" class2='$class3' "; $class3sql=""; } $serch_sql=" where lang='$lang' and (recycle='0' or recycle='-1') and displaytype='1' and $class1sql "; if($class2&&$class2sql)$serch_sql .= " and $class2sql "; if($class3&&$class3sql)$serch_sql .= " and $class3sql...

0%
暂无可用Exp或PoC
当前有0条受影响产品信息