PHPYUN最新版Webscan绕过注入四处(可遍历全站信息,无需登录)

- AV AC AU C I A
发布: 2025-04-13
修订: 2025-04-13

### 简要描述: PHPYUN最新版Webscan绕过注入两处(可遍历全站信息,无需登录) ### 详细说明: 首先看问题文件: tiny/index.class.php: ``` class index_controller extends common{ function index_action(){ session_start(); if($this->config['sy_wjl_web']=="2"){ header("location:".Url('error')); } if($_GET['keyword']=='请输入简历关键字,例如:会计'){ $_GET['keyword']=''; } $M=$this->MODEL('tiny'); $ip = fun_ip_get(); $s_time=strtotime(date('Y-m-d 00:00:00')); $m_tiny=$M->GetTinyresumeNum(array('login_ip'=>$ip,'`time`>\''.$s_time.'\'')); $num=$this->config['sy_tiny']-$m_tiny; $CacheM=$this->MODEL('cache'); $CacheList=$CacheM->GetCache(array('user')); $this->yunset($CacheList); if($_POST['submit']){ $id=(int)$_POST['id']; $authcode=md5($_POST['authcode']); $password=md5($_POST['password']); unset($_POST['authcode']); unset($_POST['password']); unset($_POST['submit']); unset($_POST['id']); $_POST['status']=$this->config['user_wjl']; $_POST['login_ip']=$ip; $_POST['time']=time(); $_POST['qq']=$_POST['qq']; if($id!=""){...

0%
暂无可用Exp或PoC
当前有0条受影响产品信息