WSS最新版某处SQL注入直接获取数据二(两处)

- AV AC AU C I A
发布: 2025-04-13
修订: 2025-04-13

### 简要描述: WSS最新版某处SQL注入直接获取数据二(两处) ### 详细说明: WSS最新版1.3.2 文件default_user.php ``` <?php require_once('config/tank_config.php'); ?> <?php require_once('session_unset.php'); ?> <?php require_once('session.php'); ?> <?php $url_project = $_SERVER["QUERY_STRING"] ; $current_url = current(explode("&sort",$url_project)); $currentPage = $_SERVER["PHP_SELF"]; $maxRows_Recordset1 = get_item( 'maxrows_user' ); $pageNum_Recordset1 = 0; if (isset($_GET['pageNum_Recordset1'])) { $pageNum_Recordset1 = $_GET['pageNum_Recordset1']; } $startRow_Recordset1 = $pageNum_Recordset1 * $maxRows_Recordset1; $sortlist = "tk_user_registered"; if (isset($_GET['sort'])) { $sortlist = $_GET['sort']; } $orderlist = "DESC"; if (isset($_GET['order'])) { $orderlist= $_GET['order']; } $colrole_Recordset1 = ""; if (isset($_GET['select3'])) { $colrole_Recordset1 = $_GET['select3']; } $colrole_dis = "0"; if (isset($_GET['select1'])) { $colrole_dis = $_GET['select1']; } $colinputtitle_Recordset1 = ""; if...

0%
暂无可用Exp或PoC
当前有0条受影响产品信息