PHPB2B注入#1(绕过过滤)

- AV AC AU C I A
发布: 2025-04-13
修订: 2025-04-13

### 简要描述: PHPB2B某处注入#1。绕过过滤。 官方最新版本. https://github.com/ulinke/phpb2b/archive/master.zip 漏洞文件。virtual-office/company.php ### 详细说明: POST /phpb2b/virtual-office/company.php Content-Disposition: form-data; name="data[company][name]" Content-Disposition: form-data; name="data[company][english_name']" Content-Disposition: form-data; name="data[company][employee_amount]" Content-Disposition: form-data; name="data[company][year_annual]" Content-Disposition: form-data; name="data[company][manage_type]" Content-Disposition: form-data; name="data[company][property]" Content-Disposition: form-data; name="data[company][description]" Content-Disposition: form-data; name="data[company][main_prod]" Content-Disposition: form-data; name="data[company][address]" Content-Disposition: form-data; name="data[company][zipcode]" Content-Disposition: form-data; name="data[company][boss_name]" Content-Disposition: form-data; name="data[company][reg_address]" ... ... 多个参数存在同样的问题。 data[*][*1] 未经处理。 ex:...

0%
暂无可用Exp或PoC
当前有0条受影响产品信息