phpmps储存型xss一枚

- AV AC AU C I A
发布: 2025-04-13
修订: 2025-04-13

### 简要描述: rt ### 详细说明: Phpmps 是基于PHP + MYSQL的开源分类信息发布系统 注册用户后,发布信息。 post.php ``` $catid = $_POST['catid'] ? intval($_POST['catid']) : ''; $title = $_POST['title'] ? htmlspecialchars(trim($_POST['title'])) : ''; $areaid = $_POST['areaid'] ? intval($_POST['areaid']) : ''; $postdate = time(); $enddate = $_POST['enddate']>0 ? (intval($_POST['enddate']*3600*24)) + time() : '0'; $content = $_POST['content'] ? htmlspecialchars(trim($_POST['content'])) : ''; $keywords = $_POST['keyword'] ? htmlspecialchars(trim($_POST['keyword'])) : ''; $description = cut_str($content,100); $linkman = $_POST['linkman'] ? htmlspecialchars(trim($_POST['linkman'])) : ''; $phone = $_POST['phone'] ? trim($_POST['phone']) : ''; $qq = $_POST['qq'] ? intval($_POST['qq']) : ''; $email = $_POST['email'] ? htmlspecialchars(trim($_POST['email'])) : ''; $password = $_POST['password'] ? trim($_POST['password']) : ''; $address = $_POST['address'] ? trim($_POST['address']) : ''; $mappoint = $_POST['mappoint'] ?...

0%
暂无可用Exp或PoC
当前有0条受影响产品信息