ThinkSAAS SQL注入漏洞打包1-5

- AV AC AU C I A
发布: 2025-04-13
修订: 2025-04-13

### 简要描述: 漏洞很多,一个一个提交太麻烦了,一起提交吧,希望能走个大厂商 ### 详细说明: 第一处SQL注入 /app/group/action/do.php ``` //编辑小组基本信息 case "edit_base": $groupname = t($_POST['groupname']); $groupdesc = tsClean($_POST['groupdesc']); if($groupname=='' || $groupdesc=='') tsNotice("小组名称和介绍都不能为空!"); //过滤内容开始 aac('system')->antiWord($groupname); aac('system')->antiWord($groupdesc); //过滤内容结束 $isgroupname = $new['group']->findCount('group',array( 'groupname'=>$groupname, )); $groupid = intval($_POST['groupid']); $strGroup = $new['group']->find('group',array( 'groupid'=>$groupid, )); if($isgroupname > 0 && $strGroup['groupname']!=$groupname) tsNotice('小组名称已经存在!'); $new['group']->update('group',array( 'groupid'=>$groupid, ),array( 'groupname' => trim($_POST['groupname']), 'groupdesc' => trim($_POST['groupdesc']), 'joinway' => intval($_POST['joinway']), 'ispost' => intval($_POST['ispost']), 'isopen' => intval($_POST['isopen']), 'ispostaudit' => intval($_POST['ispostaudit']), )); tsNotice('基本信息修改成功!'); break; ```...

0%
暂无可用Exp或PoC
当前有0条受影响产品信息