EasyTalk SQL注入漏洞

- AV AC AU C I A
发布: 2025-04-13
修订: 2025-04-13

### 简要描述: EasyTalk_X2.5 最新版SQL注入一枚。 ### 详细说明: 漏洞位于/Home/Lib/Action/ApiAction.class.php的 ``` public function userpreview() { $username=trim(rawurldecode($this->_post('username'))); if ($username) { parent::init(); $user = M('Users')->where("user_name='$username'")->find(); if ($user) { if ($user['cityid']) {//用户所在地 $dtModel=M('District'); $pdata = $dtModel->where("id='$user[cityid]'")->find(); $pdata2 = $dtModel->where("id='$pdata[upid]'")->find(); $user['live_city']=$pdata2['name'].' '.$pdata['name']; } $isfriend=D('Friend')->followstatus($user['user_id'],$this->my['user_id']); $f="<span id='followsp2_".$user['user_id']."'>"; if($isfriend[$user['user_id']]==1){ $f.="<span class='followbtn'><img src='".__PUBLIC__."/images/common/fico2.gif'> ".L('already_follow')."&nbsp;|&nbsp;<a onclick=\"followop('delfollow/user_id/{$user[user_id]}','jc','{$user[nickname]}','{$user[user_id]}','".$isfriend[$user['user_id']]."',$(this))\">".L('cancel')."</a></span>"; }else if...

0%
暂无可用Exp或PoC
当前有0条受影响产品信息