V5shop旗下V5Mall多用户商城存在SQL注入漏洞

- AV AC AU C I A
发布: 2025-04-13
修订: 2025-04-13

### 简要描述: @V5shop 这次应该不会出差去了吧! ### 详细说明: 测试的漏洞站点:http://tdemo002mp.v5portal.com/ [<img src="https://images.seebug.org/upload/201401/06101723ba0668bee905a9977f61208c89f31e66.jpg" alt="v1.jpg" width="600" onerror="javascript:errimg(this);">](https://images.seebug.org/upload/201401/06101723ba0668bee905a9977f61208c89f31e66.jpg) 漏洞页面:http://tdemo002mp.v5portal.com/member/groupbuy.ashx?id=1 简单的加个’ [<img src="https://images.seebug.org/upload/201401/0610192972e56cafbc76f4f9d8c29cf6b3359a41.jpg" alt="v2.jpg" width="600" onerror="javascript:errimg(this);">](https://images.seebug.org/upload/201401/0610192972e56cafbc76f4f9d8c29cf6b3359a41.jpg) 上sqlmap跑下 [<img src="https://images.seebug.org/upload/201401/06102133084a07172a35ed3cb1eaa9dc4e7b9267.jpg" alt="v3.jpg" width="600" onerror="javascript:errimg(this);">](https://images.seebug.org/upload/201401/06102133084a07172a35ed3cb1eaa9dc4e7b9267.jpg) ### 漏洞证明: ``` available databases [196]: [*] 021web.com.cn [*] baby1_v5shop_com_cn [*]...

0%
暂无可用Exp或PoC
当前有0条受影响产品信息