当前位置:网站首页>Pan micro e-cology8 foreground SQL injection POC
Pan micro e-cology8 foreground SQL injection POC
2022-07-26 08:44:00 【afei00123】
Catalog
1. Preface
Pan Wei ecology8 Is a OA Office products . But its version ecology8 There is a front desk SQL Inject . You can get the system administrator password hash. The vulnerability is in 2021 year 04 month 08 Japan ,HW On the first day .
Fanwei official website :https://www.weaver.com.cn/
Try to submit to CNVD On , Rejected . I wanted to pick up a hole . It's really impossible , Suddenly feel the charm of code audit .

It says that this vulnerability is an open vulnerability , It doesn't mean 4 month 8 The no. 0day. I don't know which hole is below .
边栏推荐
- Mysql/mariadb (Galera multi master mode) cluster construction
- How to safely delete a useless activity in Android studio
- Human computer interaction software based on C language
- When developing flutter, idea_ ID cannot solve the problem
- OA项目之我的会议(会议排座&送审)
- Poor English, Oracle OCP or MySQL OCP exam can also get a high score of 80 points
- My meeting of OA project (meeting seating & submission for approval)
- Excel find duplicate lines
- Foundry教程:使用多种方式编写可升级的智能合约(上)
- Kotlin operator
猜你喜欢

Excel find duplicate lines

Mysql8 one master one slave +mycat2 read write separation

基于C语言的内存管理-动态分区分配方式模拟

Poor English, Oracle OCP or MySQL OCP exam can also get a high score of 80 points

【C语言】程序员筑基功法——《函数栈帧的创建与销毁》

IC's first global hacking bonus is up to US $6million, helping developers venture into web 3!

内存管理-动态分区分配方式模拟

23.6 23.7 web environment web environment variable reading

What are the contents of Oracle OCP and MySQL OCP certification exams?

解决C#跨线程调用窗体控件的问题
随机推荐
TypeScript版加密工具PasswordEncoder
keepalived双机热备
利用模m的原根存在性判断以及求解
Oracle 19C OCP 1z0-083 question bank (1-6)
The effective condition of MySQL joint index and the invalid condition of index
Kotlin program control
Mysql8 dual master and dual slave +mycat2 read / write separation
1、 Redis data structure
Huffman transformation software based on C language
Analysis on the query method and efficiency of Oracle about date type
General file upload vulnerability getshell of a digital campus system (penetration test -0day)
Fluent uses protobuf
内存管理-动态分区分配方式模拟
基于C语言设计的换乘指南打印系统
有限元学习知识点备案
Maximum common substring & regularity problem
Alphabetic string
Oracle 19C OCP 1z0-082 certification examination question bank (24-29)
Leetcode and query question summary
为什么要在时钟输出上预留电容的工位?