当前位置:网站首页>Pan micro e-cology8 foreground SQL injection POC
Pan micro e-cology8 foreground SQL injection POC
2022-07-26 08:44:00 【afei00123】
Catalog
1. Preface
Pan Wei ecology8 Is a OA Office products . But its version ecology8 There is a front desk SQL Inject . You can get the system administrator password hash. The vulnerability is in 2021 year 04 month 08 Japan ,HW On the first day .
Fanwei official website :https://www.weaver.com.cn/
Try to submit to CNVD On , Rejected . I wanted to pick up a hole . It's really impossible , Suddenly feel the charm of code audit .

It says that this vulnerability is an open vulnerability , It doesn't mean 4 month 8 The no. 0day. I don't know which hole is below .
边栏推荐
- 请问现在flinkcdc支持sqlserver实例名方式连接吗?
- MySQL 8.0 OCP 1z0-908 certification examination question bank 1
- sklearn 机器学习基础(线性回归、欠拟合、过拟合、岭回归、模型加载保存)
- Problems caused by slivereappbar
- 03异常处理,状态保持,请求钩子---04大型项目结构与蓝图
- Cadence(十)走线技巧与注意事项
- Dear teachers, how can sqlserver get DDL in flinkcdc?
- JS tool function Encyclopedia
- 【FreeSwitch开发实践】自定义模块创建与使用
- 六、品达通用权限系统__pd-tools-log
猜你喜欢

Excel delete blank lines

pl/sql之集合

Spark persistence strategy_ Cache optimization

How to safely delete a useless activity in Android studio

Pxe原理和概念

23.6 23.7 web environment web environment variable reading

Lesson 3: gcc compiler

2000年的教训。web3是否=第三次工业革命?

Arbitrum Nova release! Create a low-cost and high-speed dedicated chain in the game social field

Leetcode and query question summary
随机推荐
Oracle 19C OCP 1z0-082 certification examination question bank (36-41)
QT note 2
Uninstallation of dual systems
SSH,NFS,FTP
Flutter WebView three fingers rush or freeze the screen
Super potential public chain dfinity -- the best time for DFI developers to enter
Run file command
QT uses QSS to make a beautiful login interface (hand-in-hand teaching)
sklearn 机器学习基础(线性回归、欠拟合、过拟合、岭回归、模型加载保存)
基于C语言的哈夫曼转化软件
Kotlin program control
Cve-2021-3156 duplicate of sudo heap overflow privilege raising vulnerability
Spark SQL common date functions
Error handling response: Error: Syntax error, unrecognized expression: .c-container /deep/ .c-contai
基于C语言实现的人机交互软件
【C语言】程序员筑基功法——《函数栈帧的创建与销毁》
Spark scheduling analysis
Mysql/mariadb (Galera multi master mode) cluster construction
[freeswitch development practice] use SIP client Yate to connect freeswitch for VoIP calls
QT note 1