Skip to content

SQLI vul1 in jfinal_cms 5.1.0 #35

Open
@zhangdafeihhh

Description

There is a SQLI vul in background mode.The route is as following
3
vulnerable argument passing is as following
4
final injection result with sqlmap
2

Metadata

Assignees

No one assigned

    Labels

    No labels
    No labels

    Type

    No type

    Projects

    No projects

    Milestone

    No milestone

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions