在 mJobTime 15.7.3.32 及更早版本中,Login.aspx 管理面板的处理程序存在一个未认证的 SQL 执行漏洞。其中,runQueryButton 的回发操作和 exportSqlQuery_Server PageMethod 会使用 DBA/sysadmin 权限,对后端的 Sybase SQL Anywhere 数据库执行调用者提供的 SQL 语句。除了依赖客户端 sessionStorage 标志外,服务端未实施任何额外的身份验证机制。攻击者可通过这些暴露的端点提交任意 SQL 语句,从而
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POCNo comments yet