目标: 1000 元 · 已筹: 1336 元
Dolibarr before 7.0.2 is vulnerable to cross-site scripting and allows remote attackers to inject arbitrary web script or HTML via the foruserlogin parameter to adherents/cartes/carte.php.
登录后查看神龙缓存的 POC 文件快照