Update dedecms-membergroup-sqli.yaml

patch-1
Ritik Chaddha 2022-07-07 15:45:54 +05:30
parent 9953dd2201
commit 643911cbb6
1 changed files with 2 additions and 0 deletions

View File

@ -7,6 +7,8 @@ info:
description: A vulnerability in the DedeCMS product allows remote unauthenticated users to inject arbitrary SQL statements via the 'ajax_membergroup.php' endpoint and the 'membergroup' parameter. description: A vulnerability in the DedeCMS product allows remote unauthenticated users to inject arbitrary SQL statements via the 'ajax_membergroup.php' endpoint and the 'membergroup' parameter.
reference: reference:
- http://www.dedeyuan.com/xueyuan/wenti/1244.html - http://www.dedeyuan.com/xueyuan/wenti/1244.html
metadata:
shodan-query: http.html:"DedeCms"
tags: sqli,dedecms tags: sqli,dedecms
variables: variables: