References https://cn-sec.com/archives/2530748.html https://github.com/jjjj1029056414/selfpoc https://cn-sec.com/archives/2518633.html https://cloud.tencent.com/developer/article/2479742 https://www.lmboke.com/archives/fei-qi-hu-lian-feqi-ye-yun-ying-guan-li-ping-tai-treexml.jsp-sqlzhu-ru https://github.com/eeeeeeeeee-code/POC/blob/main/wpoc/%E9%A3%9E%E4%BC%81%E4%BA%92%E8%81%94/%E9%A3%9E%E4%BC%81%E4%BA%92%E8%81%94-FE%E4%BC%81%E4%B8%9A%E8%BF%90%E8%90%A5%E7%AE%A1%E7%90%86%E5%B9%B3%E5%8F%B0_efficientCodewidget39%E6%8E%A5%E5%8F%A3SQL%E6%B3%A8%E5%85%A5%E6%BC%8F%E6%B4%9E.md https://cn-sec.com/archives/tag/%E9%A3%9E%E4%BC%81%E4%BA%92%E8%81%94%E6%BC%8F%E6%B4%9E
Related VulnerabilitiesPoCgeoserver-jsonarraycontains-sqli: GeoServer jsonArrayContains CQL Filter - SQL InjectionPoCweaver-ecology9-doc-list-sqli: Weaver E-cology9 api/doc/out/more/list SQL Injection飞企互联 FE企业运营管理平台 /loginService.fe 权限绕过漏洞PoCchanjet-crm-sqli: Chanjet CRM - SQL Injection飞企互联-FE企业运营管理平台 attachment/1 存在任意文件读取amtt-hiboss-language-sqli: 安美数字酒店宽带运营系统SQL注入漏洞chanjet-tplus-checkpassword-sqli: 用友 畅捷通T+ CheckPassword SQL注入漏洞duomicms-sqli: Duomicms sqliecology-ebridge-addtaste-sqli: 泛微云桥 taste/addTaste SQL注入ecology-ifnewscheckoutbycurrentuser-dwr-sqli: 泛微 E-Cology ifnewscheckoutbycurrentuser.dwr SQL 注入fangweicms-sqli: FangweiCMS sqlifinecms-sqli: FineCMS sqlifumengyun-licmanage-sqli: 孚盟云LicManage SQL注入