References https://github.com/20142995/pocsuite3 https://qkl.seebug.org/vuldb/ssvid-91876 https://wy.zone.ci/bug_detail.php?wybug_id=wooyun-2016-0170282 https://wooyun.laolisafe.com/bug_detail.php?wybug_id=wooyun-2015-0150181 https://wy.zone.ci/corp_detail.php?corp=%E4%B8%8A%E6%B5%B7%E6%97%B6%E4%BB%A3%E5%85%89%E5%8D%8E%E6%95%99%E8%82%B2%E5%8F%91%E5%B1%95%E6%9C%89%E9%99%90%E5%85%AC%E5%8F%B8 https://qkl.seebug.org/vuldb/ssvid-91305
Related VulnerabilitiesPoCCVE-2021-3239: E-Learning System 1.0 - SQL InjectionPoCunauth-mulesoft-dataweave: MuleSoft DataWeave Interactive Learning Environment - Unauthenticated AccessE-Learning存在SQL注入漏洞(CVE-2021-3239)PoCCVE-2022-38553: Academy Learning Management System <5.9.1 - Cross-Site ScriptingPoCCVE-2022-45917: ILIAS eLearning <7.16 - Open RedirectPoCCVE-2021-3239: E-Learning System v1.0 SQL注入基于时间盲注漏洞PoCe-learning-system-authentication-bypass-rce: E-Learning System 1.0 - Authentication BypassSourceCodester E-Learning System 代码注入漏洞深圳新为SmartLearning前台任意文件上传漏洞(CVE-2024-3653) Undertow learning-push 配置不当漏洞GUnet OpenEclass E-learning platform CVE-2024-31777 命令注入漏洞Academy Learning Management System 跨站脚本漏洞时代光华 e-learning 任意文件上传漏洞