DuxCMS3 icon indicating copy to clipboard operation
DuxCMS3 copied to clipboard

backend sql injection vulnerability

Open stArl23 opened this issue 4 years ago • 0 comments

sql injection vulnerability exists in tools SendTpl module, url is /s/tools/SendTpl/index?keyword=xxx, please check SystemExtendAdmin.php 39-50 more details in https://www.star123.top/2021/01/16/duxcms3-1-3%E5%AE%A1%E8%AE%A1/#more

stArl23 avatar Jan 17 '21 02:01 stArl23