stArl23

Results 2 issues of stArl23

A security vulnerability in bbs-go. Details in the [document](https://www.star123.top/2021/12/17/vulnerability-in-bbs-go/), the password has been sent to [email protected].

sql injection vulnerability exists in tools SendTpl module, url is /s/tools/SendTpl/index?keyword=xxx, please check SystemExtendAdmin.php 39-50 more details in https://www.star123.top/2021/01/16/duxcms3-1-3%E5%AE%A1%E8%AE%A1/#more