POST /mydns/recordsList.do HTTP/1.1 Host: mydns3.xinnet.com Proxy-Connection: keep-alive Content-Length: 842 Cache-Control: max-age=0 Accept: text/html,application/xhtml+xml,application/xml;q=0.9,image/webp,*/*;q=0.8 Origin: http://mydns3.xinnet.com User-Agent: Mozilla/5.0 (Macintosh; Intel Mac OS X 10_10_0) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/35.0.1916.153 Safari/537.36 Content-Type: application/x-www-form-urlencoded DNT: 1 Referer: http://mydns3.xinnet.com/index.jsp Accept-Encoding: gzip,deflate,sdch Accept-Language: zh-CN,zh;q=0.8,en;q=0.6 Proxy-Client-IP: 122.225.67.114*(注入点) Cookie: JSESSIONID= AlexaToolbar-ALX_NS_PH: AlexaToolbar/alxg-3.2 s8=--&s10=--&s15=--
|
-
上一篇: 联想某助销工具后台注入及get shell - 网站安全
下一篇: Dedecms最新版一处反射型XSS漏洞 - 网站安全 - 自学
还没有人抢沙发呢~