You signed in with another tab or window. Reload to refresh your session.You signed out in another tab or window. Reload to refresh your session.You switched accounts on another tab or window. Reload to refresh your session.Dismiss alert
admin/add_product.php from line 18,It only restricts the type of the file, and does not restrict the file suffix, and the file type can be bypassed only by modifying the http Content-Type field.
Vulnerability file address
admin/add_product.php
from line 18,It only restricts the type of the file, and does not restrict the file suffix, and the file type can be bypassed only by modifying the http Content-Type field.POC
Attack results pictures
The uploaded php file is prefixed with a 10-digit timestamp, so it needs to be blasted
The text was updated successfully, but these errors were encountered: