Neurohazard
暮雲煙月,皓首窮經;森羅萬象,如是我聞。

Chaining Multiple Vulnerabilities + WAF bypass to Account Takeover in almost all Alibaba’s websites

wpadmin~April 16, 2019 /InfoSec

Chaining Multiple Vulnerabilities + WAF bypass to Account Takeover in almost all Alibaba’s websites

正文

https://medium.com/@y.shahinzadeh/chaining-multiple-vulnerabilities-waf-bypass-to-account-takeover-in-almost-all-alibabas-websites-f8643eaa2855

有一个 过 WAF 的 payload
<details/open/ontoggle=confirm(1)>

Leave a Reply

Your email address will not be published. Required fields are marked *