
Itsourcecode Construction Management System 1.0의 SQL 인젝션 취약점에 대한 개념 증명(PoC)으로, 익스플로잇 단계와 데이터베이스 추출을 위한 SQLMap 통합을 포함합니다.
Itsourcecode Construction Management System 1.0의 print.php에서 발생하는 SQL 삽입 취약점으로, 원격 공격자가 map_id 매개변수를 통해 임의의 SQL 명령을 실행할 수 있습니다.
SQL Injection
Itsourcecode
Itsourcecode Construction Management System v1.0은 print.php 페이지의 map_id 매개변수를 통해 SQL 삽입에 취약합니다.