Skip to content
KitploitKITPLOIT
FerramentasBlog
Enviar
FerramentasBlog
Enviar

Ferramentas de Hacking, PenTest e Cibersegurança para o seu Arsenal de Segurança!

Kitploit é um diretório de ferramentas de hacking, cibersegurança e pentesting. Descubra as últimas atualizações de projetos para encontrar vulnerabilidades, analisar sistemas, automatizar testes e fortalecer sua segurança.

··Feeds·Contato·Privacidade·© 2026 Kitploit

Diretório de Ferramentas

Categorias

Ver todas as categorias
Loading categories
CVE-2024-48307POC — jeecg-boot getDictItemsByTable接口存在SQL注入漏洞 | Kitploit
Ferramentas/GitHubGitHub/jisi-001/cve-2024-48307poc
ReconnaissanceVulnerability AnalysisExploitationWeb Application ExploitationPenetration Testing
GitHubjisi-001/cve-2024-48307poc

CVE-2024-48307POC

jeecg-boot getDictItemsByTable接口存在SQL注入漏洞

Ver Repositório
1há 11 mesesAinda não revisado

Mais Populares

Ver todos →

Descubra as ferramentas mais usadas pela nossa comunidade.

Explore todas as ferramentas

Navegue pela nossa coleção de ferramentas

Ver todas as ferramentas →
Compartilhar

Vulnerabilidade de SQL injection na interface getDictItemsByTable do jeecg-boot

Parâmetros:

root@kitploit:~
options:
  -h, --help            show this help message and exit
  -u URL, --url URL     请输入待检测的URL
  -f FILE, --file FILE  请输入一行一个URL的文件地址
  -c CONTENT, --content CONTENT
                        输入任意值查看漏洞详情

Exemplos:

root@kitploit:~
单个检测:
python .\CVE-2024-48307Poc.py -u URL
批量检测:
python .\CVE-2024-48307Poc.py -f urls.txt
查看泄露:
 python .\CVE-2024-48307Poc.py -u URL -c 1(任意值)

FOFA:

root@kitploit:~
title=="JeecgBoot 企业级低代码平台" || body="window._CONFIG['imgDomainURL'] = 'http://localhost:8080/jeecg-boot/" || title="Jeecg-Boot 企业级快速开发平台" || title="Jeecg 快速开发平台" || body="'http://fileview.jeecg.com/onlinePreview'" || title=="JeecgBoot 企业级低代码平台" || title=="Jeecg-Boot 企业级快速开发平台" || title=="JeecgBoot 企业级快速开发平台" || title=="JeecgBoot 企业级快速开发平台" || title="Jeecg 快速开发平台" || title="Jeecg-Boot 快速开发平台" || body="积木报表" || body="jmreport"
Baixar ferramenta