漏洞来源

https://cxsecurity.com/issue/WLB-2019070128

Exploit

Google Dork

intext:"Powered by Alsovalue" inurl:/.php?id=

PROF

1
2
3
4
5
6
7
8
9
http://www.aofreight.com.cn/news.php?id=7          
http://www.ziborainwell.com/en/news.php?id=5
http://www.netchem.cn/en/news.php?id=2
http://ruihong520.w92.mc-test.com/news.php?id=3
http://eneshanghai.com/aboutus.php?id=7
http://www.map-textile.com/about/Quality-del.php?p=2&id=3
http://www.tomi-em.com/en/aboutus.php?id=112
http://www.sh-care-corner.com/en/services.php?id=30
http://www.xiao-bao.com/en/server.php?id=3