互站网
43人浏览/4人投稿
2天前
待托管赏金
原有一个预约小程序,风险告知漏洞poc,cookie存在有效期POST /fxgm/register/registerinfo HTTP/2 Host: ********.cn Content-Length: 23 Accept: application/json Xweb_xhr: 1 User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/126.0.0.0 Safari/537.36 MicroMessenger/7.0.20.1781(0x6700143B) NetType/WIFI MiniProgramEnv/Windows WindowsWechat/WMPF WindowsWechat(0x63090c33)XWEB/13639 Token: ef5cfcb3d3d34dc3a731797c0a05ff11 Content-Type: application/json Sec-Fetch-Site: cross-site Sec-Fetch-Mode: cors Sec-Fetch-Dest: empty Referer: https://servicewechat.com/wxa1225e1356c906e2/8/page-frame.html Accept-Encoding: gzip, deflate Accept-Language: zh-CN,zh;q=0.9 {"registerunitid":"11"}