WordPress Plugin PICA Photo Gallery 1.0 - SQL Injection 漏洞概述 漏洞类型: SQL Injection EDB-ID: 41589 作者: Ihsan Sencan 平台: PHP 日期: 2017-03-09 EDB Verified: 是 影响范围 软件: WordPress Plugin PICA Photo Gallery 版本: 1.0 测试环境: Win7 x64, Kali Linux x64 修复方案 Vendor Homepage: https://www.apptha.com/ Software: https://www.apptha.com/category/extension/wordpress/PICA-Photo-Gallery Demo: http://www.apptha.com/demo/pica-photo-gallery POC代码