开启 ASP.NET 调试功能
漏洞简述
漏洞例子
DEBUG /UserControl/AppScan.aspx?KeyID=be672d77-615d-470b-86bd-aa7e7ed28a1e HTTP/1.1
User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64; Trident/7.0; rv:11.0) like Gecko
Referer: http://www.xxxx.org/WEB_CN/DocumentationInfo.aspx?DocumentType=2&KeyID=190b0715-6b64-47de-814f-b34acdd80747
Cookie: __AntiXsrfToken=ea9046701d224a2784f243e571d5ed8e
Host: www.xxxx.org
Command: stop-debug
Accept: text/html,application/xhtml+xml,application/xml;q=0.9,*/*;q=0.8
Accept-Language: en-US

漏洞修复
Last updated