- 2 Ara 2022
- 435
- 133
Selamın Aleyküm
Bu güvenlik açıklarından biri ile siteye çökülürmü ?
1.
TLSv1.0.
2.
Request
POST /server/rekontrol.php HTTP/1.1Content-Type: application/x-www-form-urlencodedReferer: https://#####.##/panelCookie: PHPSESSID=3fd2ha6nfbmck65gupmrs4ji8qContent-Length: 43Accept: text/html,application/xhtml+xml,application/xml;q=0.9,*/*;q=0.8Accept-Encoding: gzip,deflate,brUser-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.0.0 Safari/537.36Host: #####.##Connection: Keep-alivek_adi[]=1&k_key=u]H[ww6KrA9F.x-F&loginForm=
Response
HTTP/1.1 200 OKDate: Fri, 21 Jul 2023 18:13:12 GMTContent-Type: text/html; charset=UTF-8Connection: keep-aliveX-Powered-By: PHP/8.2.4CF-Cache-Status: DYNAMICReport-To: {"endpoints":[{"url":"https:\/\/a.nel.cloudflare.com\/report\/v3?s=9YhSeQOEH3RObVfHG5vukUZRa%2B%2BzhQVKkTKbGXXL34T0U5WFva7b%2B%2FjBWEwxg6cNqbrpFyXEGjX5VwqZpu%2FYavftDNaYNyHywFaLWB2xCQJ6MqfoMzeaPA%2FnPUywUw%3D%3D"}],"group":"cf-nel","max_age":604800}NEL: {"success_fraction":0,"report_to":"cf-nel","max_age":604800}Server: cloudflareCF-RAY: 7ea56aa0b96dda2e-ISTalt-svc: h3=":443"; ma=86400Original-Content-Encoding: brContent-Length: 361<br /><b>Fatal error</b>: Uncaught TypeError: mysqli::real_escape_string(): Argument #1 ($string) must be of type string, array given in C:\xampp\htdocs\server\rekontrol.php:5Stack trace:#0 C:\xampp\htdocs\server\rekontrol.php(5): mysqli->real_escape_string(Array)#1 {main} thrown in <b>C:\xampp\htdocs\server\rekontrol.php</b> on line <b>5</b><br />
Bu güvenlik açıklarından biri ile siteye çökülürmü ?
1.
TLSv1.0.
2.
Request
POST /server/rekontrol.php HTTP/1.1Content-Type: application/x-www-form-urlencodedReferer: https://#####.##/panelCookie: PHPSESSID=3fd2ha6nfbmck65gupmrs4ji8qContent-Length: 43Accept: text/html,application/xhtml+xml,application/xml;q=0.9,*/*;q=0.8Accept-Encoding: gzip,deflate,brUser-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.0.0 Safari/537.36Host: #####.##Connection: Keep-alivek_adi[]=1&k_key=u]H[ww6KrA9F.x-F&loginForm=
Response
HTTP/1.1 200 OKDate: Fri, 21 Jul 2023 18:13:12 GMTContent-Type: text/html; charset=UTF-8Connection: keep-aliveX-Powered-By: PHP/8.2.4CF-Cache-Status: DYNAMICReport-To: {"endpoints":[{"url":"https:\/\/a.nel.cloudflare.com\/report\/v3?s=9YhSeQOEH3RObVfHG5vukUZRa%2B%2BzhQVKkTKbGXXL34T0U5WFva7b%2B%2FjBWEwxg6cNqbrpFyXEGjX5VwqZpu%2FYavftDNaYNyHywFaLWB2xCQJ6MqfoMzeaPA%2FnPUywUw%3D%3D"}],"group":"cf-nel","max_age":604800}NEL: {"success_fraction":0,"report_to":"cf-nel","max_age":604800}Server: cloudflareCF-RAY: 7ea56aa0b96dda2e-ISTalt-svc: h3=":443"; ma=86400Original-Content-Encoding: brContent-Length: 361<br /><b>Fatal error</b>: Uncaught TypeError: mysqli::real_escape_string(): Argument #1 ($string) must be of type string, array given in C:\xampp\htdocs\server\rekontrol.php:5Stack trace:#0 C:\xampp\htdocs\server\rekontrol.php(5): mysqli->real_escape_string(Array)#1 {main} thrown in <b>C:\xampp\htdocs\server\rekontrol.php</b> on line <b>5</b><br />