From bdfa0cef455b2120c5f4d06c7618992e4b716787 Mon Sep 17 00:00:00 2001 From: Mrxn Date: Thu, 13 Jan 2022 22:43:22 +0800 Subject: [PATCH] =?UTF-8?q?add=20MeterSphere=20PluginController=20Pre-auth?= =?UTF-8?q?=20RCE(MeterSphere=20=E5=8C=BF=E5=90=8D=E6=8E=A5=E5=8F=A3?= =?UTF-8?q?=E8=BF=9C=E7=A8=8B=E5=91=BD=E4=BB=A4=E6=89=A7=E8=A1=8C=E6=BC=8F?= =?UTF-8?q?=E6=B4=9E=E5=88=86=E6=9E=90)?= MIME-Version: 1.0 Content-Type: text/plain; charset=UTF-8 Content-Transfer-Encoding: 8bit --- README.md | 1 + 1 file changed, 1 insertion(+) diff --git a/README.md b/README.md index 2720143..854a405 100644 --- a/README.md +++ b/README.md @@ -1290,6 +1290,7 @@ - [Dump内存得到TeamViewer账号密码](./books/Dump内存得到TeamViewer账号密码.pdf) - [打破基于OpenResty的WEB安全防护(CVE-2018-9230)](./books/打破基于OpenResty的WEB安全防护(CVE-2018-9230).pdf) - [Advanced-SQL-Injection-Cheatsheet:一个有关 SQL 注入的检查 payload 清单](https://github.com/kleiton0x00/Advanced-SQL-Injection-Cheatsheet) +- [MeterSphere PluginController Pre-auth RCE(MeterSphere 匿名接口远程命令执行漏洞分析)](./books/MeterSphere%20PluginController%20Pre-auth%20RCE(MeterSphere%20匿名接口远程命令执行漏洞分析).pdf) ## 说明