-
-
[转帖]APBoard v2.1.0 ( board.php?id=) SQL Injection Vulnerability
-
发表于: 2010-8-7 16:07 2893
-
021K9s2c8@1M7q4)9K6b7g2)9J5c8W2)9J5c8Y4y4%4K9i4y4K6k6X3q4C8K9h3&6Y4i4K6u0W2L8X3g2@1i4K6u0r3i4K6t1$3L8X3u0K6M7q4)9K6b7R3`.`. ##
## Date : 05 August, 2010 ##
#############################################################################################################
____ ____ _____ ___ ____ ______ ____ ___ ___ _ __
/ __// __// ___// _ \ / __//_ __/ / _// _ \ / _ | / |/ /
_\ \ / _/ / /__ / , _// _/ / / _/ / / , _// __ | / /
/___//___/ \___//_/|_|/___/ /_/____/___//_/|_|/_/ |_|/_/|_/
/___/
####################################################
# APBoard 2.1.0 / board.php?id= SQL Injection
####################################################
# Discovered by : secret
# Site : b7fK9s2c8@1M7q4)9K6b7g2)9J5c8W2)9J5c8Y4y4%4K9i4y4K6k6X3q4C8K9h3&6Y4i4K6u0W2L8X3g2@1i4K6u0r3i4K6t1$3L8X3u0K6M7q4)9K6b7R3`.`.
# Dork : APBoard 2.1.0 © 2003-2010 APP - Another PHP Program
# Vendor : 0a9K9s2c8@1M7q4)9K6b7g2)9J5c8W2)9J5c8Y4N6%4N6#2)9J5k6i4m8Z5M7q4)9J5k6s2m8J5L8$3N6J5j5h3#2K6i4K6u0W2k6r3g2Q4x3V1k6Q4x3U0k6F1j5Y4y4H3i4K6y4n7
# Version : 2.1.0 and earlier
# Exploit : 4fbK9s2c8@1M7q4)9K6b7g2)9J5c8W2)9J5c8Y4N6%4N6#2)9J5k6i4W2G2N6i4u0K6K9i4c8W2i4K6u0W2k6r3g2Q4x3V1k6T1L8$3q4J5k6q4)9J5c8X3u0G2j5i4u0V1i4K6u0W2M7r3S2H3i4K6y4r3K9h3c8Q4x3@1c8j5i4K6g2n7f1#2q4x3 INJECTION]
# Tested on : Microsoft OS
e.g. 0beK9s2c8@1M7q4)9K6b7g2)9J5c8W2)9J5c8Y4y4W2M7Y4k6W2M7W2)9J5c8X3u0G2j5i4u0V1i4K6u0r3j5X3!0S2M7X3c8Q4x3X3g2H3K9s2m8Q4x3@1k6A6k6q4)9K6c8o6k6Q4y4f1u0Y4k6i4b7`. union columns&USERS'] (-sqlinjection)
########################################################################################
## Date : 05 August, 2010 ##
#############################################################################################################
____ ____ _____ ___ ____ ______ ____ ___ ___ _ __
/ __// __// ___// _ \ / __//_ __/ / _// _ \ / _ | / |/ /
_\ \ / _/ / /__ / , _// _/ / / _/ / / , _// __ | / /
/___//___/ \___//_/|_|/___/ /_/____/___//_/|_|/_/ |_|/_/|_/
/___/
####################################################
# APBoard 2.1.0 / board.php?id= SQL Injection
####################################################
# Discovered by : secret
# Site : b7fK9s2c8@1M7q4)9K6b7g2)9J5c8W2)9J5c8Y4y4%4K9i4y4K6k6X3q4C8K9h3&6Y4i4K6u0W2L8X3g2@1i4K6u0r3i4K6t1$3L8X3u0K6M7q4)9K6b7R3`.`.
# Dork : APBoard 2.1.0 © 2003-2010 APP - Another PHP Program
# Vendor : 0a9K9s2c8@1M7q4)9K6b7g2)9J5c8W2)9J5c8Y4N6%4N6#2)9J5k6i4m8Z5M7q4)9J5k6s2m8J5L8$3N6J5j5h3#2K6i4K6u0W2k6r3g2Q4x3V1k6Q4x3U0k6F1j5Y4y4H3i4K6y4n7
# Version : 2.1.0 and earlier
# Exploit : 4fbK9s2c8@1M7q4)9K6b7g2)9J5c8W2)9J5c8Y4N6%4N6#2)9J5k6i4W2G2N6i4u0K6K9i4c8W2i4K6u0W2k6r3g2Q4x3V1k6T1L8$3q4J5k6q4)9J5c8X3u0G2j5i4u0V1i4K6u0W2M7r3S2H3i4K6y4r3K9h3c8Q4x3@1c8j5i4K6g2n7f1#2q4x3 INJECTION]
# Tested on : Microsoft OS
e.g. 0beK9s2c8@1M7q4)9K6b7g2)9J5c8W2)9J5c8Y4y4W2M7Y4k6W2M7W2)9J5c8X3u0G2j5i4u0V1i4K6u0r3j5X3!0S2M7X3c8Q4x3X3g2H3K9s2m8Q4x3@1k6A6k6q4)9K6c8o6k6Q4y4f1u0Y4k6i4b7`. union columns&USERS'] (-sqlinjection)
########################################################################################
[培训]内核驱动高级班,冲击BAT一流互联网大厂工作,每周日13:00-18:00直播授课
赞赏
他的文章
赞赏
雪币:
留言: