网站地图    收藏   

主页 > 后端 > 网站安全 >

Banana Dance CMS and Wiki SQL注射缺陷及修复 - 网站安全

来源:自学PHP网    时间:2015-04-17 14:47 作者: 阅读:

[导读] +-----------------------+| Banana Dance CMS+Wiki |+-----------------------+缺陷Web-App : Banana Dance CMS+Wiki缺陷类型 : SQLi作者 : Aodrulez. www.2cto.com Email : f3arm3d3ar@gmail.......

+-----------------------+
| Banana Dance CMS+Wiki |
+-----------------------+
  
缺陷Web-App : Banana Dance CMS+Wiki
缺陷类型     : SQLi
作者          : Aodrulez. www.2cto.com Email : f3arm3d3ar@gmail.com
测试平台         : Ubuntu 10.04
下载地址: http://www.doyoubananadance.com/functions/dl.php?file=4e84e50f89bf7
 
 
+---------+
|技术日志 |
+---------+
 
1] SQLi
示例: http://www.2cto.com /user.php?id=1'[sqli]
 
Error:
------
错误分析:
SELECT `key`,`value` FROM `bd_user_data` WHERE `user_id`='1''
Error: You have an error in your SQL syntax; check the manual
that corresponds to your MySQL server version for the right
syntax to use near ''1''' at line 1
 
 
 
+----------+
|  MalCon  |
+----------+
(International Malware Conference)
 
The CFP for MalCon-2011 is ON!
If you think you are good enough, try cracking our
'Capture the Mal Challenge-2011' online.
Open to everyone!
 
For more details, visit malcon.org
 
引用
 
"Microsoft is not the answer. Microsoft is the question. NO is the answer."   - Erik Naggum
 

自学PHP网专注网站建设学习,PHP程序学习,平面设计学习,以及操作系统学习

京ICP备14009008号-1@版权所有www.zixuephp.com

网站声明:本站所有视频,教程都由网友上传,站长收集和分享给大家学习使用,如由牵扯版权问题请联系站长邮箱904561283@qq.com

添加评论