当前位置:WooYun >> 漏洞信息

漏洞概要 关注数(24) 关注此漏洞

缺陷编号:wooyun-2015-0108994

漏洞标题:某市住房公积金SQL注入

相关厂商:桂林市住房公积金管理中心

漏洞作者: 路人甲

提交时间:2015-04-24 11:14

修复时间:2015-06-11 15:08

公开时间:2015-06-11 15:08

漏洞类型:SQL注射漏洞

危害等级:高

自评Rank:15

漏洞状态:已交由第三方合作机构(cncert国家互联网应急中心)处理

漏洞来源: http://www.wooyun.org,如有疑问或需要帮助请联系 [email protected]

Tags标签:

4人收藏 收藏
分享漏洞:


漏洞详情

披露状态:

2015-04-24: 细节已通知厂商并且等待厂商处理中
2015-04-27: 厂商已经确认,细节仅向厂商公开
2015-05-07: 细节向核心白帽子及相关领域专家公开
2015-05-17: 细节向普通白帽子公开
2015-05-27: 细节向实习白帽子公开
2015-06-11: 细节向公众公开

简要描述:

桂林市住房公积金管理中心SQL注入

详细说明:

POST /Default.aspx HTTP/1.1
Host: www.glzfgjj.cn:8136
User-Agent: Mozilla/5.0 (Windows NT 6.1; rv:37.0) Gecko/20100101 Firefox/37.0
Accept: text/html,application/xhtml+xml,application/xml;q=0.9,*/*;q=0.8
Accept-Language: zh-CN,zh;q=0.8,en-US;q=0.5,en;q=0.3
Accept-Encoding: gzip, deflate
Referer: http://www.glzfgjj.cn:8136/
Cookie: _gscu_309643357=29333254418l3l62; _gscs_309643357=29408112qccbdz14|pv:1; _gscbrs_309643357=1
Connection: keep-alive
Content-Type: application/x-www-form-urlencoded
Content-Length: 5552
__EVENTTARGET=&__EVENTARGUMENT=&__LASTFOCUS=&__VIEWSTATE=%2FwEPDwUKMTc4OTYwNTk4Mg9kFgJmD2QWAgIDD2QWBAILD2QWDgIBDzwrAAkBAA8WBB4IRGF0YUtleXMWAB4LXyFJdGVtQ291bnQCB2QWDgIBD2QWAmYPFQIDNjY1Q%2Bahguael%2BW4guS9j%2BaIv%2BWFrOenr%2BmHkeeuoeeQhuS4reW%2FgzIwMTXlubTnkIborrrlrabkuaDlrp7mlr3mlrnmoYhkAgIPZBYCZg8VAgM2NjNg5qGC5p6X5biC5L2P5oi%2F5YWs56ev6YeR566h55CG5Lit5b%2BD5YWz5LqO6LSn5biB5riF6YCA5L2P5oi%2F5pSv5Y%2BW5YWs56ev6YeR5omA6ZyA5p2Q5paZ55qE6YCa55%2BlZAIDD2QWAmYPFQIDNjU5deahguael%2BW4guS9j%2BaIv%2BWFrOenr%2BmHkeeuoeeQhuWnlOWRmOS8muWvueOAiuWFs%2BS6juiwg%2BaVtOaIkeW4guS9j%2BaIv%2BWFrOenr%2BmHkeS4quS6uui0t%2BasvuaUv%2BetlueahOW7uuiuruOAi%2BeahOaJueWkjWQCBA9kFgJmDxUCAzY1OCvmoYLmnpfluILkvY%2FmiL%2Flhaznp6%2Fph5EyMDE05bm05bm05bqm5oql5ZGKZAIFD2QWAmYPFQIDNjU3V%2Bahguael%2BW4guS9j%2BaIv%2BWFrOenr%2BmHkeeuoeeQhuS4reW%2Fg%2BW7ieaUv%2BmjjumZqeiAg%2BaguOS4jui0o%2BS7u%2Bi%2FveeptuWItuW6puaaguihjOinhOWummQCBg9kFgJmDxUCAzY1NkLmoYLmnpfluILkvY%2FmiL%2Flhaznp6%2Fph5HnrqHnkIbkuK3lv4PlhoXpg6jnqL3moLjlt6XkvZzmmoLooYzop4TlrppkAgcPZBYCZg8VAgM2NTUr5YWz5LqO6KGo5b2wMjAxNOW5tOW6puWFiOi%2Fm%2BS4quS6uueahOmAmuefpWQCEw88KwAJAQAPFgQfABYAHwECCGQWEAIBD2QWAmYPFQIDNjEwUemZjeS9juS9j%2BaIv%2BWFrOenr%2BmHkee8tOWtmOavlOS%2Bi%2BaIluiAhee8k%2Be8tOS9j%2BaIv%2BWFrOenr%2BmHkeeahOaJueWHhuaTjeS9nOinhOiMg2QCAg9kFgJmDxUCAzYxMifkvY%2FmiL%2Flhaznp6%2Fph5HnvLTlrZjnmbvorrDmk43kvZzop4TojINkAgMPZBYCZg8VAgM2MTE25Y2V5L2N5Yqe55CG5L2P5oi%2F5YWs56ev6YeR57y05a2Y55m76K6w5Lia5Yqh5rWB56iL5Zu%2BZAIED2QWAmYPFQIDNjA5S%2BmZjeS9juS9j%2BaIv%2BWFrOenr%2BmHkee8tOWtmOavlOS%2Bi%2BaIlue8k%2Be8tOS9j%2BaIv%2BWFrOenr%2BmHkeeahOWuoeaJuea1geeoi%2BWbvmQCBQ9kFgJmDxUCAzU4MEnkvZXkuLrigJzmnIDpq5jnvLTlrZjln7rmlbDkuLrogYzlt6XkuIrlubTluqbmnIjlubPlnYflt6XotYTnmoQz5YCN4oCd77yfZAIGD2QWAmYPFQIDNTcxKuS9j%2BaIv%2BWFrOenr%2BmHkee8tOWtmOeZu%2BiusOWuoeaJueWRiuefpeWNlWQCBw9kFgJmDxUCAzU2OUvpmY3kvY7kvY%2FmiL%2Flhaznp6%2Fph5HnvLTlrZjmr5TkvovmiJbogIXnvJPnvLTkvY%2FmiL%2Flhaznp6%2Fph5HlrqHmibnlkYrnn6XljZVkAggPZBYCZg8VAgM1MTlMMjAxNOW5tOi1t%2B%2B8jOe7qeaViOiAg%2BivhOWlluOAgeW5tOe7iOWPjOiWquetieWIl%2BS9j%2BaIv%2BWFrOenr%2BmHkee8tOWtmOWfuuaVsGQCFQ88KwAJAQAPFgQfABYAHwECBWQWCgIBD2QWAmYPFQIDNjY0YOahguael%2BW4guS9j%2BaIv%2BWFrOenr%2BmHkeeuoeeQhuS4reW%2Fg%2BWFs%2BS6jui0p%2BW4gea4hemAgOS9j%2BaIv%2BaUr%2BWPluWFrOenr%2BmHkeaJgOmcgOadkOaWmeeahOmAmuefpWQCAg9kFgJmDxUCAzYzOSfoo4Xkv67miL%2FlrZDmmK%2FlkKbog73mj5Dlj5blhaznp6%2Fph5HvvJ9kAgMPZBYCZg8VAgM2MTQn5L2P5oi%2F5YWs56ev6YeR5o%2BQ5Y%2BW5a6h5om55pON5L2c6KeE6IyDZAIED2QWAmYPFQIDNjEzJOWFrOenr%2BmHkeaUr%2BWPluWKnueQhueoi%2BW6j%2Ba1geeoi%2BWbvmQCBQ9kFgJmDxUCAzU2NyTkvY%2FmiL%2Flhaznp6%2Fph5Hmj5Dlj5bkuJrliqHlkYrnn6XljZVkAhcPPCsACQEADxYEHwAWAB8BAgVkFgoCAQ9kFgJmDxUCAzY2MHXmoYLmnpfluILkvY%2FmiL%2Flhaznp6%2Fph5HnrqHnkIblp5TlkZjkvJrlr7njgIrlhbPkuo7osIPmlbTmiJHluILkvY%2FmiL%2Flhaznp6%2Fph5HkuKrkurrotLfmrL7mlL%2FnrZbnmoTlu7rorq7jgIvnmoTmibnlpI1kAgIPZBYCZg8VAgM2MDgn5L2P5oi%2F5YWs56ev6YeR6LS35qy%2B5a6h5om55pON5L2c6KeE6IyDZAIDD2QWAmYPFQIDNjA3JOS9j%2BaIv%2BWFrOenr%2BmHkei0t%2BasvuWKnueQhua1geeoi%2BWbvmQCBA9kFgJmDxUCAzU5OWzlhaznp6%2Fph5HotLfmrL7lsIbov47mnaXmlrDpq5jls7DigJTlhaznp6%2Fph5HotLfmrL7liKnnjofkuIvosIPvvIzotK3kubDmlrDlu7rllYblk4HkvY%2FmiL%2Flrp7ooYzotKLmlL%2FooaXotLRkAgUPZBYCZg8VAgM1NjUq5YWs56ev6YeR5Liq5Lq65L2P5oi%2F6LS35qy%2B5Lia5Yqh5ZGK55%2Bl5Y2VZAIZDzwrAAkBAA8WBB8AFgAfAQIFZBYKAgEPZBYCZg8VAgM2Mzgn6KOF5L%2Bu5oi%2F5a2Q5piv5ZCm6IO95o%2BQ5Y%2BW5YWs56ev6YeR77yfZAICD2QWAmYPFQIDNTc5SeS9leS4uuKAnOacgOmrmOe8tOWtmOWfuuaVsOS4uuiBjOW3peS4iuW5tOW6puaciOW5s%2BWdh%2BW3pei1hOeahDPlgI3igJ3vvJ9kAgMPZBYCZg8VAgM1NDUt5L2P5oi%2F6L%2BY6LS35o%2BQ5Y%2BW77ya5b2i5byP5Yqh5b%2BF56ym5ZCI5a6e6LSoZAIED2QWAmYPFQIDNTA1JOWFrOenr%2BmHkei0t%2Basvui%2FmOa4heWQjuazqOaEj%2BS6i%2BmhuWQCBQ9kFgJmDxUCAzQ4OCTigJzot7Pmp73igJ3lpoLkvZXluKblpb3lhaznp6%2Fph5HvvJ9kAhsPPCsACQEADxYEHwAWAB8BAgVkFgoCAQ9kFgJmDxUCAzUwMyrmoYLmnpfluILkvY%2FmiL%2Flhaznp6%2Fph5HnrqHnkIbmmoLooYzlip7ms5VkAgIPZBYCZg8VAgMzOTE%2F5qGC5p6X5biC5L2P5oi%2F5YWs56ev6YeR566h55CG5Lit5b%2BD5ZKo6K%2Bi55S16K%2Bd44CB5Yqe5YWs5Zyw54K5ZAIDD2QWAmYPFQIDMzkwSOahguael%2BW4guS9j%2BaIv%2BWFrOenr%2BmHkeeuoeeQhuS4reW%2Fg%2BaUv%2BW6nOS%2FoeaBr%2BWFrOW8gOW5s%2BWPsOeuoeeQhuWItuW6pmQCBA9kFgJmDxUCAzM4OTbkvY%2FmiL%2Flhaznp6%2Fph5HmlL%2FnrZblkqjor6LjgIHnm5HnnaPmipXor4nkuJrliqHmjIfljZdkAgUPZBYCZg8VAgMzODgn5L2P5oi%2F5YWs56ev6YeR5L%2Bh5oGv5p%2Bl6K%2Bi5Lia5Yqh5oyH5Y2XZAIdDzwrAAkBAA8WBB8AFgAfAQIFZBYKAgEPZBYCZg8VAgM2NjI75oiR5biC5L2P5oi%2F5YWs56ev6YeR5Liq5Lq66LS35qy%2B5pS%2F562WNOaciDHml6XotbfmnInosIPmlbRkAgIPZBYCZg8VAgM2NjF15qGC5p6X5biC5L2P5oi%2F5YWs56ev6YeR566h55CG5aeU5ZGY5Lya5a%2B544CK5YWz5LqO6LCD5pW05oiR5biC5L2P5oi%2F5YWs56ev6YeR5Liq5Lq66LS35qy%2B5pS%2F562W55qE5bu66K6u44CL55qE5om55aSNZAIDD2QWAmYPFQIDNjU0OeS4tOahgueuoeeQhumDqOS4iumXqOS4uuWuouaIt%2BmbhuS4reWKnueQhuWFrOenr%2BmHkei0t%2BasvmQCBA9kFgJmDxUCAzY1Mj%2Flhaznp6%2Fph5HkuK3lv4Ppooblr7znj63lrZDotbDorr%2FmhbDpl67nprvpgIDkvJHlpITnuqfogIHlubLpg6hkAgUPZBYCZg8VAgM2NTBD5YWs56ev6YeR5Lit5b%2BD5Yiw6Jme5bGx56S%2B5Yy65byA5bGV5L6%2F5rCR5Yip5rCR5b%2BX5oS%2F5pyN5Yqh5rS75YqoIGQCDQ8QZBAVAg4t5Y%2BL5oOF6ZO%2B5o6lLSHlhajlm73kvY%2FmiL%2Flhaznp6%2Fph5HnvZHnq5nkuIDop4gVAhRodHRwOi8vd3d3LmNuZ2pqLmNuLzFodHRwOi8vd3d3LmxzemZnamouZ292LmNuL25ld3Nfdmlldy5hc3A%2FbmV3c2lkPTQ4FCsDAmdnFgFmZGR5I%2FBymYme3GxmBc%2FOtvKF6KBFyg%3D%3D&ctl00%24ContentPlaceHolder1%24TextBox1=123456789&ctl00%24ContentPlaceHolder1%24TextBox2=123456&ctl00%24ContentPlaceHolder1%24btnSearch=%C8%B7+%B6%A8&ctl00%24ContentPlaceHolder1%24TextBox3=&ctl00%24ContentPlaceHolder1%24TextBox4=&ctl00%24drpLink=http%3A%2F%2Fwww.cngjj.cn%2F&__EVENTVALIDATION=%2FwEWCgKD4sXmBwLc3uCnBALc3tSnBAL3uvOGAgLc3tinBALc3synBAKA4sljAoObl7MLAqTr76oKArO0ncYObXCvvXi9CZQ9JrGPhpX3D2S0%2FPQ%3D


问题参数 ctl00$ContentPlaceHolder1$TextBox1

glgjj.png


glgjj-1.png


glgjj-2.png


glgjj-3.png


漏洞证明:

如上。

修复方案:

过滤。

版权声明:转载请注明来源 路人甲@乌云


漏洞回应

厂商回应:

危害等级:高

漏洞Rank:11

确认时间:2015-04-27 15:06

厂商回复:

CNVD确认并复现所述情况,已经转由CNCERT下发给相应分中心,由其后续协调网站管理单位处置。

最新状态:

暂无