LebiShop系统sql注入

admin 发布于 2015-02-08 01:09
用google搜索 关键词 intext:Powered by LebiShop 或者google搜索关键词 Powered by LebiShop inurl:Category.aspx 部分案例 code 区域 http://168dev.com/lebishop/Category.aspx http://oa....

用友NC-IUFO系统通用SQL注入

admin 发布于 2015-01-21 02:21
http://nc.xhlbdc.com/epp/detail/publishinfodetail.jsp?pk_message=1002F410000000019JNX http://nc.pinggugroup.com:81/epp/detail/publishinfodetail.jsp?pk_message=1002A31000000000BS0...

PHPMyWind绕过过滤SQL注入(限定条件)

admin 发布于 2014-12-28 08:11
需要register_globals=on。 /include/common.inc.php 注册变量的代码: foreach(array('_GET','_POST') as $_request) { foreach($$_request as $_k => $_v) { if(st...

苹果cms 最新版sql注入

admin 发布于 2014-12-03 03:28
在文件/inc/module/user.php中: elseif($method=='save') { chklogin(); $oldpass = be("post","u_oldpass"); $password1 = be("post","u_password1"); $...

程氏舞曲CMS某泄露,导致sql注入

admin 发布于 2014-11-16 06:59
cookie加密后的字符泄漏。可以替换其他字段,导致SQL等,严重漏洞。 文件:C:\WWW\cscms_v3.5_utf8\app\controllers\open.php //第三方登入入口 public function login() { if(CS_Appmode==...