PHPCMS V9 BLind SQL Injection Vulnerability
2014-01-03 14:04
555 查看
见:http://seclists.org/bugtraq/2011/Jan/139
例如北大的一个网站:
http://www.cala.pku.edu.cn/index.php?m=content&c=rss&catid=5&siteid=1
又如:
http://www.kuqiwan.com/index.php?m=content&c=rss&catid=5&siteid=1
you can try others:
http://www.exploit-db.com/ghdb/3676/
哪位大牛告诉我盲注以后可以做什么呢?另外,怎么这么长时间这些网站都不知道升级呢?或者是PHPCMS还没有补丁?
例如北大的一个网站:
http://www.cala.pku.edu.cn/index.php?m=content&c=rss&catid=5&siteid=1
又如:
http://www.kuqiwan.com/index.php?m=content&c=rss&catid=5&siteid=1
you can try others:
http://www.exploit-db.com/ghdb/3676/
哪位大牛告诉我盲注以后可以做什么呢?另外,怎么这么长时间这些网站都不知道升级呢?或者是PHPCMS还没有补丁?
相关文章推荐
- PHPCMS V9 BLind SQL Injection Vulnerability
- Blind SQL Injection on DVWA(Medium Level)
- phpBB Links MOD Remote Blind SQL Injection Exploit
- Time-Based Blind SQL Injection with Heavy Queries
- Methods of quick exploitation of blind SQL Injection Vulnerabilities in Oracle
- phpcms V9 BLind SQL Injection Vulnerability
- FoosunCMS Sql Injection Vulnerability
- phpcms V9 BLind SQL Injection Vulnerability
- Blind SQL injection sample
- Blind Numeric SQL Injection练习的一些关键点记录(WebGoat5.4)
- 【常见Web应用安全问题】---13、Blind SQL/XPath injection
- phpwind多个远程代码执行漏洞(phpwind multiple sql injection vulnerability)
- 【常见Web应用安全问题】---13、Blind SQL/XPath injection
- 【常见Web应用安全问题】---13、Blind SQL/XPath injection
- False SQL Injection and Advanced Blind SQL Injection
- List of Google Dorks to find SQL Injection Vulnerability
- Blind SQL Injection detection with Burp Suite
- [轉]False SQL Injection and Advanced Blind SQL Injection
- [漏洞分析] WordPress Traffic Analyzer Plugin 3.4.2 - Blind SQL Injection