22015, 1/1101 ȸ¿ø°¡ÀÔ  ·Î±×ÀΠ 
   jdhsst03
   ¤¾¤Ë¤·´Ôµé µµ¿ÍÁà¿ä

http://www.hackerschool.org/HS_Boards/zboard.php?AllArticle=true&no=22598 [º¹»ç]



http://www.javahacking.com/webgame/level5/login.jsp



À̰Š¾î¶»°Ô Ǫ´ÂÁö ÈùÆ®Á» ÁÖ¼¼¿ä ¤Ð¤Ð


  Hit : 10409     Date : 2011/12/27 02:39



    
shell sqlÀÎÁ§¼Ç °ø°ÝÀ¸·Î Ǫ´Â°Ô ¾Æ´Ò±î¿ä? ¤¾ 2011/12/27  
BrokenPipe Äõ¸®¹®Àº
select * from table where id=$_POST['id'] and password=$_POST['password'];
Çü½ÄÀÔ´Ï´Ù
2011/12/27  
BrokenPipe ¾Æ ½Ç¼ö·Î phpÇü½ÄÀ¸·Î ½è´Âµ¥
±×³É
select * from table where id='³Ñ°ÜÁØ ¾ÆÀ̵ð°ª' and password='³Ñ°ÜÁØ ºñ¹ø°ª';
Äõ¸®´Â ÀÌ·¸´Ù°í º¸½Ã¸éµË´Ï´Ù
2011/12/27  
BrokenPipe È®Àιæ¹ý
¾ÆÀ̵𿡠a'b ¸¦ ³Ö°í ºñ¹ø¿¡ c'd¸¦ ³Ö¾îºÃ½À´Ï´Ù
2011/12/27  
shell ¾Æ ¸¸µå´Â °Å¿´³×¿ä... ¤Ì¤Ì
¶Õ´Â °ÇÁÙ¾Ë¾Ò³×¿ä ¤Ì¤Ì...
2011/12/27  
BrokenPipe shell//
ÀÎÁ§¼ÇÀ¸·Î ¶Õ´Â°Å ¸Â¾Æ¿ä
ÀÎÁ§¼Ç ¼º°øÇϸé Ű ³ª¿À³×¿ä
2011/12/27  
pwn3r Çê jsp¿Í mysql¿¬µ¿À̶ó´Ï ! 2011/12/27  
phpmyadmin À¸À× ¤Ð 2011/12/27  
shell BrokenPipe//Á¦°¡ À߸ø ¾Ë°í ÀÖ¾ú´Â°Ô ¾Æ´Ï¾ú³×¿ä ¤¾¤¾ 2011/12/27  
Deok9 H4t3_5q1_1nj3cti0n_A774ck!@!@!# 2011/12/28