214, 10/11 ȸ  α  
   kmc8724
   SQL Injection ݱ 帳ϴ.

http://www.hackerschool.org/HS_Boards/zboard.php?id=QNA_Web&no=151 []


ǽ߿ ִµ
replace(,"'","")

̱ -> NULL ϴµ
Ưڸ NULL ־ϴ.

asp̱.


Ȳ ȸϰų մ ֽϱ?
˷ּ

  Hit : 4749     Date : 2013/07/03 03:15



    
rubiya ̱ ѱڸ ġȯҶ replace ȸҼ Է¹޴° ̱ͷ ʾҴٸ 鹮(%20) ؼ

select * from table where no=1 ٰ

select * from table where no=1 union select ...

̷ ϴ ֽϴ.

̱ ü ͸Ұ쿡 ܿ ҰѰɷ ˰ֽϴ.
2013/07/04  
kmc8724 rubiya / ߴ 亯 帳ϴ(_ _) ΰ ϴ.
* ̷͵ replace ¸ ƾ SQL injection ҰϰԵdz׿?
׷ ٸ ݱ ŷ õؾϴ°ǰ?
2013/07/04  
rubiya ٸ ãƺô° ƺ̳׿䤻 2013/07/05  
  SQL Injection ݱ 帳ϴ.[3]     kmc8724
07/03 4748
33   vbscript Ŭ̾Ʈ ŷ ִ Ʈ ϴ ñմϴ     lekel09
10/10 4768
32   sessionid  ȣ ڵ Ǵ°ǰ?[2]     kangms0801
04/03 4842
31   ȸ 帳ϴ.[1]     tpdbs953
10/17 4881
30   ŷ ? մϴ.[1]     wilmamom
01/23 4911
29   webhacking.kr[1]     ǹ̼
04/28 4950
28   Paros [2]     stalaction
10/21 4964
27   ε Դϴ.[2]     bigshott
12/25 5029
26   Top3[3]     Pang
02/07 5069
25   ŷ 帳ϴ.[2]     bigshott
12/16 5076
24   ŷ ؼ մϴ[5]     wqw3
12/16 5081
23   ̹ б OWASP͵ ߴµ 庼 Ƽ...[1]     heizelnet
07/17 5247
22   [] Ʈ ҽ ° ֳ?[2]     helpwizet
03/08 5250
21   ŷ Ҷ ʿ (α׷)[2]     ralehgus123
05/12 5458
20   webhacking.kr Թ 帳ϴ[3]     kangms0801
03/29 5482
19   Ǵ ߽ IP[1]     zaksalna
04/22 5502
18   Ŀŷ[2]     jhm2882
12/17 5603
17   googlebig.com/hackgame XSS 帳ϴ.[2]     Ilios
11/23 5806
16   webhacking.kr Թ ٲ 𸣰ڽϴ[1]     zlqhem
01/18 5851
15   ǽù Green guard α׷ ˷ ּ[1]     wqw3
04/19 6071
[1][2][3][4][5][6][7][8][9] 10 ..[11]

Copyright 1999-2024 Zeroboard / skin by Hackerschool.org / Secure Patch by Hackerschool.org