214, 6/11 ȸ¿ø°¡ÀÔ  ·Î±×ÀΠ 
   ka0r1
   ddd.JPG (52.2 KB), Download : 2     [¿À¸¥ÂÊ ¹öÆ° ´­·¯ ´Ù¿î ¹Þ±â]
   MySQL Áú¹®

http://www.hackerschool.org/HS_Boards/zboard.php?id=QNA_Web&no=145 [º¹»ç]



select * from books where author='Thomas Down' or '1=1'; ÀÌ °ªÀ» ÀÔ·ÂÇϸé
1=1°ªÀÌ ÂüÀÌ¿©¼­ ³í¸®¿¬»êÀÚ¿¡ ÀÇÇØ ÂüÀ» ¸®ÅÏÇϴµ¥...
ÂüÀ» ¸®ÅÏÇϴµ¥ ¿Ö books µ¥ÀÌÅͺ£À̽ºÀÇ ¸ðµç Á¤º¸°¡ ³ª¿À´Â °É±î¿ä?

  Hit : 3477     Date : 2013/04/15 11:27



    
cd80 sql±¸¹®¿¡¼­ where¹®Àº Äõ¸®ÀÇ °á°úÁß where¹®¿¡ ÂüÀ̵Ǵ °á°úµé¸¸ ¸®ÅÏÀÌ µÇ°Ô ÇÕ´Ï´Ù
select * from books ¸¦ ÇϰԵǸé books Å×À̺íÀÇ ¸ðµç µ¥ÀÌÅ͸¦ Ãâ·ÂÇϴµ¥
¿©±â¼­ where author='Thomas Down' À̶ó´Â Á¶°ÇÀ» °É°ÔµÇ¸é
¸ðµç µ¥ÀÌÅÍÁß author ÇʵåÀÇ µ¥ÀÌÅÍ°¡ Thomas DownÀÎ Ä÷³¸¸À» ¹ÝȯÇÕ´Ï´Ù
±Ùµ¥ À̶§ author = 'Thomas Down' or '1=1'; À» ÇϰԵǸé where¹®Àº Ç×»ó ÂüÀÌ µÇ¹Ç·Î
where¹®¿¡ ÀÇÇØ ÇÊÅ͸µ µÇ´Â °á°ú°¡ ¾ø¾îÁö°Ô µË´Ï´Ù
µû¶ó¼­ Å×ÀÌºí³»ÀÇ ¸ðµç µ¥ÀÌÅÍ°¡ ¹ÝȯµÇ´Â°ÍÀÔ´Ï´Ù
2013/04/16  
ka0r1 cd80 // ¿Í... ¿ª½Ã ¤»¤»¤»¤» ¶¯Å¥! 2013/04/16  
114   ¹ÙÀÌ·¯½ºÄÚµå·Î º¸À̴µ¥ ÄÚµåÇؼ® ºÎŹµå¸³´Ï´Ù[2]     koogee99
05/15 3888
113   À¥ÇØÅ·,º¸¾È/ÇØÅ· À» ¹è¿ì·Á¸é...[1]     kn0ck
01/14 4366
112   SQL Injection °ø°Ý±â¹ý Áú¹®µå¸³´Ï´Ù.[3]     kmc8724
07/03 4728
111   À¥ÇØÅ·À» °øºÎÇÏ°í ½ÍÀºµ¥¿ä ¹¹ºÎÅÍ °øºÎÇؾߵɱî¿ä??[2]     kkkod1150
01/27 3191
110   À¥ÇØÅ· ÀÔ¹® Ã¥ÃßõÇØÁÖ¼¼¿ä     kjwp1
02/24 2500
109   À¥Å÷º¸´Ù°¡ ½ºÅÿÀ¹öÇ÷οì‰ç´Âµ¥     kimthon
01/19 3607
108   ÇØÅ· Áú¹®ÀÌ¿ä[4]     kimssi1
03/12 3991
107   ÀÎÁõ¾ø´Â °ü¸®ÀÚ ÆäÀÌÁö¿¡ ´ëÇÑ Áú¹®[1]     killkill14
03/28 3455
106   ¹ÙµÏÀÌ ¿Ãºä¾î Á¦ÀÛÀÚ ¸ð½Ê´Ï´Ù     killerkor
05/25 3055
105   Áú¹®µå¸®°Ú½À´Ï´Ù     khl0803
02/07 3655
104   htmlÄڵ带 Çí½º·Î º¯È¯ÇØ ½ÇÇàÇÒ¼ö ÀÖ³ª¿ä?[2]     kangms0801
01/16 4278
103   webhacking.kr °¡ÀÔ¹®Á¦ Áú¹®µå¸³´Ï´Ù[3]     kangms0801
03/29 5459
102   sessionid´Â ¾î¶²Á¾·ùÀÇ ¾ÏÈ£·Î ÀÎÄÚµù µÇ´Â°Ç°¡¿ä?[2]     kangms0801
04/03 4811
101   sql injectionÀä[3]     kangms0801
09/03 3739
100   php¿¡¼­ Á¡(.)[3]     ka0r1
07/11 3697
99   ·Î±×ÀÎ ÆäÀÌÁö ±¸ÇöÁß header ÇÔ¼öÀÇ ÀǹÌ[2]     ka0r1
04/10 4716
98   ·Î±×¾Æ¿ô ±¸Çö[1]     ka0r1
04/10 3625
97   header¿Í body°¡ ±¸ºÐµÇ¾î ÀÖ´Â ÀÌÀ¯?[4]     ka0r1
04/12 4653
96   SQL Injection[5]     ka0r1
04/14 3615
  MySQL Áú¹®[2]     ka0r1
04/15 3476
[1][2][3][4][5] 6 [7][8][9][10]..[11]

Copyright 1999-2024 Zeroboard / skin by Hackerschool.org / Secure Patch by Hackerschool.org