214, 6/11 ȸ¿ø°¡ÀÔ  ·Î±×ÀΠ 
   ka0r1
   ddd.JPG (52.2 KB), Download : 3     [¿À¸¥ÂÊ ¹öÆ° ´­·¯ ´Ù¿î ¹Þ±â]
   MySQL Áú¹®

http://www.hackerschool.org/HS_Boards/zboard.php?id=QNA_Web&no=145 [º¹»ç]



select * from books where author='Thomas Down' or '1=1'; ÀÌ °ªÀ» ÀÔ·ÂÇϸé
1=1°ªÀÌ ÂüÀÌ¿©¼­ ³í¸®¿¬»êÀÚ¿¡ ÀÇÇØ ÂüÀ» ¸®ÅÏÇϴµ¥...
ÂüÀ» ¸®ÅÏÇϴµ¥ ¿Ö books µ¥ÀÌÅͺ£À̽ºÀÇ ¸ðµç Á¤º¸°¡ ³ª¿À´Â °É±î¿ä?

  Hit : 3496     Date : 2013/04/15 11:27



    
cd80 sql±¸¹®¿¡¼­ where¹®Àº Äõ¸®ÀÇ °á°úÁß where¹®¿¡ ÂüÀ̵Ǵ °á°úµé¸¸ ¸®ÅÏÀÌ µÇ°Ô ÇÕ´Ï´Ù
select * from books ¸¦ ÇϰԵǸé books Å×À̺íÀÇ ¸ðµç µ¥ÀÌÅ͸¦ Ãâ·ÂÇϴµ¥
¿©±â¼­ where author='Thomas Down' À̶ó´Â Á¶°ÇÀ» °É°ÔµÇ¸é
¸ðµç µ¥ÀÌÅÍÁß author ÇʵåÀÇ µ¥ÀÌÅÍ°¡ Thomas DownÀÎ Ä÷³¸¸À» ¹ÝȯÇÕ´Ï´Ù
±Ùµ¥ À̶§ author = 'Thomas Down' or '1=1'; À» ÇϰԵǸé where¹®Àº Ç×»ó ÂüÀÌ µÇ¹Ç·Î
where¹®¿¡ ÀÇÇØ ÇÊÅ͸µ µÇ´Â °á°ú°¡ ¾ø¾îÁö°Ô µË´Ï´Ù
µû¶ó¼­ Å×ÀÌºí³»ÀÇ ¸ðµç µ¥ÀÌÅÍ°¡ ¹ÝȯµÇ´Â°ÍÀÔ´Ï´Ù
2013/04/16  
ka0r1 cd80 // ¿Í... ¿ª½Ã ¤»¤»¤»¤» ¶¯Å¥! 2013/04/16  
114   LFI¿ÍRFI½ÄÀ¸·Î ÆÄÀϾ÷·Îµå Áú¹®[1]     ygh357
10/18 4159
113   LibrettoCMS 2.2.2 - Arbitrary File Upload ¾Æ½Ã´ÂºÐ °è½Å°¡¿ä?     Á¦·Î½Ã
06/16 3378
112   load of sql injectinÀ» Ç®±¸ÀÖ½À´Ï´Ù..[3]     deadbeef
02/15 3795
  MySQL Áú¹®[2]     ka0r1
04/15 3495
110   Odysseus ¶ó´Â ÇÁ·Î±×·¥¿¡ ´ëÇØ ¿©ÂÞ¾î º¾´Ï´Ù.     ygh159
08/18 3632
109   Paros Åø °ü·Ã Áú¹®[2]     stalaction
10/21 4959
108   paros¸¦ ±¸µ¿ÇÑ »óÅ¿¡¼­ ¾î¶² À¥»çÀÌÆ®¸¦ µé¾î°¥ ¶§     asdwho
03/24 3709
107   passward cracking Áú¹®ÀÖ½À´Ï´Ù[2]     °æ³²123
01/27 3398
106   php ¿ìȸ Áú¹® µå¸³´Ï´Ù.[4]     bigshott
11/10 7838
105   phpÃ¥ Ãßõ ºÎŹµå¸³´Ï´Ù.[1]     h@cking2013
06/05 3925
104   PHP¿¡¼­ À̸ÞÀÏ Àü¼ÛÇÒ¶§ °¡·Îç ¼ö ÀÖ³ª¿ä?[9]     drrobot333
11/16 2584
103   php¿¡¼­ Á¡(.)[3]     ka0r1
07/11 3718
102   POST METHOD     ewqqw
03/13 2412
101   Post Method[2]     ewqqw
03/16 2547
100   Session º¯¼ö Á¶ÀÛ°ú IP ´ëÁ¶º¸¾È ÀÎÁõ Åë°ú°¡ °¡´ÉÇÑ°¡¿ä ?[1]     $Zero
03/24 3386
99   sessionid´Â ¾î¶²Á¾·ùÀÇ ¾ÏÈ£·Î ÀÎÄÚµù µÇ´Â°Ç°¡¿ä?[2]     kangms0801
04/03 4839
98   shell ¿¡ ´ëÇØ ¼³¸íÁ» ÇØÁÖ¼¼¿ä![1]     v_0_0v_
06/04 3337
97   SQL Injection[5]     ka0r1
04/14 3635
96   sql injection Áú¹®ÀÖ½À´Ï´Ù ¿ìȸ°ü·Ã[1]     Qwed_na
09/04 3482
95   sql injection Áú¹®µå¸³´Ï´Ù.[3]     ºí·çÀ®
04/07 3407
[1][2][3][4][5] 6 [7][8][9][10]..[11]

Copyright 1999-2024 Zeroboard / skin by Hackerschool.org / Secure Patch by Hackerschool.org