After Webshell, use the function of the horse to scan the open port or run the Netstat-ano statement to view the open port if you can use CMD. If you have 1433 ports open, you can use the 1433-port MSSQL database to power
1. Find the Connection database information
Usually in the Web site directory, such as Web. config file, note that the suffix of the file or in the config.asp or conn.asp carefully search can also use the function of the horse directly searching keywords
2. Execute cmd command with the Big horse MSSQL
Sqlconnectionstring= "server=.; database=aspstate;user=sa;pwd=agh*8%3kpx#; "Allowcustomsqldatabase
Usually find the connection information as above, fill in the Big horse's MSSQL right, execute the cmd command to add the user
3.SA Permissions
If the permission is SA. Can directly find readable writable directory upload crawl plaintext password tool crawl password to use the account and password to connect to the server.
Small y original. If there is a mistake, please comment and hope the comments have a better way to ask for advice!
Webshell 1433-Port right of withdrawal