์ƒˆ์†Œ์‹

Game/los

Lord of sql injection [6]

  • -
๋ฐ˜์‘ํ˜•

 

 

(17๋ฒˆ๊นŒ์ง€ ํ’€์–ด๋†จ๋Š”๋ฐ..... ์บก์ณํ•ด์„œ ํ•œ๋ฒˆ์— ๊ธ€์„ ์˜ฌ๋ฆฌ๋ ค๋‹ค๊ฐ€ ์บก์ณ ์ด๋ฏธ์ง€๊ฐ€ ๋‹ค ๋‚ ๋ผ๊ฐ”๋„ค์š”..์–ด์ฉ” ์ˆ˜ ์—†์ด ๋‹ค์‹œ ํ•œ๋ฒˆ

ํ’€๋ฉด์„œ ํ’€์ด ํ• ๊ฒŒ์š”)

 

6๋ฒˆ๋ฌธ์ œ๋ฅผ ๋“ค์–ด๊ฐ€๋ฉด ์œ„์™€ ๊ฐ™์€ ํ™”๋ฉด์ด ๋œจ๋Š”๋ฐ, id๊ฐ€ admin์ด๋ฉด ํ†ต๊ณผ์ธ ๋ฌธ์ œ์ด๋‹ค.

๋ดค๋”๋‹ˆ preg_match๋กœ or, and๋ฅผ ๋ง‰์•„๋†จ๋‹ค.

 

 

id๊ฐ€ ์ด๋ฏธ guest๋กœ ๊ณ ์ •๋˜์–ด์žˆ์œผ๋ฏ€๋กœ, pw๋ฅผ ๋‹ซ์•„์ฃผ๊ณ  'or id='admin'#์„ ํ•ด์ฃผ๋ฉด ๋ ๊ฒƒ ๊ฐ™๋‹ค

' || id = 'admin' %23 ==> clear

 

('||' ๋Š” or๋ฅผ ๋Œ€์‹  ํ•  ์ˆ˜ ์žˆ์Œ, '&&' = and)

๋ฐ˜์‘ํ˜•

'Game > los' ์นดํ…Œ๊ณ ๋ฆฌ์˜ ๋‹ค๋ฅธ ๊ธ€

Lord of sql injection [8]  (0) 2020.09.11
Lord of sql injection [7]  (0) 2020.09.11
Load of sql injection [ORC]  (0) 2020.09.04
Lord of sql injection [5]  (0) 2020.08.30
Contents

ํฌ์ŠคํŒ… ์ฃผ์†Œ๋ฅผ ๋ณต์‚ฌํ–ˆ์Šต๋‹ˆ๋‹ค

์ด ๊ธ€์ด ๋„์›€์ด ๋˜์—ˆ๋‹ค๋ฉด ๊ณต๊ฐ ๋ถ€ํƒ๋“œ๋ฆฝ๋‹ˆ๋‹ค.