韩冰 发表于 2004-10-6 09:52

研究生数学建模竞赛开始报名了!!

Summary</B>MySQLguest by "Allwebscripts is a guestbook script that uses MySQL to store messages".

Allwebscripts' MySQLguest is vulnerable to a source code injection vulnerability in the AWSguest.php page. The vulnerability occurs as fields in the AWSguest.php page do not adequately sanitize HTML, script or PHP code.

Details</B>In the AWSguest.php page, any of the following fields can be used to inject arbitrary HTML, JavaScript or PHP: "Name", "Email", "Homepage" and "Comments".

<B>Exploit:</B>
E-mail: &lt;?php echo &lt;p&gt;Hello World&lt;/p&gt;
Homepage: &lt;script language=javascript&gt;alert ("Messagebox")
Comments: &lt;IFRAME SRC=www.computerknights.org&gt;

Additional information</B>The information has been provided by <B>BliZZard</B>.
页: [1]
查看完整版本: 研究生数学建模竞赛开始报名了!!