标题: 研究生数学建模竞赛开始报名了!! [打印本页] 作者: 韩冰 时间: 2004-10-6 09:52 标题: 研究生数学建模竞赛开始报名了!! SummaryMySQLguest by "Allwebscripts is a guestbook script that uses MySQL to store messages".3 d1 E6 C% {' g1 L5 F/ S4 X
; l% B- Q& D0 s6 s5 W
Allwebscripts' MySQLguest is vulnerable to a source code injection vulnerability in the AWSguest.php page. The vulnerability occurs as fields in the AWSguest.php page do not adequately sanitize HTML, script or PHP code.# G* K5 j1 g0 z% x
0 P/ K; ~. k8 p DetailsIn the AWSguest.php page, any of the following fields can be used to inject arbitrary HTML, JavaScript or PHP: "Name", "Email", "Homepage" and "Comments".
7 @5 y8 @! [0 F2 X: t+ @9 x7 y3 |& O/ h" e9 _% eExploit:* f$ \; r+ O5 g0 O6 W
E-mail: <?php echo <p>Hello World</p>; }/ S& d7 [3 |- G& @( c( A
Homepage: <script language=javascript>alert ("Messagebox")
+ z+ N* n. V* y; dComments: <IFRAME SRC=www.computerknights.org>. t# B* u5 Y( X( V$ B8 B8 c
& j0 }) b3 ^; j0 m% f
Additional informationThe information has been provided by BliZZard.