### 简要描述:
之九
### 详细说明:
某通用型建站系统SQL注射之九。
源码:XYCMS律师事务所网站系统v1.3
地址:http://code.it168.com/d-25428.shtml
注入点:showflfg.asp?id=
可谷歌搜索:inurl:showflfg.asp?id=
[<img src="https://images.seebug.org/upload/201503/26104303328a40c53413c4e78b1aae5ccaac0ec3.png" alt="QQ图片20150326103618.png" width="600" onerror="javascript:errimg(this);">](https://images.seebug.org/upload/201503/26104303328a40c53413c4e78b1aae5ccaac0ec3.png)
实例:
http://www.yn148.net/showflfg.asp?id=22
http://www.dbawx.com/showflfg.asp?id=21
http://www.keyels.com/showflfg.asp?id=29
http://www.huahailawyer.com/showflfg.asp?id=16
http://www.czxyqc.com/en1/Showflfg.asp?id=91
### 漏洞证明:
实例+证明:
http://www.yn148.net/showflfg.asp?id=22
http://www.dbawx.com/showflfg.asp?id=21
http://www.keyels.com/showflfg.asp?id=29
http://www.huahailawyer.com/showflfg.asp?id=16
http://www.czxyqc.com/en1/Showflfg.asp?id=91
[<img src="https://images.seebug.org/upload/201503/26104351188722d88c6965578a07cf7b4a4103e1.png" alt="QQ图片20150326104031.png" width="600" onerror="javascript:errimg(this);">](https://images.seebug.org/upload/201503/26104351188722d88c6965578a07cf7b4a4103e1.png)
暂无评论