10.07.2015 Views

ASP Security by Soroush Dalili - Intelligent Exploit

ASP Security by Soroush Dalili - Intelligent Exploit

ASP Security by Soroush Dalili - Intelligent Exploit

SHOW MORE
SHOW LESS

Create successful ePaper yourself

Turn your PDF publications into a flip-book with our unique Google optimized e-Paper software.

2C%B6s%9D%EAa%2FqX%7E%08%05%CAZ%26%1ET%10%CE' from ac_userwhere Username='1'or'1'='1'or'1'='1" size="200"/>:(SQL Injection)<strong>Exploit</strong> آسيب پذيري 4:main_login_code.asp -خط 341:logoutVar = CStr(Request("referrer"))تنها در يك شرط استفاده دارد.‏حال مي بينيم كه نوبت به پوشهرسيده است.‏Admin پس بايد دقت كنيم كه علاوه بر جستجويحملات ابتدا ببينيم توسط مهاجم قابل دسترسي باشند.‏ ‏(يعني بهكردننياز نداشتهباشند.)‏Loginadmin/admin_login_check.asp83اين كار راانجام مي دهد كه در

Hooray! Your file is uploaded and ready to be published.

Saved successfully!

Ooh no, something went wrong!