当前位置:首页 » 软件开发
开发技术指南» 文章正文
    引言: http://www.howdark.com----
 

 

    摘要: 受影响系统: microsoft internet explorer 6.0sp1描述: microsoft internet explorer是一款流行的web浏览器。microsoft internet explorer在接收cookie时没有正确检查部分字符串,远程攻击者可以利用这个漏洞覆盖目标系统上的部分cookie。由于对部分字符串缺少正确检查,在接收到特殊构建的......
    摘要: phpbb highlight parameter processing remote execution exploit#!/usr/bin/perl use io::socket; ## @@@@@@@ @@@ @@@ @@@@@@ @@@ @@@ ## @@! @@@ @@! @@@ !@@ @@! @@@ ## @!@!!@! @!@ !@! !@@!! @!@......


phpbugtraq
http://www.howdark.com

【程序编程相关:ASP后门的放置方法

【推荐阅读:基于NetBIOS的简单Win进攻

---------------------------------------------------------------------------------------------------------------------------------- 【扩展信息:构造特殊字符进行渗透入侵

// information

----------------------------------------------------------------------------------------------------------------------------------

author: how dark

date: november 13, 2004

url: http://www.howdark.com

affected software: php bug traq

software version: 0.9.1

software url: http://phpbt.sourceforge.net/

attack: sql injection, allowing people to minipulate the query into pulling data

they should not previously be able too obtain. (such as passwords)

xss, cross site scripting leaving cookie data to vunerable.

description: bug_id variable is left open. xss on display of id.

----------------------------------------------------------------------------------------------------------------------------------

xxx

----------------------------------------------------------------------------------------------------------------------------------

// description


...   下一页
    摘要: list: bugtraqsubject: cuteftp 6.0 professional remote buffer overflow vulnerabilityfrom: hongzhen zhou <felix__zhou () hotmail ! com>date: 2004-11-30 2:22:45message-id: <20041130022245.......
» 本期热门文章:

©2000-2007 All Rights Reserved. 最佳浏览:1024X768 MSIE