MySQL 5.1ÍêÈ«Ð¶ÔØ
ÓÉÓÚ°²×°MySQLµÄʱºò£¬ÊèºöûÓÐÑ¡Ôñµ×²ã±àÂ뷽ʽ£¬²ÉÓÃĬÈϵÄASCIIµÄ±àÂë¸ñʽ£¬ÓÚÊǽӶþÁ¬ÈýµÄÖÐÎÄת»»ÎÊÌâËæÖ®¶øÀ´£¬¾ÍÏëÐ¶ÔØÁËÖØÐ°²×°MYSQL£¬ÕâÒ»Ð¶ÔØµ¹ÊdzöÁËÎÊÌ⣬µ¼Ö°²×°µÄʱºò°²×°²»ÉÏ£¬ÔÚÍøÉÏÕÒÁËÒ»¸ö¶àСʱҲû½â¾ö¡£
ÖØ×°ÏµÍ³ÓÀÔ¶ÊǸöºÃ°ì·¨£¬µ«ÓÐËϲ»¶Õâô×öѽ:(
ºóÀ´ÎÞÒâ·¢ÏÖÊÇÐ¶ÔØµÄʱºòûÓÐÐ¶ÔØÍêÈ«µ¼Ö£¬ÏÂÃæ¸ø³öÍêÕûµÄÐ¶ÔØMySQL 5.1µÄÐ¶ÔØ·½·¨£º
1¡¢¿ØÖÆÃæ°åÀïµÄÔö¼Óɾ³ý³ÌÐòÄÚ½øÐÐɾ³ý
2¡¢É¾³ýMySQLÎļþ¼ÐϵÄmy.iniÎļþ£¬Èç¹û±¸·ÝºÃ£¬¿ÉÒÔÖ±½Ó½«Îļþ¼ÐÈ«²¿É¾³ý
3¡¢¿´¿´×¢²á±íÀïÕ⼸¸öµØ·½É¾³ýûÓÐ
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Eventlog\Application\MySQL Ŀ¼ɾ³ý
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Services\Eventlog\Application\MySQL Ŀ¼ɾ³ý
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Eventlog\Application\MySQL Ŀ¼ɾ³ý
4¡¢ÕâÒ»ÌõÊǺܹؼüµÄ
C:\Documents and Settings\All Users\Application Data\MySQL
ÕâÀﻹÓÐMySQLµÄÎļþ£¬±ØÐëҪɾ³ý
×¢Ò⣺Application DataÕâ¸öÎļþ¼ÐÊÇÒþ²ØµÄ£¬ÐèÒª´ò¿ª¸öÎļþ¼ÐÑ¡Ôñ²Ëµ¥À¸ ¹¤¾ß→Îļþ¼ÐÑ¡Ïî→²é¿´→Òþ²ØÎļþºÍÎļþ¼Ð Ò»ÏîÑ¡ÉÏ ÏÔʾËùÓÐÎļþºÍÎļþ¼Ð È·¶¨
OK£¡ÒÔÉÏ4²½Íê³É£¬Ôٴΰ²×°°É£¬ºÙºÙ£º£©
Ïà¹ØÎĵµ£º
by ZaraByte
How to do a SQL Injection for MYSQL Server 5.0+
1. Find a vulnerable add a ‘ at the end of the site example: news.php?id=1 add a ‘ at the end of the 1 and see if you get a syntax error
2. order by #–
Keep upping the # until you get an error.
3. union all select 1 ......
Æô¶¯mysql: /etc/rc.d/init.d/mysql start
ÐÞ¸ÄÃÜÂë: ¸ñʽ£ºmysqladmin -uÓû§Ãû -p¾ÉÃÜÂë password ÐÂÃÜÂë
ʹÓÃÃÜÂëµÇ¼: mysql -u root -p
ÏÔʾÊý¾Ý¿â: show databases;
Ñ¡ÔñÊý¾Ý¿â: use Êý¾Ý¿âÃû;
ÏÔʾ±í: show tables;
ÏÔʾ±í½á¹¹: descibe ±íÃû;
Ô¶³ÌµÇ¼mysqlÐèÒª¿ªÆôÈ ......
1.´ÓWindowsÃüÁîÐÐÆô¶¯MySQL
ÒªÏë´ÓÃüÁîÐÐÆô¶¯mysqld·þÎñÆ÷£¬ÄúÓ¦µ±Æô¶¯¿ØÖÆÌ¨´°¿Ú(»ò“DOS window”)²¢ÊäÈëÃüÁ
¡¡¡¡C£º\> C:\Program Files\MySQL\MySQL Server 5.0\bin\mysqld
¡¡¡¡¸ù¾ÝϵͳÖÐMySQL°²×°Î»ÖõIJ»Í¬£¬Ç°ÃæµÄÀý×ÓÖÐʹÓõÄ·¾¶Ò²²»Í¬¡£
¡¡¡¡ÔÚ·ÇNT°æ±¾µÄWindowsÖУ¬ÔÚºǫ́Æô¶¯mysqld¡£Ò² ......
¡¾51CTO.com¶À¼ÒÌØ¸å¡¿Ãæ¶Ô¾ª»ÅµÄ¿Í»§ºÍ¹ã·ºÖÊÒɵÄýÌ壬Oracle¹Ù·½×î½üÖÕÓÚ³ö°ñ°²Ãñ£¬ÄDZãÊÇÒ»¸öÒÔ“SUN CUSTOMERS ,Oracle Plans To£º”Ϊ´ó±êÌâµÄ¹ã¸æ¡£Ö±Òë¹ýÀ´±ã¹ýÀ´¿ÉÖªµÀ£¬Oracle½«Òª¼Ó´óSPARCºÍSolarisµÄͶÈëÁË£¬¶ø´óÀϰ尣ÀïÉÒ²ÏòIBMÓ²¼þÏÂÁËÕ½Ê飬Éù³ÆOracle½«×îÖÕÓ®µÃÕⳡ¾ºÕù……
&n ......