ÎÒÏÖÔÚÓÃvs2008Éú³ÉÁËdllÎļþ£¬ µ«ÊÇÔÚµ÷ÓÃʱ£¬Èç¹û´«ÈëbyteÀàÐ͵Äֵʱ£¬ÈôÕâ¸öÖµ´óÓÚ0x80£¬ÔÚdll½ÓÊÕµ½µÄȷʵÕâ¸öÖµµÄ²¹Âë¡£ÎÒºÜÓôÃÆ£¬ÔÚÍøÉÏ¿´·¢ÏÖʱ˵±àÂëÎÊÌ⣬vs±àÒëÆ÷ÎÒ²»ÊìϤ£¬ÎÒÓõÄÊÇgcc±àÒëÆ÷£¬ÏÖÔÚÐèÒªÒ»¸ödll¶¯Ì¬¿â¡£Ö®Ç°Éú³É¹ý£¬Ò²Äܹ»Ó㬺ÃÏñÊÇÔÚvsÀïÐÞ¸ÄÒ»¸öºêÖµ£¡ÄÄλ´ó¸çÓùý£¬ÅθæÖª£¡Ð»Ð»£¡
ÄãµÄ½è¿ÚÊ ......
Õâ¸öÈí¼þÊÇ´ò¿ªµØÍ¼¼à¿ØµÄÈí¼þ£¬ÎÒ֮ǰһֱÓõĺúõģ¬ºöÈ»ÓÐÒ»Ìì²»ÄÜÓÃÁË£¬µã¿ª³µÁ¾¼à¿Ø£¬Óиöͼ±êÒ»Ö±ÔÚ¹ö¶¯£¬ÌáʾÕýÔÚ¶ÁÈ¡Êý¾Ý£¬µÈ¶à³¤Ê±¼ä¶¼Ë¢²»³öÀ´¡£Èç¹ûÕý³£µÄÇé¿öÏ£¬Ò»µã¿ª¾Í´ò¿ªÁ˱¾ÊеØÍ¼¡£ÎÒ¿´µ½Õâ¸öÈí¼þµã¿ª³µÁ¾¼à¿ØµÄʱºò£¬ÏÂÃæÍøÒ³ÏÔʾµÄÊÇÕýÔÚ´ò¿ªTSIMainFrame.asp£¬ÎÒ°ÑÕâ¸öÎļþÕ³ÉÏÀ´£¬´ó¼Ò¿´¿´ÕâÊÇÔõô ......
RT
ËٶȰ¡............
ÕýÔÚͨÓ÷ÖÒ³
°Ù¶ÈÉÏÕÒÏÂASP ͨÓ÷ÖÒ³´úÂëÀ࣡´úÂë²»¶àµÄ£¡¿Ï¶¨Ò²ÄÜÓã¡
ASP·ÖÒ³´úÂë <!-- ££i nclude file="../conn.asp" --> //£¨Yoko:·¾¶°´×Ô¼ºµÄÉèÖúã©
<%
dim i,intPage,page,pre,last,filepath
set rs = server.CreateObject("adodb.records ......
ÎÒÔÚÒ³ÃæÉÏÓиöFileUpload ¿Ø¼þÊÇÒþ²ØµÃ.ÎÒ×öÁËÒ»¸ö³¬Á´½ÓÓÃJSµ÷Óà document.getElementById('FileUpload1').click(); Ñ¡ÔñÒªÉÏ´«µÄͼƬ µ÷ÓõÄÒ»¸öÒþ²ØÔÚÒ³ÃæÉϰ´Å¥µÄclickʼþ.±¨JS¾Ü¾ø·ÃÎʵĴíÎó..Ã²ËÆ´íÎóÊǵ÷Óð´Å¥Ê±µÄ´íÎó.ÇëÎÊÔõô½â¾ö.¼±ÔÚÏßµÈ.......
Ìùµã¹Ø¼ü´úÂëÉÏÀ´
FileUploadÊÇrunat=serverµÄÈç¹ûÄãvisabl ......
Severity :Critical Privacy Violation: Unencrypted Password Submission .00
URL/File Names:
1. http://172.16.1.121:888/
This page may submit a password via an unencrypted connection. Found text: [<input
name="txtPassword" type="password",].
2. http://172.16.1.121:888/LoginF ......
Text=¡° ¡°¡±¡±
ËÍ·ÖÌâ°¡£¬
±¯¾ç°¡ ËÍ·ÖÌ⣬ÉÏÃæ¶¼²»¶ÔµÄ
string str=@"""Ë«ÒýºÅ""";
string str1="\"Ë«ÒýºÅ\"";
ÒýÓÃ
string str=@"""Ë«ÒýºÅ""";
string str1="\"Ë«Òý ......