Sep
18
Sep
16
Adobe Flash Player是一款高性能的、轻量型且极具表现力的客户端运行时播放器, 能够在各种主流操作系统、浏览器、移动电话和移动设备上提供功能强大且一致的用户体验.
Sep
16
作者:Ryat
来源:狼族论坛
好久没在论坛发什么东西了,今天中秋满月,发个小漏洞:)
漏洞代码:
来源:狼族论坛
好久没在论坛发什么东西了,今天中秋满月,发个小漏洞:)
漏洞代码:
vote/vote.php
// 22行
$optionids = is_array($op) ? implode(',',$op) :
$op; ... $db->query("UPDATE ".TABLE_VOTE_OPTION." SET number = number+1 WHERE optionid IN ($optionids) ");
// 22行
$optionids = is_array($op) ? implode(',',$op) :
$op; ... $db->query("UPDATE ".TABLE_VOTE_OPTION." SET number = number+1 WHERE optionid IN ($optionids) ");
Sep
13
Mysql charset Truncation vulnerability
By http://www.80sec.com/
We found that there is a interesting feature in mysql database,when you are using utf8,gbk or other charsets.This feature may make your application unsecure.
Stefen Esser shows some attack manners of mysql in his paper[1], in which he issues the SQL Column Truncation vulnerability.
By http://www.80sec.com/
We found that there is a interesting feature in mysql database,when you are using utf8,gbk or other charsets.This feature may make your application unsecure.
Stefen Esser shows some attack manners of mysql in his paper[1], in which he issues the SQL Column Truncation vulnerability.
Sep
11
南方网讯 据广东省人民政府办公厅消息根据国务院办公厅有关通知精神,今年中秋节放假时间为9月13日-15日,共3天。其中,9月13日(星期六)为公休日,9月14日(农历八月十五,中秋节)为法定节假日,9月14日(星期日)公休日调至9月15日(星期一)。不能停止生产和工作的单位放假办法,由其上级主管部门研究确定。
Sep
8
# WordPress 2.6.1 SQL Column Truncation Vulnerability (PoC)
#
# found by irk4z[at]yahoo.pl
# homepage: http://irk4z.wordpress.com/
#
# found by irk4z[at]yahoo.pl
# homepage: http://irk4z.wordpress.com/
Sep
5
哇靠。MD10算法。牛人呐。







