标签: mysql database xss
是否有人知道如何解码以下网址。我猜这是一次入侵我们数据库的自动尝试:
http://www.our-webiste.com/web/gallery_album?albumid=999999.9%20union%20all%20select%200x31303235343830303536%2C0x31303235343830303536%2C0x31303235343830303536%2C0x31303235343830303536%2C0x31303235343830303536%2C0x31303235343830303536%2C0x31303235343830303536%2C0x31303235343830303536%2C0x31303235343830303536%2C0x31303235343830303536%2C0x31303235343830303536%2C0x31303235343830303536%2C0x31303235343830303536%2C0x31303235343830303536%2C0x31303235343830303536%2C0x31303235343830303536%2C0x31303235343830303536%2C0x31303235343830303536--
答案 0 :(得分:0)
这是SQL注入攻击:
%20
union all select
0x31303235343830303536
SELECT * FROM albums
albums
UNION
%2C