๋ชฉ๋ก2์‹œ๊ฐ„ (1)

wonder

์ •๋ณด๋ณด์•ˆ ์Šคํ„ฐ๋”” - 3์ฃผ์ฐจ 1์ผ - Union/Error Based Injection

union select๋ž€ ์‰ฝ๊ฒŒ ๋งํ•ด select๋ฌธ์„ ํ•œ๋ฒˆ ๋” ์“ธ ์ˆ˜ ์žˆ๊ฒŒ ํ•ด์ฃผ๋Š” ์กด์žฌ์ž…๋‹ˆ๋‹ค. ๋‘๊ฐœ์˜ ์ฟผ๋ฆฌ๋ฅผ ํ•ฉ์ณ์ค๋‹ˆ๋‹ค. ํ•ฉ์น˜๊ธด ํ•ฉ์น˜๋Š”๋ฐ ์–ด๋–ป๊ฒŒ ๊ฒฐ๊ณผ๊ฐ€ ๋‚˜์˜ค๋‚˜? ์›๋ž˜๋Š” select id from table union select idx from table2 ๋ผ๋ฉด idx ์นผ๋Ÿผ๋ช…์€ ์—†์–ด์ง€๊ณ  ๋ฐ์ดํ„ฐ๋งŒ id ๋ฐ‘์— ๋“ค์–ด์˜ค๊ฒŒ ๋ฉ๋‹ˆ๋‹ค. SELECT id FROM table1 union select 4; ์ด๋Ÿฐ์‹์œผ๋กœ ์ž„์˜์˜ ์ˆซ์ž ๋˜๋Š” ๋ฌธ์ž๋ฅผ ๋„ฃ์—ˆ์„ ๋•Œ ํ…Œ์ด๋ธ”์— ์ €์žฅ๋˜์–ด ์žˆ์ง€ ์•Š์•„๋„ ๊ฒฐ๊ณผ๋กœ ๋œน๋‹ˆ๋‹ค. ํ•˜์ง€๋งŒ union select๋ฅผ ์‚ฌ์šฉํ•˜๋ ค๋ฉด ์กฐ๊ฑด์€ ํ•ญ์ƒ ์—ด ๊ฐœ์ˆ˜๋ฅผ ๋งž์ถฐ์ค˜์•ผ ํ•ฉ๋‹ˆ๋‹ค. ์—ด ๊ฐœ์ˆ˜๋ฅผ ๋งž์ถฐ ์ค€๋‹ค๋ฉด ์ด๋ ‡๊ฒŒ ๊ฐ ์—ด๋งˆ๋‹ค ์ถ”๊ฐ€๊ฐ€ ๋ฉ๋‹ˆ๋‹ค. select uid,pwd,name,memo from board union select..

hacking study/SQL Injection 2022. 10. 28. 02:38