关键信息 漏洞名称: MyBB Ajaxfs 2 Plugin - SQL Injection EDB-ID: 29797 CVE: 2013-6936 作者: IEDB IR 类型: WEBAPPS 平台: PHP 日期: 2013-11-24 漏洞应用: MyBB Ajaxfs 2 Plugin 关键细节 漏洞类型: SQL Injection 风险等级: High 测试平台: Linux 相关链接: - 家页: http://iedb.ir, http://iedb.ir/acc - Facebook页面: https://www.facebook.com/pages/Exploit-And-Security-Team-iedbir/199266860256538 - 软件链接: http://mods.mybb.com/download/ajax-forum-stat-v-2 利用方式 Google DORK: inurl:ajaxfs.php 错误信息示例: 1064 - You have an error in your SQL syntax; check the manual that corresponds to your MySQL server version for the right syntax to use near '' at line 1