LuLMonstre
Muslim fighter 007
today : | at : | safemode : ON
> /cyberionic-studio/
name author perms com modified label

cara patch bug SQLI Unknown rwxr-xr-x 0 02.09

Filename cara patch bug SQLI
Permission rw-r--r--
Author Unknown
Date and Time 02.09
Label
Action





You have an error in your SQL syntax; check the manual that corresponds to your MySQL server version for the right syntax to use near '\'' at line 1



  1. Siapkan dahulu website yang akan di patch.. ex: update.php
  2. Buka notepad ++ atau editor text lainnya..
  3. Ketik kode Berikut :
    <?
    if (ereg("%20union%20", $_GET['id'])||ereg("union",$_
    GET['id']) || ereg("\*union\*",$_GET['id']) || ereg("\+union\+",
    $_GET[id]) || ereg("\*",$_GET['id']))
    {
    ob_start();
    header("location: index.php"); //bisa diganti sesuai selera :D
    ob_flush();
    }
    ?>
  4. Satukkan files tersebut bersama index.php/ public_html / htdocs (satu folder)
  5. Buka files yang akan dipatch tadi.. saya pake files update.php sebagai contoh
  6. Tambahkan kode:
    include 'aman.php';
  7. Lalu save

0 komentar:

Posting Komentar

 

Jayalah Indonesiaku © 2010 Cyber - Studio
LuLMonstre[*] Template design by lulmonstre