  • 日期:2005-02-23
  • 类别:
  • 作者:anonymous
  • 语法:filetype:sql ("passwd values" | "password values" | "pass values" )
  • Find insert statements where the field (or table name) preceding the operator VALUES will be 'password' or 'passwd' or 'pass'. The rest of the statement should contain encrypted or plaintext password.An attacker can use these files to acquire database permissions that normally would not be given to the masses.