当前位置:网站首页>Sql1 [geek challenge 2019]
Sql1 [geek challenge 2019]
2022-04-23 09:19:00 【Partition CC】
First turn on the target , The display is such a page
It was observed that there was no registration function , Look, the title is EasySQL The judgment should be SQL Injection type ( Principle of injection : Through the SQL Command insert into Web Form submit or input the query string of domain name or page request , Finally, to cheat the server to execute malicious SQL command )

F12 View the source code , Found to be php type

Considering the simplicity of the subject : It's used here php Try universal password : admin'or'1'='1


Found successful login
Big brother, take out your little hand to get rich zan A!
版权声明
本文为[Partition CC]所创,转载请带上原文链接,感谢
https://yzsam.com/2022/04/202204230630141989.html
边栏推荐
- Get trustedinstaller permission
- Detailed explanation of delete, truncate and drop principles in MySQL database
- How to render web pages
- Kettle experiment conversion case
- Kettle experiment
- kettle实验
- Machine learning (VI) -- Bayesian classifier
- 501. 二叉搜索树中的众数
- Trc20 fund collection solution based on thinkphp5 version
- First principle mind map
猜你喜欢

LeetCode_ DFS_ Medium_ 1254. Count the number of closed islands

How to protect open source projects from supply chain attacks - Security Design (1)

STM32 and FreeRTOS stack parsing

Summary of wrong questions 1

MySQL small exercise (only suitable for beginners, non beginners are not allowed to enter)

501. Mode in binary search tree

DJ music management software pioneer DJ rekordbox

Production practice elk

Number of islands

MySQL小练习(仅适合初学者,非初学者勿进)
随机推荐
Go language learning notes - array | go language from scratch
Number of islands
JS prototype chain
501. 二叉搜索树中的众数
Flink SQL realizes the integration of stream and batch
Open services in the bottom bar of idea
108. Convert an ordered array into a binary search tree
《數字電子技術基礎》3.1 門電路概述、3.2 半導體二極管門電路
Go language learning notes - language interface | go language from scratch
Node installation
653. Sum of two IV - input BST
Program, process, thread; Memory structure diagram; Thread creation and startup; Common methods of thread
Go language self-study series | golang method
[SQL Server fast track] view and cursor of database
【SQL server速成之路】数据库的视图和游标
MYCAT configuration
成功的DevOps Leader 应该清楚的3个挑战
考研线性代数常见概念、问题总结
Four pictures to understand some basic usage of Matplotlib
Vivo, hardware safe love and thunder