当前位置:网站首页>SQL injection cookie injection
SQL injection cookie injection
2022-07-07 05:04:00 【In a word, the Trojan horse (the growth road of Wang an Xiaobai)】
One 、 What is? cookie
cookie Sent by the server and stored in the browser , So the next time this unique visitor comes back to the web server , This information can be read back from the browser . It's very useful , Let the browser remember the specific information of this visitor , Like the location of the last visit 、 Time spent or user preferences
Two 、cookie Injection principle
cookie The principle of injection and others SQL The principle of injection is the same , It's just that we used the previous parameters get perhaps post Mode submission , and cookie Injection parameters we use cookie Submitted by .
3、 ... and 、cookie Injected demo
1. Start by opening sqlilabs/Less-20/index.php, The account number and password entered are admin Log in .
2. Enter the page to see the information displayed by the display bit , You can see that the backend gets the information from cookie Information about
3. open burp suite, Click Run in the browser , Grab the data packet as shown in the figure below
4. stay burp suite Of repeater Module for editing
5. Try to close according to the returned error message
payload:Cookie: uname=admin'and 1=1 --+ Found no error reported . You can do it here cookie Inject
6. Get the current database name ( You can use Boolean blind injection or error reporting injection , Error reporting injection is used here )
payload:Cookie: uname=admin'and updatexml(1,concat(0x7e,(select database()),0x7e),1) --+
View error message :
边栏推荐
- ClickHouse(03)ClickHouse怎么安装和部署
- Vscode automatically adds a semicolon and jumps to the next line
- AttributeError: module ‘torch._C‘ has no attribute ‘_cuda_setDevice‘
- Operand of null-aware operation ‘!‘ has type ‘SchedulerBinding‘ which excludes null.
- Sublime tips
- File upload vulnerability summary
- U++ metadata specifier learning notes
- 装饰器基础学习02
- Factor analysis r practice (with R installation tutorial and code)
- 【QT】自定义控件-Loading
猜你喜欢
01 machine learning related regulations
带你遨游银河系的 10 种分布式数据库
Pointer and array are input in function to realize reverse order output
Salesforce 容器化 ISV 场景下的软件供应链安全落地实践
The sooner you understand the four rules of life, the more blessed you will be
Decorator basic learning 02
如何设计 API 接口,实现统一格式返回?
- [email protected] Mapping relatio"/>
Why JSON is used for calls between interfaces, how fastjson is assigned, fastjson 1.2 [email protected] Mapping relatio
Sublime tips
SQL injection HTTP header injection
随机推荐
Leetcode longest public prefix
当 Knative 遇见 WebAssembly
qt 简单布局 盒子模型 加弹簧
CentOS 7.9安装Oracle 21c历险记
Comparison between thread and runnable in creating threads
第一篇论文的写作流程
How to package the parsed Excel data into objects and write this object set into the database?
Salesforce 容器化 ISV 场景下的软件供应链安全落地实践
STM32 encapsulates the one key configuration function of esp8266: realize the switching between AP mode and sta mode, and the creation of server and client
[Yugong series] go teaching course 005 variables in July 2022
记录一次压测经验总结
vector和类拷贝构造函数
Mysql database (basic)
《五》表格
U++ 元数据说明符 学习笔记
Using thread class and runnable interface to realize the difference between multithreading
想要选择一些部门优先使用 OKR, 应该如何选择试点部门?
高数中值定理总结
Ansible overview and module explanation (you just passed today, but yesterday came to your face)
sublime使用技巧