当前位置:网站首页>sqli-labs第1关
sqli-labs第1关
2022-07-02 06:29:00 【藤原千花的败北】
草草写的一篇记录文章
概念
SQL注入就是将恶意代码拼接到业务正常的数据库查询,造成数据库信息泄露等危害。
我觉得
要弄懂SQL注入,需要一点计网的知识,最好知道Web开发的整个流程,中间用了哪些技术,为什么需要这种技术。当然,你首先得懂得数据库以及SQL查询,并且程序设计语言和SQL语言之间的结合(推荐一本书《数据库系统概论》)。有了这些基础,SQL注入就自然而然会懂的。
通关思路
输入id,登录正常
尝试闭合语句
单引号报错,推测后端查询语句为:
select * from table where id = ’ input ’

通过order by 枚举,可知字段数为3
由于回显信息较多,优先联合注入
由上图可知,第2、第3个字段为回显信息,故可构造payload,开始注入
库名:
表名:
http://127.0.0.1/sqli-labs/Less-1/?id=-1’ union select 1,2,group_concat(table_name) from information_schema.tables where table_schema=‘security’ --+
字段名:
字段内容:
union select 1,2,group_concat(users,0x7e,password) from users --+
看过几篇教程做题时的记录
1、输入不同id,有不同回显结果,猜测后台sql语句为:select * from table where id= input;
2、单引号测试,报错,推测后台sql语句为:select * from table where id = ‘input’;
3、构造语句,单引号闭合,order by 4出错 ---->3列字段,select 1,2,3,–>回显位置;
4、联合注入: union select 1,2,(构造语句查询信息)–+
1.找漏洞
2.猜解字段数
3.获取数据库名字
4.查表
5.查字段名和字段数值
边栏推荐
- sqli-labs(POST类型注入)
- OpenCV3 6.3 用滤波器进行缩减像素采样
- W10 is upgraded to W11 system, but the screen is black, but the mouse and desktop shortcuts can be used. How to solve it
- Constant pointer and pointer constant
- Intelligent manufacturing solutions digital twin smart factory
- 王-课外单词
- The source code of the live app. When the verification method is mailbox verification, the verification code is automatically sent to the entered mailbox
- Using C language to realize MySQL true paging
- Global and Chinese market of snow sweepers 2022-2028: Research Report on technology, participants, trends, market size and share
- 文件上传-upload-labs
猜你喜欢

Cvpr19 deep stacked hierarchical multi patch network for image deblurring paper reproduction

Fundamentals of music theory (brief introduction)

sqli-labs(POST类型注入)

Vs code configuration problem

On November 24, we celebrate the "full moon"

Carsim-问题Failed to start Solver: PATH_ID_OBJ(X) was set to Y; no corresponding value of XXXXX?

St-link connection error invalid ROM table of STM32 difficult and miscellaneous diseases

双向链表的实现(双向链表与单向链表的简单区别联系和实现)

2022 Heilongjiang latest food safety administrator simulation exam questions and answers

c语言自定义类型——结构体,位段(匿名结构体,结构体的自引用,结构体的内存对齐)
随机推荐
Generate database documents with one click, which can be called swagger in the database industry
Erase method in string
Force deduction method summary: double pointer
Global and Chinese market of snow sweepers 2022-2028: Research Report on technology, participants, trends, market size and share
Chinese garbled code under vscade
11月24号,我们为“满月”庆祝
Use C language to receive JSON strings
Analysis of the use of comparable, comparator and clonable interfaces
Summary of one question per day: stack and queue (continuously updated)
How to uninstall SQL Server cleanly
STM32疑难杂症之ST-LINK Connection error INVALID ROM TABLE
Deep understanding of JVM
sqli-labs第8关(布尔盲注)
c语言将字符串中的空格替换成%20
STM32 new project (refer to punctual atom)
Matlab-其它
Global and Chinese market of wire loop, 2022-2028: Research Report on technology, participants, trends, market size and share
樂理基礎(簡述)
Fundamentals of music theory (brief introduction)
OpenCV关于x,y坐标容易混淆的心得