当前位置:网站首页>[RootersCTF2019]babyWeb
[RootersCTF2019]babyWeb
2022-07-01 05:08:00 【-栀蓝-】
发现是一个注入题
英文提示 页面又十八位超强的密码来保护
禁用了 union sleep ' " or
一开始我的想法是如果sql语句需要闭合的话那就GG了
先直接输入一个1看看
发现回显的是一个sql语句
按照老套路看一下有多少字段数
发现输入到3的时候页面就会报错,到2正常回显,因此可以清楚到有两个字段
利用万能密码+limit看一下字段数是什么,or可以用||来进行代替
1 || 1=1 limit 1
发现flag出来了……不知道考的什么
边栏推荐
- Copier le matériel de conseils de bébé ne peut pas être vide, comment résoudre?
- [daily question in summer] letter delivery by p1629 postman in Luogu (to be continued...)
- Global and Chinese market of mainboard 2022-2028: Research Report on technology, participants, trends, market size and share
- Actual combat: gateway api-2022.2.13
- 字符输入流与字符输出流
- 1076 Forwards on Weibo
- 导电滑环使用的注意事项
- LeetCode316-去除重复字母-栈-贪心-字符串
- 【暑期每日一题】洛谷 P3742 umi的函数
- Pytorch convolution operation
猜你喜欢
How to traverse massive data in redis
[summer daily question] Luogu p5886 Hello, 2020!
Vmware workstation network card settings and three common network modes
[hard ten treasures] - 2 [basic knowledge] characteristics of various topological structures of switching power supply
How to use common datasets in pytorch
STM32 photoresistor sensor & two channel AD acquisition
Data consistency between redis and database
Neural networks - use sequential to build neural networks
分布式-总结列表
Oracle views the creation time of the tablespace in the database
随机推荐
Global and Chinese markets of superconductor 2022-2028: Research Report on technology, participants, trends, market size and share
Distributed transactions - Solutions
Query long transaction
Go learning notes (5) basic types and declarations (4)
Unity drags and modifies scene camera parameters under the editor
Tcp/ip explanation (version 2) notes / 3 link layer / 3.2 Ethernet and IEEE 802 lan/man standards
Programmers dig "holes" to get rich: if they find a loophole, they will be rewarded 12.72 million yuan
FileInputStream
担心侵权?必备无版权素材网站分享,不用担心视频剪辑缺素材
[daily question in summer] Luogu p5740 [deep foundation 7. Example 9] the best student
Basic skeleton of neural network nn Use of moudle
Global and Chinese market of mainboard 2022-2028: Research Report on technology, participants, trends, market size and share
Several methods of creating thread classes
AcWing 888. Finding combinatorial number IV (the problem of finding combinatorial number with high precision)
How to start learning editing? Detailed analysis of zero basis
Global and Chinese market of search engine optimization (SEO) software 2022-2028: Research Report on technology, participants, trends, market size and share
【暑期每日一题】洛谷 P3742 umi的函数
Like cloud functions
What can the points mall Games bring to businesses? How to build a points mall?
Use of STM32 expansion board temperature sensor and temperature humidity sensor