January 28, try SQL INJECTION

xiaoxiao2021-03-06  40

These days can be really bored, I saw a movie website today, to register, try to inject it, just try it, this is this id = 1 and select ... this, use ID = 1 and (Select Count (*) from the Name "> 0 Guess the name, can't guess, it is an Access database, with% 5c instead of the ASP file / coming, I can't make it, I can't find it. What ASP program is used, and the software Authentic uses to pass the protection file. / The vulnerability is also added, and there is no port that has not been open to open himself. It is not yet, it is in the violent. When the library, I went to a website. They are static web pages. The principal's mailbox is an ASP Forum. , Will not use, and (select count (*) from admin> 0 guess the name admin, and (select count (admin)> 0and (SELECT Count (password) from admin> 0 guess Field admin Password is very well guessing the kind of and (select top 1 len (admin)> number guess length and (SELECT TOP 1 ASC (Min (Admin, N, 1) from admin)> Number is a guess character After guess the administrator's user's password, go in to the management page, it seems that there is no way to go up, find the imaging server 8.2 has a vulnerability, no compiler on the machine, pull ,,,, Nothing Intrusion experience, or the big brother is right, learning is really something, reading the book, but the vulnerability of SQL Injection is really much, it is also very fashionable, but it is also a must, I want to figure it out. I know my own efforts to spend a big time. You can not be applied, and many now I will get involved, it is also doing things through the phenomenon, I want yourself nothing, even a debugging is still hard. I can't write Exploit, but I can accumulate in my own learning process. I can have a waste of time. In addition, it seems to be wasted, and I can actually adjust the interest in learning. Today, I will not take a day before the computer. Well,,

转载请注明原文地址:https://www.9cbs.com/read-63015.html

New Post(0)