堆叠注入的使用条件有限。只有当调用数据库函数支持执行多条sql语句时才能够使用,比如php中的mysqli_multi_query()函数。 sql=”select * from flag where id=$_POST[‘id’]”; 则可构造: 1;select * from flag 练习题:BUUCTF [SUCTF 2019]EasySQL
Maybe you could buy me a cup of coffee.
Scan this qrcode
Open alipay app scan this qrcode, buy me a coffee!
Scan this qrcode
Open wechat app scan this qrcode, buy me a coffee!