A.burpsuite B.nmap C.sqlmap D.beef
A.<?php@eval($_POST(value)):?> B.<%execute(request("value"))%> C.<?phpassert($_POST(value));?> D.<?php@eval($_GET(value)):?>
A.select 1,2,3,4,5from mysql; B.order by NUMBER C.union select null(增加null的數(shù)量逐個嘗試) D.order byTABLENAME