SQL injection can be judged with reshaping and character string parameters and the aim of injection can be judged according to the type,table name and field name of database.

 
  • 通过整形参数和字符串参数来判断是否存在注入漏洞,再通过判断数据库类型和数据库表名及字段名来达到注入的不同目的;
今日热词
目录 附录 查词历史