post注入:


get注入:

搜索型注入:

xx注入:

insert/updata 注入

a‘ or updatexml(1,concat(0x7e, (select column_name from information_schema.columns where table_name=‘member‘ limit 1,1)), 0) or ‘

delete注入:



http header注入:



盲注 base on boolian:


盲注 base on time:

宽字节注入:


原文:https://www.cnblogs.com/p201721430005/p/12082074.html