You can see this for the password parameter; the string for the userid parameter has been selected, so you can't see the green text there.
您从password参数中可以看到;userid参数的字符串被选中,这样您无法看见这里的绿色文本。
This assumes that the LDAP entry for each user has an attribute containing a string that can be used for the second userid.
假定每个用户的LDAP条目有一个属性,该属性包含可用于第二个userid的字符串。
For instance, if the hacker enters "42; SHUTDOWN WITH NOWAIT" as his userid, he modifies the query string like this.
例如,如果黑客输入“42;SHUTDOWN WITH NOWAIT”作为其userid,那么他可修改查询字符串如下。
应用推荐