{"type":"rich","provider_url":"https://hatena.blog","categories":["Security"],"published":"2020-08-12 19:27:59","author_name":"hamayanhamayan","blog_url":"https://blog.hamayanhamayan.com/","url":"https://blog.hamayanhamayan.com/entry/2020/08/12/192759","provider_name":"Hatena Blog","html":"<iframe src=\"https://hatenablog-parts.com/embed?url=https%3A%2F%2Fblog.hamayanhamayan.com%2Fentry%2F2020%2F08%2F12%2F192759\" title=\"cerberus [LORD OF SQLINJECTION] - \u306f\u307e\u3084\u3093\u306f\u307e\u3084\u3093\u306f\u307e\u3084\u3093\" class=\"embed-card embed-blogcard\" scrolling=\"no\" frameborder=\"0\" style=\"display: block; width: 100%; height: 190px; max-width: 500px; margin: 10px 0px;\"></iframe>","width":"100%","description":"Lord of SQLInjection <?php include \"./config.php\"; login_chk(); $db = mongodb_connect(); $query = array( \"id\" => $_GET['id'], \"pw\" => $_GET['pw'] ); echo \"<hr>query : <strong>\".json_encode($query).\"</strong><hr><br>\"; $result = mongodb_fetch_array($db->prob_cerberus->find($query)); if($result['id'])\u2026","title":"cerberus [LORD OF SQLINJECTION]","author_url":"https://blog.hatena.ne.jp/hamayanhamayan/","image_url":null,"version":"1.0","height":"190","blog_title":"\u306f\u307e\u3084\u3093\u306f\u307e\u3084\u3093\u306f\u307e\u3084\u3093"}