1:靶场链接: https://hack.zkaq.cn/battle/target?id=485e58d0afa7e4f7https://hack.zkaq.cn/battle/target?id=485e58d0afa7e4f7
https://hack.zkaq.cn/battle/target?id=485e58d0afa7e4f7
2:解题过程:
(1):打开传送门,点击"点击查看新闻"发现url出现参数 id = 1,猜测为注入