以下链接参数ID输入查询Users表Name,Phone,Address三个字段,而CreditCarTable表也有三个字段下
2023-12-012019年网络安全集训
以下链接参数ID输入查询Users表Name,Phone,Address三个字段,而CreditCarTable表也有三个字段下列SQL语句注入参数正确的是(____)。
A.id=1UNIONALLSELECTcreditCardNumber,1,1FROMCreditCarTable
B.id=1UNIONALLSELECT1,1,1FROMCreditCarTable
C.id=1UNIONALLSELECT3FROMCreditCarTable
D.id=1UNIONALLSELECT*FROMCreditCarTable
正确答案是ABD
