Em ko rành về mấy cái này , mới xài soft scan qua đã có SQL Injection jì đó rồi :
/home.asp?ID='UNION'&langid=2&txtinput=
/home.asp?ID='&langid=2&txtinput=
/home.asp?ID='%22&langid=2&txtinput=
/home.asp?ID=9%2c+9%2c+9&langid=2&txtinput=
/home.asp?ID='bad_bad_value&langid=2&txtinput=
/home.asp?ID=bad_bad_value'&langid=2&txtinput=
/home.asp?ID='+OR+'&langid=2&txtinput=
/home.asp?ID='WHERE&langid=2&txtinput=
/home.asp?ID=%3B&langid=2&txtinput=
/home.asp?ID='OR&langid=2&txtinput=
/home.asp?ID=147&langid='UNION'&txtinput=
/home.asp?ID=147&langid='&txtinput=
/home.asp?ID=147&langid='%22&txtinput=
/home.asp?ID=147&langid=9%2c+9%2c+9&txtinput=
/home.asp?ID=147&langid='bad_bad_value&txtinput=
/home.asp?ID=147&langid=bad_bad_value'&txtinput=
/home.asp?ID=147&langid='+OR+'&txtinput=
/home.asp?ID=147&langid='WHERE&txtinput=
/home.asp?ID=147&langid=%3B&txtinput=
/home.asp?ID=147&langid='OR&txtinput=
/module/news/viewcontent.asp?ID='UNION'&langid=2
/module/news/viewcontent.asp?ID='&langid=2
/module/news/viewcontent.asp?ID='%22&langid=2
/module/news/viewcontent.asp?ID=9%2c+9%2c+9&langid=2
/module/news/viewcontent.asp?ID='bad_bad_value&langid=2
/module/news/viewcontent.asp?ID=bad_bad_value'&langid=2
/module/news/viewcontent.asp?ID='+OR+'&langid=2
/module/news/viewcontent.asp?ID='WHERE&langid=2
/module/news/viewcontent.asp?ID=%3B&langid=2
/module/news/viewcontent.asp?ID='OR&langid=2
/module/news/viewcontent.asp?ID=353&langid='UNION'
/module/news/viewcontent.asp?ID=353&langid='
/module/news/viewcontent.asp?ID=353&langid='%22
/module/news/viewcontent.asp?ID=353&langid=9%2c+9%2c+9
/module/news/viewcontent.asp?ID=353&langid='bad_bad_value
/module/news/viewcontent.asp?ID=353&langid=bad_bad_value'
/module/news/viewcontent.asp?ID=353&langid='+OR+'
/module/news/viewcontent.asp?ID=353&langid='WHERE
/module/news/viewcontent.asp?ID=353&langid=%3B
/module/news/viewcontent.asp?ID=353&langid='OR
Em chỉ biết vạy thôi , đừng chửi em gà
|