function try_login() { ajax_get_request("/auth?l=" + document.getElementById("login-user").value + "&p=" + document.getElementById("login-pass").value, on_login_result) }
GET /auth?l=Pirotexnik&p=my_true_pass HTTP/1.1 Host: test17.mcserver.ru Cache-Control: no-cache Connection: Keep-Alive Header-name: Header-value
HTTP/1.1 200 OK Server: nginx/0.7.67 Date: Mon, 01 Aug 2011 09:43:30 GMT Content-Type: text/html; charset=utf-8 Transfer-Encoding: chunked Connection: keep-alive Set-Cookie: PHPSESSID=iq459c6u0g7h3uhmtvk2trj517; path=/ ok
GET /auth?l=Pirotexnik&p=my_true_pass" or 1==1)}// HTTP/1.1