خبرهای خوبی در راه است.....
123456
123456expr 885376237 + 978615899
${@var_dump(md5(152659658))};
123456|expr 946182333 + 933798546
/*1*/{{892131279+983618871}}
'-var_dump(md5(136197662))-'
${847323515+932131128}
123456$(expr 963452961 + 938555893)
123456&set /A 815485608+808894454
${(860941872+948842375)?c}
#set($c=860488601+969039406)${c}$c
expr 834521169 + 927564935
<%- 999739774+993859451 %>
${839649754+849919048}
123456'and/**/extractvalue(1,concat(char(126),md5(1446547883)))and'
123456"and/**/extractvalue(1,concat(char(126),md5(1601494178)))and"
extractvalue(1,concat(char(126),md5(1994823225)))
123456'and(select'1'from/**/cast(md5(1973670812)as/**/int))>'0
123456/**/and/**/cast(md5('1757456771')as/**/int)>0
convert(int,sys.fn_sqlvarbasetostr(HashBytes('MD5','1885282755')))
123456'and/**/convert(int,sys.fn_sqlvarbasetostr(HashBytes('MD5','1001041398')))>'0
123456鎈'"\(
123456'"\(
123456/**/and+2=2
123456/**/and+0=5
123456'and's'='s
123456'and's'='z
123456"and"q"="q
123456"and"c"="v
(select*from(select+sleep(0)union/**/select+1)a)
(select*from(select+sleep(7)union/**/select+1)a)
123456'and(select*from(select+sleep(0))a/**/union/**/select+1)='
123456'and(select*from(select+sleep(7))a/**/union/**/select+1)='
123456"and(select*from(select+sleep(0))a/**/union/**/select+1)="
123456"and(select*from(select+sleep(7))a/**/union/**/select+1)="
123456/**/and(select+1/**/from/**/pg_sleep(0))>0/**/
123456/**/and(select+1/**/from/**/pg_sleep(7))>0/**/
123456
123456
expr 885376237 + 978615899
123456
${@var_dump(md5(152659658))};
123456
123456|expr 946182333 + 933798546
/*1*/{{892131279+983618871}}
'-var_dump(md5(136197662))-'
123456
123456
${847323515+932131128}
123456$(expr 963452961 + 938555893)
123456
123456
123456
123456
123456&set /A 815485608+808894454
${(860941872+948842375)?c}
123456
#set($c=860488601+969039406)${c}$c
123456
expr 834521169 + 927564935
123456
123456
123456
123456
123456
123456
123456
<%- 999739774+993859451 %>
123456
123456
123456
123456
123456
123456
123456
${839649754+849919048}
123456
123456
123456
123456
123456
123456
123456
123456
123456
123456
123456
123456
123456
123456
123456
123456
123456
123456
123456
123456
123456
123456
123456
123456
123456'and/**/extractvalue(1,concat(char(126),md5(1446547883)))and'
123456
123456
123456
123456"and/**/extractvalue(1,concat(char(126),md5(1601494178)))and"
123456
extractvalue(1,concat(char(126),md5(1994823225)))
123456
123456
123456'and(select'1'from/**/cast(md5(1973670812)as/**/int))>'0
123456
123456
123456/**/and/**/cast(md5('1757456771')as/**/int)>0
123456
123456
123456
convert(int,sys.fn_sqlvarbasetostr(HashBytes('MD5','1885282755')))
123456
123456
123456'and/**/convert(int,sys.fn_sqlvarbasetostr(HashBytes('MD5','1001041398')))>'0
123456
123456
123456
123456鎈'"\(
123456
123456
123456'"\(
123456
123456
123456
123456
123456
123456/**/and+2=2
123456
123456/**/and+0=5
123456
123456'and's'='s
123456'and's'='z
123456
123456"and"q"="q
123456
123456
123456"and"c"="v
123456
(select*from(select+sleep(0)union/**/select+1)a)
(select*from(select+sleep(7)union/**/select+1)a)
123456
123456'and(select*from(select+sleep(0))a/**/union/**/select+1)='
123456'and(select*from(select+sleep(7))a/**/union/**/select+1)='
123456"and(select*from(select+sleep(0))a/**/union/**/select+1)="
123456"and(select*from(select+sleep(7))a/**/union/**/select+1)="
123456/**/and(select+1/**/from/**/pg_sleep(0))>0/**/
123456/**/and(select+1/**/from/**/pg_sleep(7))>0/**/
123456
123456
123456
123456
123456
123456
123456
123456
123456
123456
123456
123456
123456
123456
123456
123456
123456
123456
123456
123456
123456
123456
123456