guesty |
Beginner |
data:image/s3,"s3://crabby-images/1e27d/1e27d40c4795b5a6013dc4fab84cca86b5617c5d" alt="Beginner Beginner"
data:image/s3,"s3://crabby-images/e2473/e24738ef1e82cbd0d402e1aa1ac66163474bb80a" alt="" |
|
Joined: May 17, 2004 |
Posts: 3 |
|
|
|
data:image/s3,"s3://crabby-images/d8482/d848233dc86e1b9c29e426c6f892fb746f09f018" alt="" |
data:image/s3,"s3://crabby-images/d8482/d848233dc86e1b9c29e426c6f892fb746f09f018" alt="" |
data:image/s3,"s3://crabby-images/bba4e/bba4ec035de9c4986699d1c2258ad33da61fd3f7" alt="" |
|
When SQL inj. is available and UNION works, what options do I have? I mean, only SELECT after union? Because I tried UPDATE, DELETE and nothing worked.
Code: | $result=$db->sql_query("
SELECT lid, url, title, description, date, hits, downloadratingsummary, totalvotes,
totalcomments, filesize, version, homepage
FROM ".$prefix."_downloads_downloads
WHERE sid=$sid
order by $orderby
limit $min,$perpage
"); |
And here for example. After pasting UNION... 0,0,some_var... could you explain, how these variables are being assigned to the vars from first SELECT? Because I don't quite understand this. |
|