Pubblicato il nuovo software per la gestione della firma elettronica, della marcatura temporale dei file e per la visualizzazione delle fatture elettroniche.
123456
${@var_dump(md5(951447513))};
'-var_dump(md5(789000609))-'
123456/**/and+4=4
${867797096+804720331}
123456/**/and+2=7
123456'and's'='s
123456'and'm'='c
123456"and"z"="z
123456"and"t"="a
123456'and/**/extractvalue(1,concat(char(126),md5(1578440450)))and'
(select*from(select+sleep(0)union/**/select+1)a)
123456"and/**/extractvalue(1,concat(char(126),md5(1451261628)))and"
(select*from(select+sleep(2)union/**/select+1)a)
123456expr 913811593 + 845919787
extractvalue(1,concat(char(126),md5(1077915516)))
123456'and(select*from(select+sleep(0))a/**/union/**/select+1)='
123456|expr 805888307 + 968168573
123456'and(select'1'from/**/cast(md5(1043749175)as/**/int))>'0
123456'and(select*from(select+sleep(2))a/**/union/**/select+1)='
/*1*/{{897248781+916111172}}
123456$(expr 867219950 + 839529686)
123456/**/and/**/cast(md5('1574793403')as/**/int)>0
123456"and(select*from(select+sleep(0))a/**/union/**/select+1)="
${919074760+850850901}
123456&set /A 878798226+826573293
convert(int,sys.fn_sqlvarbasetostr(HashBytes('MD5','1544668266')))
123456"and(select*from(select+sleep(2))a/**/union/**/select+1)="
${(848231354+849940853)?c}
expr 861641146 + 896158119
123456'and/**/convert(int,sys.fn_sqlvarbasetostr(HashBytes('MD5','1926023310')))>'0
123456/**/and(select+1/**/from/**/pg_sleep(0))>0/**/
#set($c=924666004+821614178)${c}$c
123456鎈'"\(
123456/**/and(select+1/**/from/**/pg_sleep(2))>0/**/
<%- 972517411+805271572 %>
123456'"\(
123456'/**/and(select'1'from/**/pg_sleep(0))::text>'0
123456'/**/and(select'1'from/**/pg_sleep(2))::text>'0
123456/**/and(select+1)>0waitfor/**/delay'0:0:0'/**/
123456/**/and(select+1)>0waitfor/**/delay'0:0:2'/**/
123456'and(select+1)>0waitfor/**/delay'0:0:0
123456'and(select+1)>0waitfor/**/delay'0:0:2
123456/**/and/**/0=DBMS_PIPE.RECEIVE_MESSAGE('w',0)
123456/**/and/**/3=DBMS_PIPE.RECEIVE_MESSAGE('m',2)
123456'/**/and/**/DBMS_PIPE.RECEIVE_MESSAGE('n',0)='n
123456'/**/and/**/DBMS_PIPE.RECEIVE_MESSAGE('c',2)='c
123456
123456
123456
123456
${@var_dump(md5(951447513))};
123456
123456
123456
123456
'-var_dump(md5(789000609))-'
123456
123456
123456
123456
123456
123456
123456
123456
123456
123456
123456
123456
123456
123456
123456/**/and+4=4
${867797096+804720331}
123456
123456
123456/**/and+2=7
123456
123456
123456
123456
123456'and's'='s
123456
123456
123456
123456'and'm'='c
123456
123456
123456
123456"and"z"="z
123456
123456
123456"and"t"="a
123456
123456
123456
123456
123456
123456
123456
123456
123456
123456
123456
123456
123456
123456
123456
123456
123456'and/**/extractvalue(1,concat(char(126),md5(1578440450)))and'
(select*from(select+sleep(0)union/**/select+1)a)
123456
123456
123456
123456"and/**/extractvalue(1,concat(char(126),md5(1451261628)))and"
(select*from(select+sleep(2)union/**/select+1)a)
123456
123456
expr 913811593 + 845919787
extractvalue(1,concat(char(126),md5(1077915516)))
123456'and(select*from(select+sleep(0))a/**/union/**/select+1)='
123456
123456|expr 805888307 + 968168573
123456'and(select'1'from/**/cast(md5(1043749175)as/**/int))>'0
123456'and(select*from(select+sleep(2))a/**/union/**/select+1)='
/*1*/{{897248781+916111172}}
123456$(expr 867219950 + 839529686)
123456/**/and/**/cast(md5('1574793403')as/**/int)>0
123456"and(select*from(select+sleep(0))a/**/union/**/select+1)="
${919074760+850850901}
123456&set /A 878798226+826573293
convert(int,sys.fn_sqlvarbasetostr(HashBytes('MD5','1544668266')))
123456"and(select*from(select+sleep(2))a/**/union/**/select+1)="
${(848231354+849940853)?c}
expr 861641146 + 896158119
123456'and/**/convert(int,sys.fn_sqlvarbasetostr(HashBytes('MD5','1926023310')))>'0
123456/**/and(select+1/**/from/**/pg_sleep(0))>0/**/
#set($c=924666004+821614178)${c}$c
123456鎈'"\(
123456/**/and(select+1/**/from/**/pg_sleep(2))>0/**/
<%- 972517411+805271572 %>
123456'"\(
123456'/**/and(select'1'from/**/pg_sleep(0))::text>'0
123456
123456'/**/and(select'1'from/**/pg_sleep(2))::text>'0
123456
123456/**/and(select+1)>0waitfor/**/delay'0:0:0'/**/
123456
123456
123456/**/and(select+1)>0waitfor/**/delay'0:0:2'/**/
123456
123456
123456'and(select+1)>0waitfor/**/delay'0:0:0
123456
123456
123456'and(select+1)>0waitfor/**/delay'0:0:2
123456
123456
123456/**/and/**/0=DBMS_PIPE.RECEIVE_MESSAGE('w',0)
123456
123456
123456/**/and/**/3=DBMS_PIPE.RECEIVE_MESSAGE('m',2)
123456
123456
123456'/**/and/**/DBMS_PIPE.RECEIVE_MESSAGE('n',0)='n
123456
123456
123456'/**/and/**/DBMS_PIPE.RECEIVE_MESSAGE('c',2)='c
123456
123456
123456
123456
123456
123456
123456
123456
123456
123456
123456
123456
123456
123456
123456
123456
123456
123456
123456
123456
123456
123456
123456
123456
123456
123456
123456
123456
123456
123456
123456
123456
123456
123456
123456
123456
123456
123456
123456
123456