2.updatexml()、extractvalue()、name_const()函数的使用
3.I’ve noticed some variations in our payload. You can inject using these methods too.
' or (payload) or '
' and (payload) and '
' or (payload) and '
' or (payload) and '='
'* (payload) *'
' or (payload) and '
" – (payload) – "