| '-1'',',;,--, user,cast ,dbcc , from,srvrolemember,db_name(),select ,update ,delete ,create ,table ,drop ,alter ,inner join,union ,group by ,having ,cmdshell,dirtree,and ,or , a=a,addextendedproc,isnull,system_user, 1=1,d99_tmp,declare,openrowset,opendatasource,char(,shutdown,kill ,sysobjects,syscolumns,syslogins,sysxlogins,sysdatabases,fsofileexplorer,thepath,winnt,system32,theact,cast(,convert(,exec(,'=',/**/,unicode(,substring(,/**/and/**/,%2f**%2f,0=a,0=A,ltrim(,str(,count(,nvarchar(,utl_inaddr,get_host_address'¿¡ ´ëÇÑ °Ë»ö°á°ú°¡ ¾ø½À´Ï´Ù. |