How do you completely compromise a machine given a text box or badly validated input box? This is a place to talk about code issues (PHP includes, null byte injection, backticks, pipe, etc...) as well as how to properly construct an SQL injection attack.
so, i found user and pass from user.mysql
but phpmyadmin isn't reachable from anyother one
than localhost. With loadfile i can read files like boot.ini
but Magicquotes is turned on, so I can't use into_outfile.
It's a winXP homePC wit WAMP - so is there anyother way to own
this machine?
WAMP is vulnerable on SQLlite (usually unprotected) You can CSRF-SQLi someone by just sending a page to the person that contains an iframe with localhost as source, basically then you can do pretty much anything.
Just download WAMP and toy around, most often the user password combo for WAMP is: