sql injection vulnerability in where clause allowing retrieval of hidden data

welcome to shbcf.ru