http://www.example.com/forums/misc.php?profile=1&id=[SQL]&[XSS] http://www.example.com/forums/misc.php?profile=1&username=[SQL]&[XSS]