SQL injection: steps after identifying a vulnerabilty


I'm learning my way through SQLi, and wondered what typically, the next steps are after I've:

1. Identified a vulnerability

2. via SQLi I've listed DB, user, tables, columns, content of columns etc

3. identified that user is not sysadmin (on a MySQL system)

Where does one typically go next with identifying further information, and ultimately escalating privileges? I'm not after a step by step hold my hand approach, more a general 'this is the order I tend to do things in', as I know everyone has a different approach.

thanks in advance

