Advertisement
Guest User

Untitled

a guest
Apr 28th, 2013
219
0
Never
Not a member of Pastebin yet? Sign Up, it unlocks many cool features!
PHP 0.75 KB | None | 0 0
  1. <?php
  2. # ­­­­ CONFIG ­­­­­
  3. $host = 'localhost';
  4. $dbuser = 'root';
  5. $dbpass = 'password';
  6. $dbname = 'blind';
  7. # ­­­­­­­­­­­­­­­­­
  8. echo "<title>Blind SQL Injection Test ­ D.O.M LABS 2008</title>";
  9. $db = mysql_connect($host, $dbuser, $dbpass);
  10. mysql_select_db($dbname,$db);
  11. $sql = "SELECT * FROM users WHERE id=".$_GET['id'];
  12. $query = mysql_query($sql);
  13. if(@mysql_num_rows($query)==0){
  14. die('No hay columnas');
  15. }
  16. $result=@mysql_fetch_row($query);
  17. echo "<h2><center><u>Blind SQL Injection Test<br>D.O.M LABS</u><br><
  18. br>";
  19. echo "<font color='#FF0000'>user_id: </font>".$result[0]."<br>";
  20. echo "<font color='#FF0000'>username: </font>".$result[1]."<br>";
  21. // echo "Password: ".$result[2]."<br>";
  22. echo "</h2></center>";
  23. die();
  24. ?>
Advertisement
Add Comment
Please, Sign In to add comment
Advertisement