- ############################### HACKED BY TEAM T!g3R #####################################
- NATIONAL SCIENCE FOUNDATION OF SRILANKA HACKED BY TEAM T!g3R
- MEMBERS : w3bd3f4c3r, n3ll4!s4mur4!,r00t, burn3r, violence_sh@r0n.
- WEBSITE : www.nsf.ac.lk
- VULNEABLITY SQLi
- ################################## PROOFS ################################################
- PROOFS OF TABLES AND COLUMNS ACESSED : http://i51.tinypic.com/14ecsjn.png
- PROOFS OF USERS DATA ACESSED : http://i53.tinypic.com/332nhq9.png
- PROOFS OF ANOTHE TABLES : http://i53.tinypic.com/f55dzm.png
- ################################ SERVER DETAILS ##########################################
- Target: http://www.nsf.ac.lk/annou.php?ID=379
- Host IP: 192.248.80.11
- Web Server: Apache/2.2.3 (CentOS)
- Powered-by: PHP/5.1.6
- DB Server: MySQL >=5
- Resp. Time(avg): 988 ms
- Current User: web@localhost
- Sql Version: 5.0.77-log
- Current DB: web
- System User: web@localhost
- Host Name: slstic.nsf.ac.lk
- Installation dir: /usr/
- DB User: 'web'@'localhost'
- ################################## DATABSE NAMES ###########################################
- Data Bases: information_schema
- Agre
- nni
- test
- twc
- web
- ######################### TABLES AND COLUMN NAMES OF D.B (WEB) ############################
- +TABLES+ ++COLUMNS++
- thematic
- survey_scinnotech
- staff photo remarks email fax tel txt division priority designation2
- designation fname sname title id
- sss
- slsmem
- rdinst
- pub
- pec_users email userlevel lname fname password username uid
- pec_mssgs
- pages
- login LEVEL LDATE PASSWORD U_NAME FULL NAME ID
- links_type
- links
- jss
- jnsf_menuscripts
- jnsf_guide
- jnsf_abstract
- jnsf
- events
- error
- ebk1
- division
- com_type
- com_name
- com_mem
- biospherer
- binary
- awards
- announcements
- activity
- abk1
- ############################## USER DETAILS OF DB (WEB)###################################
- Data Found: FULL NAME=
- Data Found: U_NAME=MadhawaP
- Data Found: PASSWORD=740940139V
- Data Found: LEVEL=ADMIN
- Data Found: ID=3
- Data Found: U_NAME=Chamika
- Data Found: PASSWORD=ch2006
- Data Found: LEVEL=USER
- Data Found: ID=4
- Data Found: U_NAME=Chanaka
- Data Found: PASSWORD=ch2008
- Data Found: LEVEL=USER
- ########################### DATABASE NAME Agri TABLES & COLUMNS########################
- +TABLES+ ++COLUMNS++
- msg
- User AccessLevel Nic Tpno Address Name Password UserName
- University
- Test
- Qualification
- Member
- Mem_Qua
- Mem_AI
- Mem_AE
- AreaofInterest
- AreaOfExpertise
- ############################## USRS DETAIS OF DB (Agri) ##################################
- Data Found: UserName=A
- Data Found: Password=skNlp8zOkx1kg
- Data Found: AccessLevel=Admin
- Data Found: UserName=Admin
- Data Found: Password=skNlp8zOkx1kg
- Data Found: AccessLevel=Admin
- Data Found: UserName=Chani
- Data Found: Password=skNlp8zOkx1kg
- Data Found: AccessLevel=RegistrationOfficer
- Data Found: UserName=ladmin
- Data Found: Password=skNlp8zOkx1kg
- Data Found: AccessLevel=Admin
- Data Found: UserName=malshi
- Data Found: Password=123
- Data Found: AccessLevel=RegistrationOfficer
- Data Found: UserName=R
- Data Found: Password=abc
- Data Found: AccessLevel=RegistrationOfficer
- Data Found: UserName=RU
- Data Found: Password=123
- Data Found: AccessLevel=RegistrationOfficer
- ################################ HACKED BY TEAM T!g3R######################################
Not a member of Pastebin yet? Sign Up, it unlocks many cool features!
RAW Paste Data
We use cookies for various purposes including analytics. By continuing to use Pastebin, you agree to our use of cookies as described in the Cookies Policy.