Код:
Starting Nmap 7.94 ( https://nmap.org ) at 2023-11-10 03:58 EST
Nmap scan report for
Host is up (0.073s latency).
Not shown: 993 filtered tcp ports (no-response)
PORT STATE SERVICE VERSION
22/tcp open ssh OpenSSH 6.0p1 Debian 4+deb7u3 (protocol 2.0)
| ssh-hostkey:
| 1024 b6:7c:c2:c7:b1:0a:c2:50:1b:52:fb:35:b4:a0:31:d1 (DSA)
| 2048 c9:2a:d9:f6:e3:2f:56:9c:fc:21:a1:7f:28:d1:4d:c1 (RSA)
|_ 256 0e:95:8e:e8:96:4a:fb:d4:90:d9:6d:dc:e4:9f:c7:f3 (ECDSA)
53/tcp closed domain
80/tcp open http nginx
| http-cookie-flags:
| /:
| PHPSESSID:
|_ httponly flag not set
| http-robots.txt: 1 disallowed entry
|_/listing/*
|_http-title:
111/tcp open rpcbind 2-4 (RPC #100000)
| rpcinfo:
| program version port/proto service
| 100000 2,3,4 111/tcp rpcbind
| 100000 2,3,4 111/udp rpcbind
| 100000 3,4 111/tcp6 rpcbind
| 100000 3,4 111/udp6 rpcbind
| 100003 2,3,4 2049/tcp nfs
| 100003 2,3,4 2049/tcp6 nfs
| 100003 2,3,4 2049/udp nfs
| 100003 2,3,4 2049/udp6 nfs
| 100005 1,2,3 36989/udp6 mountd
| 100005 1,2,3 38334/udp mountd
| 100005 1,2,3 57549/tcp mountd
| 100005 1,2,3 59567/tcp6 mountd
| 100021 1,3,4 37448/udp nlockmgr
| 100021 1,3,4 43487/tcp nlockmgr
| 100021 1,3,4 44891/tcp6 nlockmgr
| 100021 1,3,4 45729/udp6 nlockmgr
| 100024 1 35490/udp6 status
| 100024 1 45441/tcp status
| 100024 1 45618/udp status
| 100024 1 50413/tcp6 status
| 100227 2,3 2049/tcp nfs_acl
| 100227 2,3 2049/tcp6 nfs_acl
| 100227 2,3 2049/udp nfs_acl
|_ 100227 2,3 2049/udp6 nfs_acl
443/tcp open ssl/http nginx
|_ssl-date: TLS randomness does not represent time
| ssl-cert: Subject: commonName=
| Subject Alternative Name: DNS:
| Not valid before: 2021-05-31T21:30:11
|_Not valid after: 2021-08-29T21:30:11
| http-robots.txt: 1 disallowed entry
|_/listing/*
| http-cookie-flags:
| /:
| PHPSESSID:
|_ httponly flag not set
|_http-title:
2049/tcp open nfs 2-4 (RPC #100003)
3306/tcp open mysql MySQL 5.5.31-30.3
| mysql-info:
| Protocol: 10
| Version: 5.5.31-30.3
| Thread ID: 205286408
| Capabilities flags: 63487
| Some Capabilities: Support41Auth, SupportsCompression, SupportsLoadDataLocal, ConnectWithDatabase, ODBCClient, IgnoreSigpipes, SupportsTransactions, Speaks41ProtocolOld, LongPassword, InteractiveClient, DontAllowDatabaseTableColumn, Speaks41ProtocolNew, LongColumnFlag, IgnoreSpaceBeforeParenthesis, FoundRows, SupportsMultipleResults, SupportsAuthPlugins, SupportsMultipleStatments
| Status: Autocommit
| Salt: U+s'dDfTS$T_^9D'7~87
|_ Auth Plugin Name: mysql_native_password
Service Info: OS: Linux; CPE: cpe:/o:linux:linux_kernel
Есть sql injection, прав у юзера нет.
Дампить через sqlmap не вариант, сервер умирает, а при 2-3 потоках дамп займет несколько месяцев
Интересует дамп с последующим удалением с сервера
С ценами писать в лс.