Jump to content
ajkaro

[SQLi] challenge

Recommended Posts

Posted (edited)

Here is challenge (exercise) for basic data manipulation pirate.gif

Target:

h~~p://w~w.te[RST]s-u[RST]a.com/catalog.php?cat_id=5&brend=3

replace all ~ and remove all [RST]

Tasks:

  • display version with your name
  • display all tables from primary database where more than 10 records exists
  • column with table names (in output) should be left aligned (see proof picture)
  • column with records number for each table (in output) should be right aligned (see proof picture)

Proof:

745001a271950b265838a8256097c843.jpg

Rules:

  • use union select based SQLi
  • using HTML code for column alignment IS NOT allowed
  • post picture as proof
  • send me your command to PM
  • don't share any part of the challenge until challenge is open lipssealed.gif

Solvers:

-

Challenge closed.

Edited by ajkaro
Posted

I am writing tutorial about manipulation of SQLi output data. It will be published on HF (soon). There will be complete explanation for this (and my other similar) challenge(s)

Join the conversation

You can post now and register later. If you have an account, sign in now to post with your account.

Guest
Reply to this topic...

×   Pasted as rich text.   Paste as plain text instead

  Only 75 emoji are allowed.

×   Your link has been automatically embedded.   Display as a link instead

×   Your previous content has been restored.   Clear editor

×   You cannot paste images directly. Upload or insert images from URL.



×
×
  • Create New...