Adamix Posted March 6, 2012 Posted March 6, 2012 Hey , everybody i have found a server with 1300 online witch has a sql injection , also have xpath injection .. ... im not so good in this way if someone know how to use sql injection pm me here and we can try it ... Quote
HackNo123 Posted March 6, 2012 Posted March 6, 2012 How do you know that the server is passible for SQL Injection? I'm asking coz I'm new to this as well and wanna learn more :) Quote
Adamix Posted March 6, 2012 Author Posted March 6, 2012 i have an image that shows its injectable to xpath , im too new to it so im looking for someone who know about that more. Quote
lliuke Posted March 12, 2012 Posted March 12, 2012 i have an image that shows its injectable to xpath , im too new to it so im looking for someone who know about that more. Not all xpath vulnerabily are usefull for injection . Quote
HackNo123 Posted March 13, 2012 Posted March 13, 2012 Question: In webcruiser if when I try to retrieve the database's name, I get odd characters as in lines, squares etc. WHat should I do? Is it related to the software or.... Quote
Magicfan Posted March 14, 2012 Posted March 14, 2012 with webcruiser i found a lot of site with vulnerability , bu i dont know how get the database , eachtime i tryed , i fail...if someone can make a tutorial ? xD Quote
Dir50 Posted March 14, 2012 Posted March 14, 2012 Pm me with the link , i am litle good at it. I will reply you back. Quote
BigGreen Posted March 14, 2012 Posted March 14, 2012 Nice I find the name of the program already xD Quote
Bobi Posted March 14, 2012 Posted March 14, 2012 Nice I find the name of the program already xD the program is help you to download DB when u have Inject but first you need find manually any open Inject you need know what to search Quote
BigGreen Posted March 14, 2012 Posted March 14, 2012 Well, I just need to find the Vulnerability, for Injection I use another program. It's called Havij, I manage to crack it. Quote
Bobi Posted March 15, 2012 Posted March 15, 2012 Well, I just need to find the Vulnerability, for Injection I use another program. It's called Havij, I manage to crack it. and how u will find inject with Havij when u dont know what is SQL Inject and how working i recommend you before start to use any program first open and read 1. What is SQL Inject ? 2. How Work SQL Inject? 3. How to find SQL inject? 4. What can u do with SQL inject ? Quote
Bobi Posted March 15, 2012 Posted March 15, 2012 Sec, you can expoilt mysql with havij? if you mean that ? http://youtu.be/DmSLYiLdUcQ yes but only if you read my preview topic ... i mean ... and how u will find inject with Havij when u dont know what is SQL Inject and how working i recommend you before start to use any program first open and read 1. What is SQL Inject ? 2. How Work SQL Inject? 3. How to find SQL inject? 4. What can u do with SQL inject ? Quote
Vazelos Posted March 15, 2012 Posted March 15, 2012 That's l2j's database, right? Havij only exploits webpage database. (?) Quote
Bobi Posted March 15, 2012 Posted March 15, 2012 That's l2j's database, right? Havij only exploits webpage database. (?) that is DB name on server who i inject now so there are more from 50 different ways to make Inject i will told you again i recommend you before start to use any program first open and read 1. What is SQL Inject ? 2. How Work SQL Inject? 3. How to find SQL inject? 4. What can u do with SQL inject ? Quote
Recommended Posts
Join the conversation
You can post now and register later. If you have an account, sign in now to post with your account.
Note: Your post will require moderator approval before it will be visible.