Jump to content

-===New Exploit (Mini SQL Injection)===-


Recommended Posts

Posted
It is possible bilding fix SQL-Inj № 1' date='2,3 but № 4,5,6,7,8 - it is impossible bild fix [/quote']

 

 

 

what is 1,2,3,4 blah blah. wow 8 different injections? lol :lol: you got to be kidding :P :lol:

 

 

 

<font,rus>Ну и тупой же ты буржуй.... Я думал Что америкосы тупые до бескрайности но оказывается нетак(шутка).</rus>

 

 

 

Stupid... Stupid maxtor....

 

 

 

russia-1137339863_i_5674.jpg

 

 

 

Подразумевается вариации уколов...Ну не в одну же жопу колоть?

 

 

 

Укол 1 - команда+"Укол"

 

Укол 2 - Хелп + "Укол"

 

Укол 3 - BнуTре cиcтемныe измeнeния oблacти кoмaнд... -> "PlayHack"

 

 

 

Все остальные не раскрываются дабы кто другой недогадался до Этого - профиксить невозможно.

 

даже мелкософт СдохнИт от уколов....

 

dont need translator to understand this grrrrr

Posted
Укол 1 - команда+"Укол"

 

Укол 2 - Хелп + "Укол"

 

Укол 3 - BнуTре cиcтемныe измeнeния oблacти кoмaнд... -> "PlayHack"

 

 

 

for all who don't speak language that Lenin spoke ))

 

tr-sion:

 

injection 1 - command and "injection"

 

injection 2 - Help + "injection"

 

injection 3 - system internal changes of the command field ... -> "PlayHack"

 

....

 

suppose he meant that the meaning of "injection" is pretty flexible ...

 

not exact "injection" .... at least in/and for Russian ;0)

 

...

 

inspiration + brain ... heh, greate cocktail )

 

 

 

and in the end it's told, that other possible "injections" are not revealed, 'cause as long as it's not revealed it's impossible to be fixed ... heh

 

 

 

/sorry for maybe bad not native language .... I'm Russian )) /

 

 

 

P.S. Dark Beer rules the wold )))

Posted

offtop

 

2 S.T.A.L.K.E.R

 

забавная картинка ... а что, ужель ещё молодеШь узнаёт эти лица? )

Posted

"Все остальные не раскрываются дабы кто другой недогадался до Этого - профиксить невозможно.

 

даже мелкософт СдохнИт от уколов...." :-) :-) :-)

 

 

 

p.s. it's true ,

 

the current technology of all database software is a old , all database servers can be exploited

 

 

 

little tips: search with artmoney this string UPDATE or INTO and you look other possible sql injection's way

 

 

 

sry , for my bad english , if wanna delete post

Posted

I can shutdown (it doesn't really shutdown, the login server crash) the server where I play with the sql injection in the help file but I can't do the other things (like make gm or create item, delete my own char ...) Anyone have a tip for me ?

Posted
offtop

 

2 S.T.A.L.K.E.R

 

забавная картинка ... а что' date=' ужель ещё молодеШь узнаёт эти лица? )[/quote']

 

OFF TOP:да картинката е забавная and СССР 4 ever

 

sorry for off

Posted
search with artmoney this string UPDATE or INTO and you look other possible sql injection's way

 

 

 

Есть контакт =)))... укол №5 тока применение вручную... пределаем своё окошко с командами и немного потерраризируем сервак :)

 

 

 

если всё делать вручную то это всёже можно фиксануть... а вот если отключив контроллер, засунуть укол в ....... то получится прям таки "пАнель запуска термоядерных рАкет" :lol:

Posted
search with artmoney this string UPDATE or INTO and you look other possible sql injection's way

 

 

 

Есть контакт =)))... укол №5 тока применение вручную... пределаем своё окошко с командами и немного потерраризируем сервак :)

 

 

 

если всё делать вручную то это всёже можно фиксануть... а вот если отключив контроллер' date=' засунуть укол в ....... то получится прям таки "пАнель запуска термоядерных рАкет" :lol:[/quote']

 

 

 

so you mean sql injection via memory editing, its method №5 right?

 

 

 

(1st post updated)

Guest
This topic is now closed to further replies.

  • Posts

    • I’ve seen tools like Find Person Name by Photo come in handy for creators who want to understand their audience better or spot fake accounts trying to piggyback on their growth. Pairing something like that with a solid SMM panel can make your workflow feel way smoother, especially if you're trying to grow without getting tangled in guesswork.
    • Join our discord: https://www.lineage2.cz/discord  
    • You should buy it then I’ll make a discount  
    • Hi everyone,   In 2014, I completely stepped away from developing L2 servers and doing L2J-related work. Since then, I’ve only opened this server about once a year and helped a few servers and individuals for free. I haven’t taken on any paid L2J work since then.   LINEAGE2.GOLD is a project that has reached about Season 6. The first season launched at the end of 2020 and was a fully rebuilt Gold-style server on the Classic client (protocol 110). It featured many custom systems and enhancements. After several seasons, I decided to abandon the Mobius-based project and move to Lucera, as my goal was to get as close as possible to Interlude PTS behavior while still staying on the L2J platform.   The current project was once again completely rebuilt, this time on the Essence client (protocol 306), and is based on Lucera. Because of that, acquiring a license from Deazer is required.   My Lucera extender includes, but is not limited to: Formulas.java Basic anti-bot detection, which proved quite effective, we caught most Adrenaline users using relatively simple server-side logic, logged them, and took staff action. Simple admin account lookup commands based on IP, HWID, and similar identifiers. In-game Captcha via https://lineage2.gold/code, protected by Cloudflare, including admin commands for blacklisting based on aggression levels and whitelisting. Additional admin tools such as Auto-Play status checks, Enchanted Hero Weapon live sync, force add/remove clans from castle sieges, item listeners for live item monitoring, and more. A fully rewritten Auto-Play system with support for ExAutoPlaySetting, while still using the Auto-Play UI wheel, featuring: Debuff Efficiency Party Leader Assist Respectful Hunting Healer AI Target Mode Range Mode Summoner buff support Dwarf mechanics Reworked EffectDispelEffects to restore buffs after Cancellation. Raid Bomb item support. Reworked CronZoneSwitcher. Prime Time Raid Respawn Service. Community Board features such as Top rankings and RB/Epic status. Custom systems for Noblesse, Subclasses, support-class rewards, and much more.   Depending on the deal, the project can include: The lineage2.gold domain The website built on the Laravel PHP framework The server’s Discord Client Interface source Server files and extender source The server database (excluding private data such as emails and passwords)   I’m primarily looking for a serious team to continue the project, as it would be a shame to see this work abandoned. This is not cheap. You can DM me with offers. If you’re wondering why I’m doing this: I’ve felt a clear lack of appreciation from the L2 community, and I’m not interested in doing charity work for people who don’t deserve it. I’m simply not someone who tolerates BS. Server Info: https://lineage2.gold/info Server for test: https://lineage2.gold/download Over 110 videos YouTube playlist: https://www.youtube.com/watch?v=HO7BZaxUv2U&list=PLD9WZ0Nj-zstZaYeWxAxTKbX7ia2M_DUu&index=113
  • Topics

×
×
  • Create New...

Important Information

This community uses essential cookies to function properly. Non-essential cookies and third-party services are used only with your consent. Read our Privacy Policy and We have placed cookies on your device to help make this website better. You can adjust your cookie settings, otherwise we'll assume you're okay to continue..

AdBlock Extension Detected!

Our website is made possible by displaying online advertisements to our members.

Please disable AdBlock browser extension first, to be able to use our community.

I've Disabled AdBlock