How do you completely compromise a machine given a text box or badly validated input box? This is a place to talk about code issues (PHP includes, null byte injection, backticks, pipe, etc...) as well as how to properly construct an SQL injection attack.
Strange login form reply
|
1,250 |
7 |
WH |
07/02/2007 03:21PM
Last Post by WH
|
executing xp_cmdshell on login bypass
|
1,533 |
5 |
backbone |
06/30/2007 09:14AM
Last Post by Silentz
|
How to concat a char with a string
|
1,279 |
3 |
backbone |
06/24/2007 11:00AM
Last Post by backbone
|
MSSQL Arithmetic Overflows Exploitable?
|
1,415 |
2 |
clooless |
06/22/2007 05:00AM
Last Post by Martin
|
Database & OS Permissions
|
1,313 |
9 |
d34dl0k1 |
06/20/2007 12:25PM
Last Post by id
|
Algorithm to detect SQL Injection attacks
|
2,613 |
13 |
christ1an |
06/19/2007 05:04PM
Last Post by Jib
|
Mysterious URL
|
1,633 |
4 |
aler2u |
06/18/2007 06:35AM
Last Post by ioheroin
|
syntax error's
|
1,324 |
3 |
cougarhunter |
06/18/2007 06:32AM
Last Post by ioheroin
|
hex code conversion
|
1,772 |
10 |
Reiners |
06/18/2007 03:11AM
Last Post by .mario
|
A lot of Trouble
|
1,333 |
4 |
MonsterLishis |
06/15/2007 05:55PM
Last Post by Anonymous User
|
Strange SQL Responses
|
1,351 |
9 |
clooless |
06/06/2007 05:29AM
Last Post by clooless
|
SQL Charset
|
1,275 |
4 |
CrYpTiC_MauleR |
06/04/2007 08:07PM
Last Post by Anonymous User
|
Sql injection and phpprobid
|
1,573 |
1 |
xdmx |
06/04/2007 02:24PM
Last Post by xdmx
|
What to do with 17 chars?
|
1,436 |
10 |
tx |
05/24/2007 05:03PM
Last Post by Vex
|
MS-SQL w/ no input validation
|
1,591 |
3 |
cougarhunter |
05/21/2007 09:10AM
Last Post by cougarhunter
|
SQL injection with escaped singlequotes
|
1,872 |
13 |
psycop |
05/16/2007 10:59AM
Last Post by psycop
|
sql injection aka quotes
|
1,594 |
8 |
backbone |
05/16/2007 03:10AM
Last Post by backbone
|
Is there a way to not convert spaces to %20?
|
1,613 |
10 |
Spikeman |
05/09/2007 04:11PM
Last Post by celf
|
Exploitable Script?
|
2,370 |
15 |
RedStar |
05/03/2007 03:11PM
Last Post by RedStar
|
php saving forms
|
1,216 |
2 |
MonsterLishis |
05/01/2007 10:26PM
Last Post by CrYpTiC_MauleR
|
javascript injection possible ?
|
1,651 |
11 |
Reiners |
04/29/2007 03:13PM
Last Post by Reiners
|
Steal the Cookies and Run :)
|
1,810 |
15 |
mstampar |
04/25/2007 11:17AM
Last Post by jungsonn
|
My SQL injection wont work
|
2,186 |
19 |
hackathology |
04/23/2007 10:56AM
Last Post by Mephisto
|
Need help
|
1,422 |
4 |
tito |
04/23/2007 06:42AM
Last Post by mstampar
|
Cookie Editor
|
1,191 |
2 |
mstampar |
04/23/2007 02:55AM
Last Post by Ghozt
|
Trying out an SQL Injection Tool
|
1,620 |
6 |
Neo |
04/22/2007 08:27PM
Last Post by Neo
|
Table & Field name found, anymore possible?
|
1,505 |
10 |
aler2u |
04/21/2007 11:11PM
Last Post by aler2u
|
register_globals on but RFI/LFI not possible
|
1,237 |
4 |
takuan |
04/20/2007 08:44PM
Last Post by takuan
|
sort of working
|
1,282 |
2 |
Royal2000H |
04/15/2007 03:58PM
Last Post by Jib
|
Is this site vulnerable?
|
1,513 |
10 |
Jason2gs |
04/14/2007 07:44PM
Last Post by Jason2gs
|