Username: 
Password: 
Restrict session to IP 

Am I on the right track?  Go to the Training: MySQL II challenge

Global Rank: 16825
Totalscore: 52
Posts: 2
Thanks: 0
UpVotes: 0
Registered: 12y 58d
Last Seen: 12y 54d
The User is Offline
Am I on the right track?
Google/translate0Thank You!0Good Post!0Bad Post! link
I used the following injection:

(Please feel free to edit if its revealing.)

But it doesn't seem to work. Am I close with respect to the injection?
Someone please help.


EDIT_BY_MOD: Yes you are close .... what happens with your input? read the source?
Last edited by gizmore - Oct 04, 2012 - 21:05:36
Global Rank: 16825
Totalscore: 52
Posts: 2
Thanks: 0
UpVotes: 0
Registered: 12y 58d
Last Seen: 12y 54d
The User is Offline
RE: Am I on the right track?
Google/translate0Thank You!0Good Post!0Bad Post! link
Thanks for replying.
Well, when I inject the query, I get the GDO Error (1064). I even tried the variations of the injection using * wildcard and also UNION, but failed.
And yes, I went through the source but it is way too hard to figure out the weakness in it since I am an absolute beginner.
I am looking for tutorials on the web though.
I'll keep trying.
But any further help or hint would be greatly appreciated considering me an absolute beginner.
Thank you.
Last edited by cat - Oct 05, 2012 - 16:38:51
cat, tunelko, Redknee, silenttrack, n0tHappy, nonfungiblesecurity, quangntenemy, TheHiveMind, Z, balicocat, Ge0, samuraiblanco, arraez, jcquinterov, hophuocthinh, alfamen2, burhanudinn123, Ben_Dover, stephanduran89, braddie0, SwolloW, dangarbri, csuquvq have subscribed to this thread and receive emails on new posts.
1 people are watching the thread at the moment.
This thread has been viewed 11807 times.