hacking contest

hacking exploits security forum
hacking
compliance articles
upgrade backup exec
information security consultant

Full Version: Mysql
koko
hi !

i would like to know if an exploit for MYSQL exist, cause i scan and find some accounts like : root/[null]

Thx !
VincentVega
hxxp://www.securityfocus.com/bid/7052/info/

hxxp://www.webhostingtalk.nl/showthread.php?s=&threadid=23988&highlight=mysql

Greetz VV
gordan wells
with wot prog u scan for mysql?
koko
hscan
koko
Thx VincentVega, but for NT (cause server version is NT), what can i use ?
Do u have an exploit ?
r00l
You don't need an exploit for mysql with account root/[null]

you need MYSQL client.cuz this kind of password means that you can log in with root accoung without pass.
koko
and where i can find this MYSQL client.cuz ? huh.gif
flap
"MYSQL client.cuz " whahahahahahhahahahaha!!!!!!!!!!! laugh.gif laugh.gif laugh.gif laugh.gif

get isqlw works fine
shaun2k2
I don't understand why you cannot find a MySQL exploit yourself. You can usually find full information and advisories on any vulnerabilities that might exist in the package at securityfocus.

www.securityfocus.com

Most exploit programs are written for UNIX-like OSes, and I *don't* understand why you want a "scanner" to mass-scan for hosts vulnerable to a vulnerability. This is pure lameness, you shouldn't pick a random target...

Read the sticky at the top of this forum, it states that lame questions shouldn't be asked, try to ask in a more mature or professional way. Get my point?

http://www.securiteam.com/tools/6Y00L0U5PC.html
http://www.securiteam.com/securitynews/5GP0K0A81Y.html
http://www.securiteam.com/exploits/5OP0G2A8UG.html
http://www.securiteam.com/unixfocus/6J00L1P00Q.html
http://www.securiteam.com/unixfocus/6T00E0K6AI.html
http://www.securiteam.com/unixfocus/5QP0C000BM.html
http://www.securiteam.com/exploits/5MP032K0KK.html

See? Search brings the best results.


Thank you for your time.
Shaun.
gogu258
Script kidd dream....shell with just one click. biggrin.gif
vnet576
QUOTE (gogu258 @ Sep 11 2003, 02:25 AM)
Script kidd dream....shell with just one click. biggrin.gif

it was called dcom. wink.gif
This is a "lo-fi" version of our main content. To view the full version with more information, formatting and images, please click here.

 
Invision Power Board © 2001-2005 Invision Power Services, Inc.