The Web Application Hacker’s Handbook Discovering and Exploiting Security Flaws



Download 5,76 Mb.
Pdf ko'rish
bet516/875
Sana01.01.2022
Hajmi5,76 Mb.
#293004
1   ...   512   513   514   515   516   517   518   519   ...   875
Bog'liq
3794 1008 4334

294

Chapter 9 



Injecting Code

70779c09.qxd:WileyRed  9/14/07  3:13 PM  Page 294



Oracle:

ORA-00907: missing right parenthesis

MS-SQL:

N/A


MySQL:

You have an error in your SQL syntax.  Check

the manual that corresponds to your MySQL

server version for the right syntax to use

near ‘’ at line 1

Translation:

Your SQL injection attempt has worked, but the injection point

was inside parentheses ( ). You probably commented out the

closing parenthesis with injected comment characters 

--

.



Oracle:

ORA-00900: invalid SQL statement

MS-SQL:

Msg 170, Level 15, State 1, Line 1

Line 1: Incorrect syntax near foo

MySQL:


You have an error in your SQL syntax.  Check

the manual that corresponds to your MySQL

server version for the right syntax to use

near XXXXXX

Translation:

A general error message. The error messages listed previously

all take precedence, so something else went wrong. It’s likely

you can try alternative input and get a more meaningful

message.

Oracle:


ORA-03001: unimplemented feature

MS-SQL:


N/A

MySQL:


N/A

Translation:

You have tried to perform an action that Oracle does not

allow. This can happen if you were trying to display the

database version string from 

v$version

but you were in an

UPDATE


or 

INSERT


query.

Oracle:


ORA-02030: can only select from fixed

tables/views

MS-SQL:

N/A


MySQL:

N/A


Translation:

You were probably trying to edit a 

SYSTEM

view. This can



happen if you were trying to display the database version

string from 

v$version

but you were in an 

UPDATE

or

INSERT



query


Download 5,76 Mb.

Do'stlaringiz bilan baham:
1   ...   512   513   514   515   516   517   518   519   ...   875




Ma'lumotlar bazasi mualliflik huquqi bilan himoyalangan ©hozir.org 2024
ma'muriyatiga murojaat qiling

kiriting | ro'yxatdan o'tish
    Bosh sahifa
юртда тантана
Боғда битган
Бугун юртда
Эшитганлар жилманглар
Эшитмадим деманглар
битган бодомлар
Yangiariq tumani
qitish marakazi
Raqamli texnologiyalar
ilishida muhokamadan
tasdiqqa tavsiya
tavsiya etilgan
iqtisodiyot kafedrasi
steiermarkischen landesregierung
asarlaringizni yuboring
o'zingizning asarlaringizni
Iltimos faqat
faqat o'zingizning
steierm rkischen
landesregierung fachabteilung
rkischen landesregierung
hamshira loyihasi
loyihasi mavsum
faolyatining oqibatlari
asosiy adabiyotlar
fakulteti ahborot
ahborot havfsizligi
havfsizligi kafedrasi
fanidan bo’yicha
fakulteti iqtisodiyot
boshqaruv fakulteti
chiqarishda boshqaruv
ishlab chiqarishda
iqtisodiyot fakultet
multiservis tarmoqlari
fanidan asosiy
Uzbek fanidan
mavzulari potok
asosidagi multiservis
'aliyyil a'ziym
billahil 'aliyyil
illaa billahil
quvvata illaa
falah' deganida
Kompyuter savodxonligi
bo’yicha mustaqil
'alal falah'
Hayya 'alal
'alas soloh
Hayya 'alas
mavsum boyicha


yuklab olish