god damn it.  OR 1 = 0.  what a dumbass!

Duncan Cumming
IT Manager

http://www.alienationdesign.co.uk
mailto:[EMAIL PROTECTED]
Tel: 0141 575 9700
Fax: 0141 575 9600

Creative solutions in a technical world

----------------------------------------------------------------------
Get your domain names online from:
http://www.alienationdomains.co.uk
Reseller options available!
----------------------------------------------------------------------
----------------------------------------------------------------------


                                                                                       
                                          
                    [EMAIL PROTECTED]                                                  
                                
                    sign.co.uk                         To:     <[EMAIL PROTECTED]>     
                                
                                                       cc:                             
                                          
                    02/04/2003 11:33                   Subject:     Re: [ cf-dev ] 
Kinda Hacking but ...                         
                    Please respond to dev                                              
                                          
                                                                                       
                                          
                                                                                       
                                          




can't seem to get the SQL injection right.  Thought this might do it:
http://www.dfes.gov.uk/leagateway/index.cfm?action=address.list&name=2%20OR%201=0


but it looks like they've got a maxrows=1 on their output.

this page also looks like it could have been useful, but they might be
doing an alphanumeric check on it before doing the query:
http://www.dfes.gov.uk/leagateway/index.cfm?action=address.az&alpha=Y

if you want to see their query, just put some invalid into the url like:
http://www.dfes.gov.uk/leagateway/index.cfm?action=address.list&name=2a


Duncan Cumming
IT Manager

http://www.alienationdesign.co.uk
mailto:[EMAIL PROTECTED]
Tel: 0141 575 9700
Fax: 0141 575 9600

Creative solutions in a technical world

----------------------------------------------------------------------
Get your domain names online from:
http://www.alienationdomains.co.uk
Reseller options available!
----------------------------------------------------------------------
----------------------------------------------------------------------




                    [EMAIL PROTECTED]

                    ham.gov.uk                     To:
[EMAIL PROTECTED]
                                                   cc:

                    02/04/2003 11:17               Subject:     [ cf-dev ]
Kinda Hacking but ...
                    Please respond to dev






This maybe kinda hacking but I wonder if anyone can help me out on this one
....

I need a list of all the DfES LEA's in the country. (Local Education
Authority)

The DFES website allows you to show them all in a-z format and then click
on each to get the details. Is there a fast way that I can send a query or
force their code to show them all in one go (Select * from) .

The address is
http://www.dfes.gov.uk/leagateway/index.cfm?action=address.list

I really don't want to cut & paste everyone if I can help it ....   :-(

Regads - Paul




*************************************************************
This email and any files transmitted with it are confidential
and intended solely for the use of the individual or entity
to whom they are addressed. If you have received this email
in error please notify [EMAIL PROTECTED]

The views expressed within this email are those of the
individual, and not necessarily those of the organisation
*************************************************************


--
** Archive: http://www.mail-archive.com/dev%40lists.cfdeveloper.co.uk/

To unsubscribe, e-mail: [EMAIL PROTECTED]
For additional commands, e-mail: [EMAIL PROTECTED]
For human help, e-mail: [EMAIL PROTECTED]






--
** Archive: http://www.mail-archive.com/dev%40lists.cfdeveloper.co.uk/

To unsubscribe, e-mail: [EMAIL PROTECTED]
For additional commands, e-mail: [EMAIL PROTECTED]
For human help, e-mail: [EMAIL PROTECTED]






-- 
** Archive: http://www.mail-archive.com/dev%40lists.cfdeveloper.co.uk/

To unsubscribe, e-mail: [EMAIL PROTECTED]
For additional commands, e-mail: [EMAIL PROTECTED]
For human help, e-mail: [EMAIL PROTECTED]

Reply via email to