Thanks to visit codestin.com
Credit goes to github.com

Skip to content

Commit d70f4b7

Browse files
committed
adding hex conversion functions to queries.xml for 4 major DBMSes
1 parent 3e4db6d commit d70f4b7

1 file changed

Lines changed: 4 additions & 0 deletions

File tree

xml/queries.xml

Lines changed: 4 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -24,6 +24,7 @@
2424
<timedelay query="SELECT SLEEP(%d)" query2="SELECT BENCHMARK(5000000,MD5('%d'))"/>
2525
<substring query="MID((%s),%d,%d)"/>
2626
<case query="SELECT (CASE WHEN (%s) THEN 1 ELSE 0 END)"/>
27+
<hex query="HEX(%s)"/>
2728
<inference query="ORD(MID((%s),%d,1)) > %d"/>
2829
<banner query="VERSION()"/>
2930
<current_user query="CURRENT_USER()"/>
@@ -96,6 +97,7 @@
9697
<timedelay query="SELECT PG_SLEEP(%d)" query2="SELECT 'sqlmap' WHERE exists(SELECT * FROM generate_series(1,300000%d))" query3="CREATE OR REPLACE FUNCTION sleep(int) RETURNS int AS '/lib/libc.so.6','sleep' language 'C' STRICT; SELECT sleep(%d)"/>
9798
<substring query="SUBSTR((%s)::text,%d,%d)"/>
9899
<case query="SELECT (CASE WHEN (%s) THEN '1' ELSE '0' END)"/>
100+
<hex query="ENCODE(%s,HEX)"/>
99101
<inference query="ASCII(SUBSTR((%s)::text,%d,1)) > %d"/>
100102
<banner query="VERSION()"/>
101103
<current_user query="CURRENT_USER"/>
@@ -162,6 +164,7 @@
162164
<timedelay query="WAITFOR DELAY '0:0:%d'"/>
163165
<substring query="SUBSTRING((%s),%d,%d)"/>
164166
<case query="SELECT (CASE WHEN (%s) THEN '1' ELSE '0' END)"/>
167+
<hex query="master.sys.fn_varbintohexstr(CAST(%s AS VARBINARY))"/>
165168
<inference query="UNICODE(SUBSTRING((%s),%d,1)) > %d"/>
166169
<banner query="SELECT @@VERSION"/>
167170
<current_user query="SELECT SYSTEM_USER"/>
@@ -226,6 +229,7 @@
226229
<timedelay query="BEGIN DBMS_LOCK.SLEEP(%d); END" query2="EXEC DBMS_LOCK.SLEEP(%d.00)" query3="EXEC USER_LOCK.SLEEP(%d.00)"/>
227230
<substring query="SUBSTRC((%s),%d,%d)"/>
228231
<case query="SELECT (CASE WHEN (%s) THEN 1 ELSE 0 END)"/>
232+
<hex query="RAWTOHEX(%s)"/>
229233
<inference query="ASCII(SUBSTRC((%s),%d,1)) > %d"/>
230234
<banner query="SELECT banner FROM v$version WHERE ROWNUM=1"/>
231235
<current_user query="SELECT USER FROM DUAL"/>

0 commit comments

Comments
 (0)