|
37 | 37 | <parse> |
38 | 38 | <item value="Title: AND boolean-based blind - WHERE or HAVING clause"/> |
39 | 39 | <item value="r'back-end DBMS: active fingerprint: MySQL >= 5.1.12 and < 5.5.0'"/> |
40 | | - <item value="banner: '5.1.63-0+squeeze1'"/> |
| 40 | + <item value="banner: '5.1.66-0+squeeze1'"/> |
41 | 41 | <item value="current user: 'root@localhost'"/> |
42 | 42 | <item value="current database: 'testdb'"/> |
43 | 43 | <item value="hostname: 'debian"/> |
|
80 | 80 | <parse> |
81 | 81 | <item value="Title: MySQL >= 5.0 AND error-based - WHERE or HAVING clause"/> |
82 | 82 | <item value="r'back-end DBMS: active fingerprint: MySQL >= 5.1.12 and < 5.5.0'"/> |
83 | | - <item value="banner: '5.1.63-0+squeeze1'"/> |
| 83 | + <item value="banner: '5.1.66-0+squeeze1'"/> |
84 | 84 | <item value="current user: 'root@localhost'"/> |
85 | 85 | <item value="current database: 'testdb'"/> |
86 | 86 | <item value="hostname: 'debian"/> |
|
123 | 123 | <parse> |
124 | 124 | <item value="Title: MySQL UNION query (NULL) - 3 columns"/> |
125 | 125 | <item value="r'back-end DBMS: active fingerprint: MySQL >= 5.1.12 and < 5.5.0'"/> |
126 | | - <item value="banner: '5.1.63-0+squeeze1'"/> |
| 126 | + <item value="banner: '5.1.66-0+squeeze1'"/> |
127 | 127 | <item value="current user: 'root@localhost'"/> |
128 | 128 | <item value="current database: 'testdb'"/> |
129 | 129 | <item value="hostname: 'debian"/> |
|
166 | 166 | <parse> |
167 | 167 | <item value="Title: MySQL UNION query (NULL) - 3 columns"/> |
168 | 168 | <item value="r'back-end DBMS: active fingerprint: MySQL >= 5.1.12 and < 5.5.0'"/> |
169 | | - <item value="banner: '5.1.63-0+squeeze1'"/> |
| 169 | + <item value="banner: '5.1.66-0+squeeze1'"/> |
170 | 170 | <item value="current user: 'root@localhost'"/> |
171 | 171 | <item value="current database: 'testdb'"/> |
172 | 172 | <item value="hostname: 'debian"/> |
|
192 | 192 | </switches> |
193 | 193 | <parse> |
194 | 194 | <item value="Title: MySQL > 5.0.11 AND time-based blind"/> |
195 | | - <item value="banner: '5.1.63-0+squeeze1'"/> |
| 195 | + <item value="banner: '5.1.66-0+squeeze1'"/> |
196 | 196 | <item value="current user is DBA: True"/> |
197 | 197 | </parse> |
198 | 198 | </case> |
|
223 | 223 | <parse> |
224 | 224 | <item value="Title: MySQL inline queries"/> |
225 | 225 | <item value="r'back-end DBMS: active fingerprint: MySQL >= 5.1.12 and < 5.5.0'"/> |
226 | | - <item value="banner: '5.1.63-0+squeeze1'"/> |
| 226 | + <item value="banner: '5.1.66-0+squeeze1'"/> |
227 | 227 | <item value="current user: 'root@localhost'"/> |
228 | 228 | <item value="current database: 'testdb'"/> |
229 | 229 | <item value="hostname: 'debian"/> |
|
702 | 702 | </case> |
703 | 703 | <case name="MySQL UNION query multi-threaded file write"> |
704 | 704 | <switches> |
| 705 | + <verbose value="2"/> |
705 | 706 | <url value="http://debiandev/sqlmap/mysql/get_int.php?id=1"/> |
706 | 707 | <threads value="4"/> |
707 | 708 | <tech value="U"/> |
|
756 | 757 | <item value="Title: MySQL < 5.0.12 AND time-based blind (heavy query)"/> |
757 | 758 | </parse> |
758 | 759 | </case> |
| 760 | + <case name="MySQL OR boolean-base multi-threaded enumeration"> |
| 761 | + <switches> |
| 762 | + <url value="http://debiandev/sqlmap/mysql/get_int.php?id=1"/> |
| 763 | + <threads value="4"/> |
| 764 | + <tech value="B"/> |
| 765 | + <testFilter value="OR boolean"/> |
| 766 | + <getBanner value="True"/> |
| 767 | + <isDba value="True"/> |
| 768 | + </switches> |
| 769 | + <parse> |
| 770 | + <item value="Title: OR boolean-based blind - WHERE or HAVING clause"/> |
| 771 | + <item value="banner: '5.1.66-0+squeeze1'"/> |
| 772 | + <item value="current user is DBA: True"/> |
| 773 | + </parse> |
| 774 | + </case> |
759 | 775 | <case name="MySQL against page protected by custom weak filter"> |
760 | 776 | <switches> |
761 | 777 | <url value="http://debiandev/sqlmap/mysql/get_int_filtered.php?id=1"/> |
|
788 | 804 | <tbl value="international"/> |
789 | 805 | </switches> |
790 | 806 | <parse> |
791 | | - <item value="banner: '5.1.63-0+squeeze1'"/> |
| 807 | + <item value="banner: '5.1.66-0+squeeze1'"/> |
792 | 808 | <item value="r'Database: testdb.+Table: international.+3 entries.+šućuraj.+река Москва'"/> |
793 | 809 | </parse> |
794 | 810 | </case> |
|
846 | 862 | <parse> |
847 | 863 | <item value="Title: MySQL UNION query (NULL) - 3 columns"/> |
848 | 864 | <item value="r'Payload: id=[\d]+\.[\d]+ UNION'"/> |
849 | | - <item value="banner: '5.1.63-0+squeeze1'"/> |
| 865 | + <item value="banner: '5.1.66-0+squeeze1'"/> |
850 | 866 | <item value="current user is DBA: True"/> |
851 | 867 | </parse> |
852 | 868 | </case> |
|
861 | 877 | <parse> |
862 | 878 | <item value="Title: MySQL UNION query (NULL) - 3 columns"/> |
863 | 879 | <item value="r'Payload: id=1 AND [\d]+=[\d]+ UNION'"/> |
864 | | - <item value="banner: '5.1.63-0+squeeze1'"/> |
| 880 | + <item value="banner: '5.1.66-0+squeeze1'"/> |
865 | 881 | <item value="current user is DBA: True"/> |
866 | 882 | </parse> |
867 | 883 | </case> |
|
877 | 893 | <getBanner value="True"/> |
878 | 894 | </switches> |
879 | 895 | <parse> |
880 | | - <item value="banner: '5.1.63-0+squeeze1'"/> |
| 896 | + <item value="banner: '5.1.66-0+squeeze1'"/> |
881 | 897 | </parse> |
882 | 898 | </case> |
883 | 899 | <case name="MySQL error-based HTTP digest authentication"> |
|
889 | 905 | <getBanner value="True"/> |
890 | 906 | </switches> |
891 | 907 | <parse> |
892 | | - <item value="banner: '5.1.63-0+squeeze1'"/> |
| 908 | + <item value="banner: '5.1.66-0+squeeze1'"/> |
893 | 909 | </parse> |
894 | 910 | </case> |
895 | 911 | <case name="MySQL boolean-based predict output enumeration"> |
896 | 912 | <switches> |
| 913 | + <verbose value="2"/> |
897 | 914 | <url value="http://debiandev/sqlmap/mysql/get_int.php?id=1"/> |
898 | 915 | <predictOutput value="True"/> |
899 | 916 | <tech value="B"/> |
900 | 917 | <getBanner value="True"/> |
901 | | - <verbose value="2"/> |
902 | 918 | </switches> |
903 | 919 | <parse> |
904 | | - <item value="banner: '5.1.63-0+squeeze1'"/> |
| 920 | + <item value="banner: '5.1.66-0+squeeze1'"/> |
905 | 921 | <item value="r'performed 112 queries'" console_output="True"/> |
906 | 922 | </parse> |
907 | 923 | </case> |
908 | 924 | <!-- End of other switches --> |
909 | | - |
910 | 925 | </root> |
0 commit comments