mirror of
https://github.com/sqlmapproject/sqlmap.git
synced 2025-02-16 19:40:37 +03:00
added more test cases
This commit is contained in:
parent
ac77724970
commit
1d64742842
|
@ -7,7 +7,7 @@
|
||||||
<global>
|
<global>
|
||||||
<ignoreProxy value="True"/>
|
<ignoreProxy value="True"/>
|
||||||
<batch value="True"/>
|
<batch value="True"/>
|
||||||
<verbose value="2"/>
|
<verbose value="1"/>
|
||||||
</global>
|
</global>
|
||||||
<!-- Common enumeration switches across all techniques -->
|
<!-- Common enumeration switches across all techniques -->
|
||||||
<case name="MySQL boolean-based multi-threaded enumeration - all entries">
|
<case name="MySQL boolean-based multi-threaded enumeration - all entries">
|
||||||
|
@ -741,7 +741,7 @@
|
||||||
</case>
|
</case>
|
||||||
<!-- End of operating system access switches -->
|
<!-- End of operating system access switches -->
|
||||||
|
|
||||||
<!-- Technique switches -->
|
<!-- Technique switches and corner cases -->
|
||||||
<case name="MySQL 4 time-based against unresponsive page">
|
<case name="MySQL 4 time-based against unresponsive page">
|
||||||
<switches>
|
<switches>
|
||||||
<url value="http://debiandev/sqlmap/mysql/get_int_benchmark.php?id=1"/>
|
<url value="http://debiandev/sqlmap/mysql/get_int_benchmark.php?id=1"/>
|
||||||
|
@ -776,7 +776,6 @@
|
||||||
<item value="MySQL boolean-based blind - WHERE, HAVING, ORDER BY or GROUP BY clause (RLIKE)"/>
|
<item value="MySQL boolean-based blind - WHERE, HAVING, ORDER BY or GROUP BY clause (RLIKE)"/>
|
||||||
</parse>
|
</parse>
|
||||||
</case>
|
</case>
|
||||||
<!-- TODO: this crashes the library that parses XML as it has UTF-8 characters
|
|
||||||
<case name="MySQL boolean-based multi-threaded enumeration - international data">
|
<case name="MySQL boolean-based multi-threaded enumeration - international data">
|
||||||
<switches>
|
<switches>
|
||||||
<url value="http://debiandev/sqlmap/mysql/get_int_international.php?id=1"/>
|
<url value="http://debiandev/sqlmap/mysql/get_int_international.php?id=1"/>
|
||||||
|
@ -792,7 +791,37 @@
|
||||||
<item value="r'Database: testdb.+Table: international.+3 entries.+šućuraj.+река Москва'"/>
|
<item value="r'Database: testdb.+Table: international.+3 entries.+šućuraj.+река Москва'"/>
|
||||||
</parse>
|
</parse>
|
||||||
</case>
|
</case>
|
||||||
-->
|
<case name="MySQL against highly dynamic page">
|
||||||
|
<switches>
|
||||||
|
<url value="http://debiandev/sqlmap/mysql/get_int_rand.php?id=1"/>
|
||||||
|
</switches>
|
||||||
|
<parse>
|
||||||
|
<item value="Title: AND boolean-based blind - WHERE or HAVING clause"/>
|
||||||
|
<item value="Title: MySQL >= 5.0 AND error-based - WHERE or HAVING clause"/>
|
||||||
|
<item value="Title: MySQL UNION query (NULL) - 3 columns"/>
|
||||||
|
<item value="Title: MySQL > 5.0.11 AND time-based blind"/>
|
||||||
|
</parse>
|
||||||
|
</case>
|
||||||
|
<case name="MySQL against a page that returns a 302 redirect page when SQL statement return no output">
|
||||||
|
<switches>
|
||||||
|
<url value="http://debiandev/sqlmap/mysql/get_int_redirected.php?id=1"/>
|
||||||
|
</switches>
|
||||||
|
<parse>
|
||||||
|
<item value="Title: AND boolean-based blind - WHERE or HAVING clause"/>
|
||||||
|
<item value="Title: MySQL >= 5.0 AND error-based - WHERE or HAVING clause"/>
|
||||||
|
<item value="Title: MySQL UNION query (NULL) - 3 columns"/>
|
||||||
|
<item value="Title: MySQL > 5.0.11 AND time-based blind"/>
|
||||||
|
</parse>
|
||||||
|
</case>
|
||||||
|
<case name="MySQL against a page that returns a 302 redirect page when SQL statement returns output">
|
||||||
|
<switches>
|
||||||
|
<url value="http://debiandev/sqlmap/mysql/get_int_redirected_true.php?id=1"/>
|
||||||
|
<tech value="E"/>
|
||||||
|
</switches>
|
||||||
|
<parse>
|
||||||
|
<item value="Title: MySQL >= 5.0 AND error-based - WHERE or HAVING clause"/>
|
||||||
|
</parse>
|
||||||
|
</case>
|
||||||
<case name="MySQL partial UNION query multi-threaded enumeration - invalid bignum">
|
<case name="MySQL partial UNION query multi-threaded enumeration - invalid bignum">
|
||||||
<switches>
|
<switches>
|
||||||
<url value="http://debiandev/sqlmap/mysql/get_int_partialunion.php?id=1"/>
|
<url value="http://debiandev/sqlmap/mysql/get_int_partialunion.php?id=1"/>
|
||||||
|
|
Loading…
Reference in New Issue
Block a user