From 382db1b67a7a4a62ea4c51f2ac0676888d0850fc Mon Sep 17 00:00:00 2001 From: Miroslav Stampar Date: Wed, 31 Aug 2011 20:35:57 +0000 Subject: [PATCH] degrading Microsoft Access UNION tests for one level down (it really does take toooooo long to scan a site with no vulnerable parameters and normal level) --- xml/payloads.xml | 28 ++++++++++++++-------------- 1 file changed, 14 insertions(+), 14 deletions(-) diff --git a/xml/payloads.xml b/xml/payloads.xml index 5f2b0c4d9..2bb321cfb 100644 --- a/xml/payloads.xml +++ b/xml/payloads.xml @@ -3436,7 +3436,7 @@ Formats: Generic UNION query with Microsoft Access (%00) comment ([CHAR]) - [COLSTART] to [COLSTOP] columns (custom) 3 - 1 + 2 1 1,2,3,4,5 1 @@ -3455,7 +3455,7 @@ Formats: Generic UNION query with Microsoft Access (%00) comment (NULL) - [COLSTART] to [COLSTOP] columns (custom) 3 - 1 + 2 1 1,2,3,4,5 1 @@ -3474,7 +3474,7 @@ Formats: Generic UNION query with Microsoft Access (%00) comment ([RANDNUM]) - [COLSTART] to [COLSTOP] columns (custom) 3 - 3 + 4 1 1,2,3,4,5 1 @@ -3493,7 +3493,7 @@ Formats: Generic UNION query with Microsoft Access (%00) comment ([CHAR]) - 1 to 10 columns 3 - 1 + 2 1 1,2,3,4,5 1 @@ -3512,7 +3512,7 @@ Formats: Generic UNION query with Microsoft Access (%00) comment (NULL) - 1 to 10 columns 3 - 1 + 2 1 1,2,3,4,5 1 @@ -3531,7 +3531,7 @@ Formats: Generic UNION query with Microsoft Access (%00) comment ([RANDNUM]) - 1 to 10 columns 3 - 3 + 4 1 1,2,3,4,5 1 @@ -3550,7 +3550,7 @@ Formats: Generic UNION query with Microsoft Access (%00) comment ([CHAR]) - 11 to 20 columns 3 - 2 + 3 1 1,2,3,4,5 1 @@ -3569,7 +3569,7 @@ Formats: Generic UNION query with Microsoft Access (%00) comment (NULL) - 11 to 20 columns 3 - 2 + 3 1 1,2,3,4,5 1 @@ -3588,7 +3588,7 @@ Formats: Generic UNION query with Microsoft Access (%00) comment ([RANDNUM]) - 11 to 20 columns 3 - 3 + 4 1 1,2,3,4,5 1 @@ -3607,7 +3607,7 @@ Formats: Generic UNION query with Microsoft Access (%00) comment ([CHAR]) - 21 to 30 columns 3 - 3 + 4 1 1,2,3,4,5 1 @@ -3626,7 +3626,7 @@ Formats: Generic UNION query with Microsoft Access (%00) comment (NULL) - 21 to 30 columns 3 - 3 + 4 1 1,2,3,4,5 1 @@ -3645,7 +3645,7 @@ Formats: Generic UNION query with Microsoft Access (%00) comment ([RANDNUM]) - 21 to 30 columns 3 - 4 + 5 1 1,2,3,4,5 1 @@ -3664,7 +3664,7 @@ Formats: Generic UNION query with Microsoft Access (%00) comment ([CHAR]) - 31 to 40 columns 3 - 4 + 5 1 1,2,3,4,5 1 @@ -3683,7 +3683,7 @@ Formats: Generic UNION query with Microsoft Access (%00) comment (NULL) - 31 to 40 columns 3 - 4 + 5 1 1,2,3,4,5 1