aspx

2 articles
sort: new top best
clear filter
0 8/10

A detailed writeup demonstrating how to convert a blind error-based SQL injection vulnerability on MSSQL into an exploitable boolean-based injection using the IIF() function combined with type conversion, enabling data exfiltration through character enumeration attacks despite a 100-character payload limitation.

Ozgur Alp Synack Burp Intruder SQLMap SQLFiddle MSSQL IIS
ozguralp.medium.com · kh4sh3i/bug-bounty-writeups · 4 hours ago · details
0 6/10

SQL injection vulnerability discovered in a forget password function via time-based exploitation. The author enumerated the backend technology (ASP.NET/MSSQL), broke the SQL query with single quotes, injected a WAITFOR DELAY payload to confirm the vulnerability, and used SQLMap to automate database extraction.

SQLMap Burp Suite ASP.NET MSSQL khaled gaber
medium.com · devanshbatham/Awesome-Bugbounty-Writeups · 4 hours ago · details