injection-vector

1 article
sort: new top best
clear filter
0 6/10

A walkthrough of exploiting a boolean-based SQL injection vulnerability via the User-Agent HTTP header to enumerate database version, table names, and columns, culminating in credential extraction from a MariaDB 10.1.21 instance.

MariaDB MySQL Oracle MicrosoftSQL fr0stNuLL
medium.com · devanshbatham/Awesome-Bugbounty-Writeups · 4 hours ago · details