order-by-enumeration

2 articles
sort: new top best
clear filter
0 5/10

A bug bounty writeup detailing discovery and exploitation of a Union-based SQL injection vulnerability in a user activation endpoint, achieved by parameter tampering and ORDER BY column enumeration to extract database information.

Rafi Andhika Galuh Burpsuite
rafipiun.medium.com · kh4sh3i/bug-bounty-writeups · 18 hours ago · details
0 6/10

A researcher discovered and exploited a SQL injection vulnerability in the University of Cambridge's Fitzwilliam Museum search functionality, demonstrating column enumeration via ORDER BY, UNION SELECT attacks, and successful extraction of database version, user credentials, and database name.

University of Cambridge Adesh Kolte Fitzwilliam Museum MySQL 5.1.39
medium.com · devanshbatham/Awesome-Bugbounty-Writeups · 18 hours ago · details