From 0764c4c752e7ae76401626787f6262cb44b488f3 Mon Sep 17 00:00:00 2001 From: Miroslav Stampar Date: Thu, 21 Apr 2011 23:32:53 +0000 Subject: [PATCH] parenthesis were missing; banning OR NOT from payloads --- xml/payloads.xml | 71 ++++++------------------------------------------ 1 file changed, 9 insertions(+), 62 deletions(-) diff --git a/xml/payloads.xml b/xml/payloads.xml index 1f5575973..9b42f2a6f 100644 --- a/xml/payloads.xml +++ b/xml/payloads.xml @@ -503,22 +503,6 @@ Formats: - - OR NOT boolean-based blind - WHERE or HAVING clause - 1 - 2 - 3 - 1 - 2 - OR NOT [INFERENCE] - - OR NOT [RANDNUM]=[RANDNUM] - - - OR NOT [RANDNUM]=[RANDNUM1] - - - OR boolean-based blind - WHERE or HAVING clause 1 @@ -526,35 +510,15 @@ Formats: 3 1 2 - OR [INFERENCE] + OR NOT ([INFERENCE]) - OR [RANDNUM]=[RANDNUM] + OR NOT ([RANDNUM]=[RANDNUM]) - OR [RANDNUM]=[RANDNUM1] + OR NOT ([RANDNUM]=[RANDNUM1]) - - OR NOT boolean-based blind - WHERE or HAVING clause (MySQL comment) - 1 - 3 - 3 - 1 - 2 - OR NOT [INFERENCE] - - OR NOT [RANDNUM]=[RANDNUM] - # - - - OR NOT [RANDNUM]=[RANDNUM1] - -
- MySQL -
-
- OR boolean-based blind - WHERE or HAVING clause (MySQL comment) 1 @@ -562,36 +526,19 @@ Formats: 3 1 2 - OR [INFERENCE] + OR NOT ([INFERENCE]) - OR [RANDNUM]=[RANDNUM] + OR NOT ([RANDNUM]=[RANDNUM]) # - OR [RANDNUM]=[RANDNUM1] + OR NOT ([RANDNUM]=[RANDNUM1])
MySQL
- - OR NOT boolean-based blind - WHERE or HAVING clause (Generic comment) - 1 - 3 - 3 - 1 - 2 - OR NOT [INFERENCE] - - OR NOT [RANDNUM]=[RANDNUM] - -- - - - OR NOT [RANDNUM]=[RANDNUM1] - - - OR boolean-based blind - WHERE or HAVING clause (Generic comment) 1 @@ -599,13 +546,13 @@ Formats: 3 1 2 - OR [INFERENCE] + OR NOT ([INFERENCE]) - OR [RANDNUM]=[RANDNUM] + OR NOT ([RANDNUM]=[RANDNUM]) -- - OR [RANDNUM]=[RANDNUM1] + OR NOT ([RANDNUM]=[RANDNUM1])