File tree Expand file tree Collapse file tree 1 file changed +53
-0
lines changed Expand file tree Collapse file tree 1 file changed +53
-0
lines changed Original file line number Diff line number Diff line change @@ -186,6 +186,22 @@ Tag: <test>
186
186
</response >
187
187
</test >
188
188
189
+ <test >
190
+ <title >OR boolean-based blind - WHERE or HAVING clause (NOT)</title >
191
+ <stype >1</stype >
192
+ <level >3</level >
193
+ <risk >3</risk >
194
+ <clause >1</clause >
195
+ <where >1</where >
196
+ <vector >OR NOT [INFERENCE]</vector >
197
+ <request >
198
+ <payload >OR NOT [RANDNUM]=[RANDNUM]</payload >
199
+ </request >
200
+ <response >
201
+ <comparison >OR NOT [RANDNUM]=[RANDNUM1]</comparison >
202
+ </response >
203
+ </test >
204
+
189
205
<test >
190
206
<title >AND boolean-based blind - WHERE or HAVING clause (Generic comment)</title >
191
207
<stype >1</stype >
@@ -220,6 +236,23 @@ Tag: <test>
220
236
</response >
221
237
</test >
222
238
239
+ <test >
240
+ <title >OR boolean-based blind - WHERE or HAVING clause (Generic comment) (NOT)</title >
241
+ <stype >1</stype >
242
+ <level >4</level >
243
+ <risk >3</risk >
244
+ <clause >1</clause >
245
+ <where >1</where >
246
+ <vector >OR NOT [INFERENCE]</vector >
247
+ <request >
248
+ <payload >OR NOT [RANDNUM]=[RANDNUM]</payload >
249
+ <comment >-- -</comment >
250
+ </request >
251
+ <response >
252
+ <comparison >OR NOT [RANDNUM]=[RANDNUM1]</comparison >
253
+ </response >
254
+ </test >
255
+
223
256
<test >
224
257
<title >AND boolean-based blind - WHERE or HAVING clause (MySQL comment)</title >
225
258
<stype >1</stype >
@@ -260,6 +293,26 @@ Tag: <test>
260
293
</details >
261
294
</test >
262
295
296
+ <test >
297
+ <title >OR boolean-based blind - WHERE or HAVING clause (MySQL comment) (NOT)</title >
298
+ <stype >1</stype >
299
+ <level >3</level >
300
+ <risk >3</risk >
301
+ <clause >1</clause >
302
+ <where >1</where >
303
+ <vector >OR NOT [INFERENCE]</vector >
304
+ <request >
305
+ <payload >OR NOT [RANDNUM]=[RANDNUM]</payload >
306
+ <comment >#</comment >
307
+ </request >
308
+ <response >
309
+ <comparison >OR NOT [RANDNUM]=[RANDNUM1]</comparison >
310
+ </response >
311
+ <details >
312
+ <dbms >MySQL</dbms >
313
+ </details >
314
+ </test >
315
+
263
316
<test >
264
317
<title >AND boolean-based blind - WHERE or HAVING clause (Microsoft Access comment)</title >
265
318
<stype >1</stype >
You can’t perform that action at this time.
0 commit comments