Skip to content

Commit

Permalink
Update libinjection code (#1918)
Browse files Browse the repository at this point in the history
Update libinjection code to the current master libinjection/libinjection@7e4b74e

The goal is to finally fix #1820
See: libinjection/libinjection#33

Update the corpus of the libinjection fuzzers

Close #1820
  • Loading branch information
IvanNardi authored Apr 4, 2023
1 parent 4d11941 commit d766237
Show file tree
Hide file tree
Showing 497 changed files with 550 additions and 87 deletions.
1 change: 1 addition & 0 deletions fuzz/corpus/fuzz_libinjection/0
Original file line number Diff line number Diff line change
@@ -0,0 +1 @@
SELECT "first" "second";
Binary file not shown.
1 change: 1 addition & 0 deletions fuzz/corpus/fuzz_libinjection/1
Original file line number Diff line number Diff line change
@@ -0,0 +1 @@
- SELECT 1;
2 changes: 1 addition & 1 deletion fuzz/corpus/fuzz_libinjection/10
Original file line number Diff line number Diff line change
@@ -1 +1 @@
205.174.165.68/dv/vulnerabilities/sqli/?id=1%27+and+1%3D1%23&Submit=Submit
123; /* junk */
1 change: 1 addition & 0 deletions fuzz/corpus/fuzz_libinjection/100
Original file line number Diff line number Diff line change
@@ -0,0 +1 @@
SELECT . `foo`
1 change: 1 addition & 0 deletions fuzz/corpus/fuzz_libinjection/101
Original file line number Diff line number Diff line change
@@ -0,0 +1 @@
SELECT AAAAAAAAAABBBBBBBBBBCCCCCCCCCC AAAAAAAAAABBBBBBBBBBCCCCCCCCCC
1 change: 1 addition & 0 deletions fuzz/corpus/fuzz_libinjection/102
Original file line number Diff line number Diff line change
@@ -0,0 +1 @@
SELECT AAAAAAAAAABBBBBBBBBBCCCCCCCCCC AAAAAAAAAABBBBBBBBBBCCCCCCCCCC
1 change: 1 addition & 0 deletions fuzz/corpus/fuzz_libinjection/103
Original file line number Diff line number Diff line change
@@ -0,0 +1 @@
1 - (1 - 1)
1 change: 1 addition & 0 deletions fuzz/corpus/fuzz_libinjection/104
Original file line number Diff line number Diff line change
@@ -0,0 +1 @@
1 - (1 - 1) + 2
1 change: 1 addition & 0 deletions fuzz/corpus/fuzz_libinjection/105
Original file line number Diff line number Diff line change
@@ -0,0 +1 @@
1 - (1 - 1) --
1 change: 1 addition & 0 deletions fuzz/corpus/fuzz_libinjection/106
Original file line number Diff line number Diff line change
@@ -0,0 +1 @@
1-(1-1)-2 --
1 change: 1 addition & 0 deletions fuzz/corpus/fuzz_libinjection/107
Original file line number Diff line number Diff line change
@@ -0,0 +1 @@
SELECT (BINARY BINARY 1);
1 change: 1 addition & 0 deletions fuzz/corpus/fuzz_libinjection/108
Original file line number Diff line number Diff line change
@@ -0,0 +1 @@
1 - binary ( 2 )
1 change: 1 addition & 0 deletions fuzz/corpus/fuzz_libinjection/109
Original file line number Diff line number Diff line change
@@ -0,0 +1 @@
1 - binary binary 2
2 changes: 1 addition & 1 deletion fuzz/corpus/fuzz_libinjection/11
Original file line number Diff line number Diff line change
@@ -1 +1 @@
92.168.3.107/DVWA-master/vulnerabilities/sqli/?id=%3Fid%3Da%27+UNION+SELECT+%22text1%22%2C%22text2%22%3B--+-%26Submit%3DSubmit&Submit=Submit
-1
1 change: 1 addition & 0 deletions fuzz/corpus/fuzz_libinjection/110
Original file line number Diff line number Diff line change
@@ -0,0 +1 @@
1 - binary binary (2)
1 change: 1 addition & 0 deletions fuzz/corpus/fuzz_libinjection/111
Original file line number Diff line number Diff line change
@@ -0,0 +1 @@
1 - (binary binary (2))
1 change: 1 addition & 0 deletions fuzz/corpus/fuzz_libinjection/112
Original file line number Diff line number Diff line change
@@ -0,0 +1 @@
SELECT LIKE("foo","bar")
1 change: 1 addition & 0 deletions fuzz/corpus/fuzz_libinjection/113
Original file line number Diff line number Diff line change
@@ -0,0 +1 @@
SELECT NOT LIKE("foo","bar")
1 change: 1 addition & 0 deletions fuzz/corpus/fuzz_libinjection/114
Original file line number Diff line number Diff line change
@@ -0,0 +1 @@
{``.``.id} UNION SELECT TABLE
1 change: 1 addition & 0 deletions fuzz/corpus/fuzz_libinjection/115
Original file line number Diff line number Diff line change
@@ -0,0 +1 @@
1 USER(1)
1 change: 1 addition & 0 deletions fuzz/corpus/fuzz_libinjection/116
Original file line number Diff line number Diff line change
@@ -0,0 +1 @@
1 USER()
1 change: 1 addition & 0 deletions fuzz/corpus/fuzz_libinjection/117
Original file line number Diff line number Diff line change
@@ -0,0 +1 @@
; if not((select serverproperty('isintegratedsecurityonly'))
1 change: 1 addition & 0 deletions fuzz/corpus/fuzz_libinjection/118
Original file line number Diff line number Diff line change
@@ -0,0 +1 @@
foo
1 change: 1 addition & 0 deletions fuzz/corpus/fuzz_libinjection/119
Original file line number Diff line number Diff line change
@@ -0,0 +1 @@
"foo"
1 change: 1 addition & 0 deletions fuzz/corpus/fuzz_libinjection/12
Original file line number Diff line number Diff line change
@@ -0,0 +1 @@
1+-1
1 change: 1 addition & 0 deletions fuzz/corpus/fuzz_libinjection/120
Original file line number Diff line number Diff line change
@@ -0,0 +1 @@
--EXPECTED--
1 change: 1 addition & 0 deletions fuzz/corpus/fuzz_libinjection/121
Original file line number Diff line number Diff line change
@@ -0,0 +1 @@
aa<foo>bb
1 change: 1 addition & 0 deletions fuzz/corpus/fuzz_libinjection/122
Original file line number Diff line number Diff line change
@@ -0,0 +1 @@
aa<foo>
1 change: 1 addition & 0 deletions fuzz/corpus/fuzz_libinjection/123
Original file line number Diff line number Diff line change
@@ -0,0 +1 @@
<foo>bb
1 change: 1 addition & 0 deletions fuzz/corpus/fuzz_libinjection/124
Original file line number Diff line number Diff line change
@@ -0,0 +1 @@
<foo>
1 change: 1 addition & 0 deletions fuzz/corpus/fuzz_libinjection/125
Original file line number Diff line number Diff line change
@@ -0,0 +1 @@
<foo >
1 change: 1 addition & 0 deletions fuzz/corpus/fuzz_libinjection/126
Original file line number Diff line number Diff line change
@@ -0,0 +1 @@
<foo/>
1 change: 1 addition & 0 deletions fuzz/corpus/fuzz_libinjection/127
Original file line number Diff line number Diff line change
@@ -0,0 +1 @@
<foo />
1 change: 1 addition & 0 deletions fuzz/corpus/fuzz_libinjection/128
Original file line number Diff line number Diff line change
@@ -0,0 +1 @@
<foo
1 change: 1 addition & 0 deletions fuzz/corpus/fuzz_libinjection/129
Original file line number Diff line number Diff line change
@@ -0,0 +1 @@
<foo
1 change: 1 addition & 0 deletions fuzz/corpus/fuzz_libinjection/13
Original file line number Diff line number Diff line change
@@ -0,0 +1 @@
1+-+1
1 change: 1 addition & 0 deletions fuzz/corpus/fuzz_libinjection/130
Original file line number Diff line number Diff line change
@@ -0,0 +1 @@
<foo/
1 change: 1 addition & 0 deletions fuzz/corpus/fuzz_libinjection/131
Original file line number Diff line number Diff line change
@@ -0,0 +1 @@
<foo /
1 change: 1 addition & 0 deletions fuzz/corpus/fuzz_libinjection/132
Original file line number Diff line number Diff line change
@@ -0,0 +1 @@
<foo bar>
1 change: 1 addition & 0 deletions fuzz/corpus/fuzz_libinjection/133
Original file line number Diff line number Diff line change
@@ -0,0 +1 @@
<foo bar
1 change: 1 addition & 0 deletions fuzz/corpus/fuzz_libinjection/134
Original file line number Diff line number Diff line change
@@ -0,0 +1 @@
<foo bar
1 change: 1 addition & 0 deletions fuzz/corpus/fuzz_libinjection/135
Original file line number Diff line number Diff line change
@@ -0,0 +1 @@
<foo bar=yes>
1 change: 1 addition & 0 deletions fuzz/corpus/fuzz_libinjection/136
Original file line number Diff line number Diff line change
@@ -0,0 +1 @@
<foo bar=yes >
1 change: 1 addition & 0 deletions fuzz/corpus/fuzz_libinjection/137
Original file line number Diff line number Diff line change
@@ -0,0 +1 @@
<foo bar=yes
1 change: 1 addition & 0 deletions fuzz/corpus/fuzz_libinjection/138
Original file line number Diff line number Diff line change
@@ -0,0 +1 @@
<foo bar=yes
1 change: 1 addition & 0 deletions fuzz/corpus/fuzz_libinjection/139
Original file line number Diff line number Diff line change
@@ -0,0 +1 @@
<foo bar= 'yes' >
1 change: 1 addition & 0 deletions fuzz/corpus/fuzz_libinjection/14
Original file line number Diff line number Diff line change
@@ -0,0 +1 @@
1+(-1)
1 change: 1 addition & 0 deletions fuzz/corpus/fuzz_libinjection/140
Original file line number Diff line number Diff line change
@@ -0,0 +1 @@
<foo bar= "yes" >
1 change: 1 addition & 0 deletions fuzz/corpus/fuzz_libinjection/141
Original file line number Diff line number Diff line change
@@ -0,0 +1 @@
<foo bar=>
1 change: 1 addition & 0 deletions fuzz/corpus/fuzz_libinjection/142
Original file line number Diff line number Diff line change
@@ -0,0 +1 @@
<foo bar = >
1 change: 1 addition & 0 deletions fuzz/corpus/fuzz_libinjection/143
Original file line number Diff line number Diff line change
@@ -0,0 +1 @@
<foo bar = '' >
1 change: 1 addition & 0 deletions fuzz/corpus/fuzz_libinjection/144
Original file line number Diff line number Diff line change
@@ -0,0 +1 @@
<foo bar = 'xxx
1 change: 1 addition & 0 deletions fuzz/corpus/fuzz_libinjection/145
Original file line number Diff line number Diff line change
@@ -0,0 +1 @@
<foo bar = '
1 change: 1 addition & 0 deletions fuzz/corpus/fuzz_libinjection/146
Original file line number Diff line number Diff line change
@@ -0,0 +1 @@
<foo bar = "xxx"
1 change: 1 addition & 0 deletions fuzz/corpus/fuzz_libinjection/147
Original file line number Diff line number Diff line change
@@ -0,0 +1 @@
</foo>
1 change: 1 addition & 0 deletions fuzz/corpus/fuzz_libinjection/148
Original file line number Diff line number Diff line change
@@ -0,0 +1 @@
</foo >
1 change: 1 addition & 0 deletions fuzz/corpus/fuzz_libinjection/149
Original file line number Diff line number Diff line change
@@ -0,0 +1 @@
<foo bar/>
1 change: 1 addition & 0 deletions fuzz/corpus/fuzz_libinjection/15
Original file line number Diff line number Diff line change
@@ -0,0 +1 @@
1 + foo
1 change: 1 addition & 0 deletions fuzz/corpus/fuzz_libinjection/150
Original file line number Diff line number Diff line change
@@ -0,0 +1 @@
<!--foo-->
1 change: 1 addition & 0 deletions fuzz/corpus/fuzz_libinjection/151
Original file line number Diff line number Diff line change
@@ -0,0 +1 @@
<!--foo
1 change: 1 addition & 0 deletions fuzz/corpus/fuzz_libinjection/152
Original file line number Diff line number Diff line change
@@ -0,0 +1 @@
<?foo
1 change: 1 addition & 0 deletions fuzz/corpus/fuzz_libinjection/153
Original file line number Diff line number Diff line change
@@ -0,0 +1 @@
<?foo>
1 change: 1 addition & 0 deletions fuzz/corpus/fuzz_libinjection/154
Original file line number Diff line number Diff line change
@@ -0,0 +1 @@
<foo bar="yes"/>
1 change: 1 addition & 0 deletions fuzz/corpus/fuzz_libinjection/155
Original file line number Diff line number Diff line change
@@ -0,0 +1 @@
<foo bar="yes">
1 change: 1 addition & 0 deletions fuzz/corpus/fuzz_libinjection/156
Original file line number Diff line number Diff line change
@@ -0,0 +1 @@
<1234 foo
1 change: 1 addition & 0 deletions fuzz/corpus/fuzz_libinjection/157
Original file line number Diff line number Diff line change
@@ -0,0 +1 @@
<!-- -x -- -! -->
1 change: 1 addition & 0 deletions fuzz/corpus/fuzz_libinjection/158
Original file line number Diff line number Diff line change
@@ -0,0 +1 @@
<!------->
1 change: 1 addition & 0 deletions fuzz/corpus/fuzz_libinjection/159
Original file line number Diff line number Diff line change
@@ -0,0 +1 @@
<!--foo--

This file was deleted.

1 change: 1 addition & 0 deletions fuzz/corpus/fuzz_libinjection/16
Original file line number Diff line number Diff line change
@@ -0,0 +1 @@
foo + 1
1 change: 1 addition & 0 deletions fuzz/corpus/fuzz_libinjection/160
Original file line number Diff line number Diff line change
@@ -0,0 +1 @@
<foo /junk>
1 change: 1 addition & 0 deletions fuzz/corpus/fuzz_libinjection/161
Original file line number Diff line number Diff line change
@@ -0,0 +1 @@
<foo bar="yes"isdir>
1 change: 1 addition & 0 deletions fuzz/corpus/fuzz_libinjection/162
Original file line number Diff line number Diff line change
@@ -0,0 +1 @@
<!DOCTYPE>
1 change: 1 addition & 0 deletions fuzz/corpus/fuzz_libinjection/163
Original file line number Diff line number Diff line change
@@ -0,0 +1 @@
<!DOCTYPE "stuff">
1 change: 1 addition & 0 deletions fuzz/corpus/fuzz_libinjection/164
Original file line number Diff line number Diff line change
@@ -0,0 +1 @@
<!DOCTYPE "stuff"
1 change: 1 addition & 0 deletions fuzz/corpus/fuzz_libinjection/165
Original file line number Diff line number Diff line change
@@ -0,0 +1 @@
<!doctype>
1 change: 1 addition & 0 deletions fuzz/corpus/fuzz_libinjection/166
Original file line number Diff line number Diff line change
@@ -0,0 +1 @@
<![CDATA[foobar]]>
1 change: 1 addition & 0 deletions fuzz/corpus/fuzz_libinjection/167
Original file line number Diff line number Diff line change
@@ -0,0 +1 @@
<![CDATA[foobar
1 change: 1 addition & 0 deletions fuzz/corpus/fuzz_libinjection/168
Original file line number Diff line number Diff line change
@@ -0,0 +1 @@
<![CDATA[foobar
1 change: 1 addition & 0 deletions fuzz/corpus/fuzz_libinjection/169
Original file line number Diff line number Diff line change
@@ -0,0 +1 @@
<![CDATA[foobar]]]>
1 change: 1 addition & 0 deletions fuzz/corpus/fuzz_libinjection/17
Original file line number Diff line number Diff line change
@@ -0,0 +1 @@
foo OR zap AND bar
1 change: 1 addition & 0 deletions fuzz/corpus/fuzz_libinjection/170
Original file line number Diff line number Diff line change
@@ -0,0 +1 @@
<![CDATA
1 change: 1 addition & 0 deletions fuzz/corpus/fuzz_libinjection/171
Original file line number Diff line number Diff line change
@@ -0,0 +1 @@
<![CDATA
1 change: 1 addition & 0 deletions fuzz/corpus/fuzz_libinjection/172
Original file line number Diff line number Diff line change
@@ -0,0 +1 @@
<![CDATA foo>
1 change: 1 addition & 0 deletions fuzz/corpus/fuzz_libinjection/173
Original file line number Diff line number Diff line change
@@ -0,0 +1 @@
<![CDATAX foo>
1 change: 1 addition & 0 deletions fuzz/corpus/fuzz_libinjection/174
Original file line number Diff line number Diff line change
@@ -0,0 +1 @@
<?import foo="bar"/>
1 change: 1 addition & 0 deletions fuzz/corpus/fuzz_libinjection/175
Original file line number Diff line number Diff line change
@@ -0,0 +1 @@
<% foo><x foo="%><script>
1 change: 1 addition & 0 deletions fuzz/corpus/fuzz_libinjection/176
Original file line number Diff line number Diff line change
@@ -0,0 +1 @@
<!ENTITY foo>
1 change: 1 addition & 0 deletions fuzz/corpus/fuzz_libinjection/177
Original file line number Diff line number Diff line change
@@ -0,0 +1 @@
<foo bar = "xxx"
1 change: 1 addition & 0 deletions fuzz/corpus/fuzz_libinjection/178
Original file line number Diff line number Diff line change
@@ -0,0 +1 @@
<foo bar = `xxx`
1 change: 1 addition & 0 deletions fuzz/corpus/fuzz_libinjection/179
Original file line number Diff line number Diff line change
@@ -0,0 +1 @@
<foo =_=xxx
1 change: 1 addition & 0 deletions fuzz/corpus/fuzz_libinjection/18
Original file line number Diff line number Diff line change
@@ -0,0 +1 @@
--INPUT--
1 change: 1 addition & 0 deletions fuzz/corpus/fuzz_libinjection/180
Original file line number Diff line number Diff line change
@@ -0,0 +1 @@
</ foo="><script>
1 change: 1 addition & 0 deletions fuzz/corpus/fuzz_libinjection/181
Original file line number Diff line number Diff line change
@@ -0,0 +1 @@
foo 'bar' "zap"
1 change: 1 addition & 0 deletions fuzz/corpus/fuzz_libinjection/182
Original file line number Diff line number Diff line change
@@ -0,0 +1 @@
foo 'bar'
1 change: 1 addition & 0 deletions fuzz/corpus/fuzz_libinjection/183
Original file line number Diff line number Diff line change
@@ -0,0 +1 @@
foo 'bar'
1 change: 1 addition & 0 deletions fuzz/corpus/fuzz_libinjection/184
Original file line number Diff line number Diff line change
@@ -0,0 +1 @@
1 = 1 OR 1
1 change: 1 addition & 0 deletions fuzz/corpus/fuzz_libinjection/185
Original file line number Diff line number Diff line change
@@ -0,0 +1 @@
1 = '1' OR 1
1 change: 1 addition & 0 deletions fuzz/corpus/fuzz_libinjection/186
Original file line number Diff line number Diff line change
@@ -0,0 +1 @@
1 = "1" OR 1
1 change: 1 addition & 0 deletions fuzz/corpus/fuzz_libinjection/187
Original file line number Diff line number Diff line change
@@ -0,0 +1 @@
1 /* /* */ */ 2
1 change: 1 addition & 0 deletions fuzz/corpus/fuzz_libinjection/188
Original file line number Diff line number Diff line change
@@ -0,0 +1 @@
1 = "1" /* 'blah' */ OR 1
1 change: 1 addition & 0 deletions fuzz/corpus/fuzz_libinjection/189
Original file line number Diff line number Diff line change
@@ -0,0 +1 @@
1 = '1' /* "blah" */ OR 1
1 change: 1 addition & 0 deletions fuzz/corpus/fuzz_libinjection/19
Original file line number Diff line number Diff line change
@@ -0,0 +1 @@
1 + foo + 1
1 change: 1 addition & 0 deletions fuzz/corpus/fuzz_libinjection/190
Original file line number Diff line number Diff line change
@@ -0,0 +1 @@
1# blah blah
1 change: 1 addition & 0 deletions fuzz/corpus/fuzz_libinjection/191
Original file line number Diff line number Diff line change
@@ -0,0 +1 @@
foo--
1 change: 1 addition & 0 deletions fuzz/corpus/fuzz_libinjection/192
Original file line number Diff line number Diff line change
@@ -0,0 +1 @@
foo/* yes this is sqli */
1 change: 1 addition & 0 deletions fuzz/corpus/fuzz_libinjection/193
Original file line number Diff line number Diff line change
@@ -0,0 +1 @@
1/* yes this is sqli */
1 change: 1 addition & 0 deletions fuzz/corpus/fuzz_libinjection/194
Original file line number Diff line number Diff line change
@@ -0,0 +1 @@
1--
1 change: 1 addition & 0 deletions fuzz/corpus/fuzz_libinjection/195
Original file line number Diff line number Diff line change
@@ -0,0 +1 @@
"foo" OR "BAR"
1 change: 1 addition & 0 deletions fuzz/corpus/fuzz_libinjection/196
Original file line number Diff line number Diff line change
@@ -0,0 +1 @@
foo" OR "BAR"
1 change: 1 addition & 0 deletions fuzz/corpus/fuzz_libinjection/197
Original file line number Diff line number Diff line change
@@ -0,0 +1 @@
"foo" OR "BAR
1 change: 1 addition & 0 deletions fuzz/corpus/fuzz_libinjection/198
Original file line number Diff line number Diff line change
@@ -0,0 +1 @@
foo' OR "BAR
1 change: 1 addition & 0 deletions fuzz/corpus/fuzz_libinjection/199
Original file line number Diff line number Diff line change
@@ -0,0 +1 @@
foo' OR 'BAR

This file was deleted.

2 changes: 1 addition & 1 deletion fuzz/corpus/fuzz_libinjection/2
Original file line number Diff line number Diff line change
@@ -1 +1 @@
192.168.3.107/DVWA-master/vulnerabilities/xss_d/?default=English%3Cscript%3Ealert(1)%3C/script%3E
( SELECT 1 );
2 changes: 1 addition & 1 deletion fuzz/corpus/fuzz_libinjection/20
Original file line number Diff line number Diff line change
@@ -1 +1 @@
/dv/vulnerabilities/xss_r/?name=%3Cscript%3Econsole.log%28%27JUL2D3WXHEGWRAFJE2PI7OS71Z4Z8RFUHXGNFLUFYVP6M3OL55%27%29%3Bconsole.log%28document.cookie%29%3B%3C%2Fscript%3E
`foo`.`bar`
1 change: 1 addition & 0 deletions fuzz/corpus/fuzz_libinjection/200
Original file line number Diff line number Diff line change
@@ -0,0 +1 @@
foo' + 1
1 change: 1 addition & 0 deletions fuzz/corpus/fuzz_libinjection/201
Original file line number Diff line number Diff line change
@@ -0,0 +1 @@
'foo' + 1
1 change: 1 addition & 0 deletions fuzz/corpus/fuzz_libinjection/202
Original file line number Diff line number Diff line change
@@ -0,0 +1 @@
1" UNION ALL SELECT * FROM FOO
1 change: 1 addition & 0 deletions fuzz/corpus/fuzz_libinjection/203
Original file line number Diff line number Diff line change
@@ -0,0 +1 @@
1" INCH
1 change: 1 addition & 0 deletions fuzz/corpus/fuzz_libinjection/204
Original file line number Diff line number Diff line change
@@ -0,0 +1 @@
1' INCH
1 change: 1 addition & 0 deletions fuzz/corpus/fuzz_libinjection/205
Original file line number Diff line number Diff line change
@@ -0,0 +1 @@
--1 UNION ALL SELECT * FROM FOO
1 change: 1 addition & 0 deletions fuzz/corpus/fuzz_libinjection/206
Original file line number Diff line number Diff line change
@@ -0,0 +1 @@
1' == --1 OR 1
1 change: 1 addition & 0 deletions fuzz/corpus/fuzz_libinjection/207
Original file line number Diff line number Diff line change
@@ -0,0 +1 @@
1" UNION ALL SELECT --1 FROM FOO
1 change: 1 addition & 0 deletions fuzz/corpus/fuzz_libinjection/208
Original file line number Diff line number Diff line change
@@ -0,0 +1 @@
foo'--'bar'
1 change: 1 addition & 0 deletions fuzz/corpus/fuzz_libinjection/209
Original file line number Diff line number Diff line change
@@ -0,0 +1 @@
--blah
2 changes: 1 addition & 1 deletion fuzz/corpus/fuzz_libinjection/21
Original file line number Diff line number Diff line change
@@ -1 +1 @@
/dv/vulnerabilities/sqli/?id=1%27+and+1%3D1+union+select+null%2C+table_name+from+information_schema.tables%23&Submit=Submit
'foo' + zap + 'bar'
1 change: 1 addition & 0 deletions fuzz/corpus/fuzz_libinjection/210
Original file line number Diff line number Diff line change
@@ -0,0 +1 @@
1--sp_password
1 change: 1 addition & 0 deletions fuzz/corpus/fuzz_libinjection/211
Original file line number Diff line number Diff line change
@@ -0,0 +1 @@
x'--sp_password
1 change: 1 addition & 0 deletions fuzz/corpus/fuzz_libinjection/212
Original file line number Diff line number Diff line change
@@ -0,0 +1 @@
1*1--
1 change: 1 addition & 0 deletions fuzz/corpus/fuzz_libinjection/213
Original file line number Diff line number Diff line change
@@ -0,0 +1 @@
1 /*!anything*/
1 change: 1 addition & 0 deletions fuzz/corpus/fuzz_libinjection/214
Original file line number Diff line number Diff line change
@@ -0,0 +1 @@
1--0000000000111111111122222222223333333333 sp_password
1 change: 1 addition & 0 deletions fuzz/corpus/fuzz_libinjection/215
Original file line number Diff line number Diff line change
@@ -0,0 +1 @@
--EXPECTED--
1 change: 1 addition & 0 deletions fuzz/corpus/fuzz_libinjection/216
Original file line number Diff line number Diff line change
@@ -0,0 +1 @@
foo" and 1=1 `
1 change: 1 addition & 0 deletions fuzz/corpus/fuzz_libinjection/217
Original file line number Diff line number Diff line change
@@ -0,0 +1 @@
foo" and 1=1 `
1 change: 1 addition & 0 deletions fuzz/corpus/fuzz_libinjection/218
Original file line number Diff line number Diff line change
@@ -0,0 +1 @@
1 and @version
1 change: 1 addition & 0 deletions fuzz/corpus/fuzz_libinjection/219
Original file line number Diff line number Diff line change
@@ -0,0 +1 @@
1 and @version < 1
2 changes: 1 addition & 1 deletion fuzz/corpus/fuzz_libinjection/22
Original file line number Diff line number Diff line change
@@ -1 +1 @@
/ntop/nDPI/actions/runs/4161701848/jobs/7199989034
foo zap bar
1 change: 1 addition & 0 deletions fuzz/corpus/fuzz_libinjection/220
Original file line number Diff line number Diff line change
@@ -0,0 +1 @@
1 and "a" < "b"
1 change: 1 addition & 0 deletions fuzz/corpus/fuzz_libinjection/221
Original file line number Diff line number Diff line change
@@ -0,0 +1 @@
1 and "a"
1 change: 1 addition & 0 deletions fuzz/corpus/fuzz_libinjection/222
Original file line number Diff line number Diff line change
@@ -0,0 +1 @@
1 TOP 'foo'
1 change: 1 addition & 0 deletions fuzz/corpus/fuzz_libinjection/223
Original file line number Diff line number Diff line change
@@ -0,0 +1 @@
1 UNION
1 change: 1 addition & 0 deletions fuzz/corpus/fuzz_libinjection/224
Original file line number Diff line number Diff line change
@@ -0,0 +1 @@
1 ANALYZE 'foo'
1 change: 1 addition & 0 deletions fuzz/corpus/fuzz_libinjection/225
Original file line number Diff line number Diff line change
@@ -0,0 +1 @@
1 /* junk */ UNION
1 change: 1 addition & 0 deletions fuzz/corpus/fuzz_libinjection/226
Original file line number Diff line number Diff line change
@@ -0,0 +1 @@
1),(1)) UNION SELECT 1;
1 change: 1 addition & 0 deletions fuzz/corpus/fuzz_libinjection/227
Original file line number Diff line number Diff line change
@@ -0,0 +1 @@
foo - (bar) UNION SELECT 1
1 change: 1 addition & 0 deletions fuzz/corpus/fuzz_libinjection/228
Original file line number Diff line number Diff line change
@@ -0,0 +1 @@
foo - (1) UNION SELECT 1
1 change: 1 addition & 0 deletions fuzz/corpus/fuzz_libinjection/229
Original file line number Diff line number Diff line change
@@ -0,0 +1 @@
1, -sin(1)) UNION SELECT 1
1 change: 1 addition & 0 deletions fuzz/corpus/fuzz_libinjection/23
Original file line number Diff line number Diff line change
@@ -0,0 +1 @@
--EXPECTED--
1 change: 1 addition & 0 deletions fuzz/corpus/fuzz_libinjection/230
Original file line number Diff line number Diff line change
@@ -0,0 +1 @@
{``.``.id} UNION SELECT table_name from information_schemas LIMIT 1
1 change: 1 addition & 0 deletions fuzz/corpus/fuzz_libinjection/231
Original file line number Diff line number Diff line change
@@ -0,0 +1 @@
select 1,'''',2;
1 change: 1 addition & 0 deletions fuzz/corpus/fuzz_libinjection/232
Original file line number Diff line number Diff line change
@@ -0,0 +1 @@
select 1,'\\\\',2;
1 change: 1 addition & 0 deletions fuzz/corpus/fuzz_libinjection/233
Original file line number Diff line number Diff line change
@@ -0,0 +1 @@
SELECT `version`();
1 change: 1 addition & 0 deletions fuzz/corpus/fuzz_libinjection/234
Original file line number Diff line number Diff line change
@@ -0,0 +1 @@
SELECT `select`;
1 change: 1 addition & 0 deletions fuzz/corpus/fuzz_libinjection/235
Original file line number Diff line number Diff line change
@@ -0,0 +1 @@
SELECT foo.`select`;
1 change: 1 addition & 0 deletions fuzz/corpus/fuzz_libinjection/236
Original file line number Diff line number Diff line change
@@ -0,0 +1 @@
SELECT `foo`.`bar`;
1 change: 1 addition & 0 deletions fuzz/corpus/fuzz_libinjection/237
Original file line number Diff line number Diff line change
@@ -0,0 +1 @@
SELECT `foo`.bar;
1 change: 1 addition & 0 deletions fuzz/corpus/fuzz_libinjection/238
Original file line number Diff line number Diff line change
@@ -0,0 +1 @@
SELECT @@`version`;
1 change: 1 addition & 0 deletions fuzz/corpus/fuzz_libinjection/239
Original file line number Diff line number Diff line change
@@ -0,0 +1 @@
SELECT @`version`;
1 change: 1 addition & 0 deletions fuzz/corpus/fuzz_libinjection/24
Original file line number Diff line number Diff line change
@@ -0,0 +1 @@
UNION
1 change: 1 addition & 0 deletions fuzz/corpus/fuzz_libinjection/240
Original file line number Diff line number Diff line change
@@ -0,0 +1 @@
SELECT @`foo``bar`;
1 change: 1 addition & 0 deletions fuzz/corpus/fuzz_libinjection/241
Original file line number Diff line number Diff line change
@@ -0,0 +1 @@
--INPUT--
1 change: 1 addition & 0 deletions fuzz/corpus/fuzz_libinjection/242
Original file line number Diff line number Diff line change
@@ -0,0 +1 @@
and code-coverage tests
1 change: 1 addition & 0 deletions fuzz/corpus/fuzz_libinjection/243
Original file line number Diff line number Diff line change
@@ -0,0 +1 @@
--INPUT--
1 change: 1 addition & 0 deletions fuzz/corpus/fuzz_libinjection/244
Original file line number Diff line number Diff line change
@@ -0,0 +1 @@
--INPUT--
1 change: 1 addition & 0 deletions fuzz/corpus/fuzz_libinjection/245
Original file line number Diff line number Diff line change
@@ -0,0 +1 @@
SELECT { foo 1 };
1 change: 1 addition & 0 deletions fuzz/corpus/fuzz_libinjection/246
Original file line number Diff line number Diff line change
@@ -0,0 +1 @@
SELECT{ foo 1 };
1 change: 1 addition & 0 deletions fuzz/corpus/fuzz_libinjection/247
Original file line number Diff line number Diff line change
@@ -0,0 +1 @@
SELECT \N;
1 change: 1 addition & 0 deletions fuzz/corpus/fuzz_libinjection/248
Original file line number Diff line number Diff line change
@@ -0,0 +1 @@
SELECT \X;
1 change: 1 addition & 0 deletions fuzz/corpus/fuzz_libinjection/249
Original file line number Diff line number Diff line change
@@ -0,0 +1 @@
SELECT \
1 change: 1 addition & 0 deletions fuzz/corpus/fuzz_libinjection/25
Original file line number Diff line number Diff line change
@@ -0,0 +1 @@
UNION ALL
1 change: 1 addition & 0 deletions fuzz/corpus/fuzz_libinjection/250
Original file line number Diff line number Diff line change
@@ -0,0 +1 @@
SELECT [1];
1 change: 1 addition & 0 deletions fuzz/corpus/fuzz_libinjection/251
Original file line number Diff line number Diff line change
@@ -0,0 +1 @@
SELECT \ % 1;
1 change: 1 addition & 0 deletions fuzz/corpus/fuzz_libinjection/252
Original file line number Diff line number Diff line change
@@ -0,0 +1 @@
SELECT ]
1 change: 1 addition & 0 deletions fuzz/corpus/fuzz_libinjection/253
Original file line number Diff line number Diff line change
@@ -0,0 +1 @@
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 4
1 change: 1 addition & 0 deletions fuzz/corpus/fuzz_libinjection/254
Original file line number Diff line number Diff line change
@@ -0,0 +1 @@
SELECT AAAAAAAAAAAAAAAAAAAAAAAAAAAAAAABBBBBBBBBB;
1 change: 1 addition & 0 deletions fuzz/corpus/fuzz_libinjection/255
Original file line number Diff line number Diff line change
@@ -0,0 +1 @@
SELECT '1234567890123456789012345678901234567890';
1 change: 1 addition & 0 deletions fuzz/corpus/fuzz_libinjection/256
Original file line number Diff line number Diff line change
@@ -0,0 +1 @@
1 -- 0000000000111111111122222222223333333333
1 change: 1 addition & 0 deletions fuzz/corpus/fuzz_libinjection/257
Original file line number Diff line number Diff line change
@@ -0,0 +1 @@
SELECT 1 /* 2 */;
1 change: 1 addition & 0 deletions fuzz/corpus/fuzz_libinjection/258
Original file line number Diff line number Diff line change
@@ -0,0 +1 @@
SELECT 1 /* 2
1 change: 1 addition & 0 deletions fuzz/corpus/fuzz_libinjection/259
Original file line number Diff line number Diff line change
@@ -0,0 +1 @@
SELECT 1 /* 2 */
1 change: 1 addition & 0 deletions fuzz/corpus/fuzz_libinjection/26
Original file line number Diff line number Diff line change
@@ -0,0 +1 @@
UNION /* foo */ALL
1 change: 1 addition & 0 deletions fuzz/corpus/fuzz_libinjection/260
Original file line number Diff line number Diff line change
@@ -0,0 +1 @@
SELECT 1 /*
1 change: 1 addition & 0 deletions fuzz/corpus/fuzz_libinjection/261
Original file line number Diff line number Diff line change
@@ -0,0 +1 @@
SELECT 1 /
1 change: 1 addition & 0 deletions fuzz/corpus/fuzz_libinjection/262
Original file line number Diff line number Diff line change
@@ -0,0 +1 @@
/* foo **/1
1 change: 1 addition & 0 deletions fuzz/corpus/fuzz_libinjection/263
Original file line number Diff line number Diff line change
@@ -0,0 +1 @@
SELECT /* FOO /* BAR */ JUNK */
1 change: 1 addition & 0 deletions fuzz/corpus/fuzz_libinjection/264
Original file line number Diff line number Diff line change
@@ -0,0 +1 @@
SELECT /* FOO /*/ BAR */
1 change: 1 addition & 0 deletions fuzz/corpus/fuzz_libinjection/265
Original file line number Diff line number Diff line change
@@ -0,0 +1 @@
SELECT 1 --
1 change: 1 addition & 0 deletions fuzz/corpus/fuzz_libinjection/266
Original file line number Diff line number Diff line change
@@ -0,0 +1 @@
SELECT 1 --sp_password
1 change: 1 addition & 0 deletions fuzz/corpus/fuzz_libinjection/267
Original file line number Diff line number Diff line change
@@ -0,0 +1 @@
SELECT 1 -- ABCD
1 change: 1 addition & 0 deletions fuzz/corpus/fuzz_libinjection/268
Original file line number Diff line number Diff line change
@@ -0,0 +1 @@
SELECT 1 -- ABCD
1 change: 1 addition & 0 deletions fuzz/corpus/fuzz_libinjection/269
Original file line number Diff line number Diff line change
@@ -0,0 +1 @@
SELECT 1 -
1 change: 1 addition & 0 deletions fuzz/corpus/fuzz_libinjection/27
Original file line number Diff line number Diff line change
@@ -0,0 +1 @@
--EXPECTED--
1 change: 1 addition & 0 deletions fuzz/corpus/fuzz_libinjection/270
Original file line number Diff line number Diff line change
@@ -0,0 +1 @@
SELECT 1 /*! 2 */;
1 change: 1 addition & 0 deletions fuzz/corpus/fuzz_libinjection/271
Original file line number Diff line number Diff line change
@@ -0,0 +1 @@
SELECT 1 /*! ,2 */;
1 change: 1 addition & 0 deletions fuzz/corpus/fuzz_libinjection/272
Original file line number Diff line number Diff line change
@@ -0,0 +1 @@
SELECT 1 /*!00,2
Loading

0 comments on commit d766237

Please sign in to comment.