Sinisterly
Sqlmap without id parameter. - Printable Version

+- Sinisterly (https://sinister.li)
+-- Forum: Hacking (https://sinister.li/Forum-Hacking)
+--- Forum: Website & Server Hacking (https://sinister.li/Forum-Website-Server-Hacking)
+--- Thread: Sqlmap without id parameter. (/Thread-Sqlmap-without-id-parameter)



Sqlmap without id parameter. - Hack3rcon - 02-27-2021

Hello,
Is it possible to scan a website with Sqlmap without id parameter? My target doesn't have any "id" parameter in the URL!

Thank you.


RE: Sqlmap without id parameter. - tschaikowsky - 02-27-2021

Yes it is possible, i dont know why you specially talk about an "ID" Parameter, there are few more Parameters out there


RE: Sqlmap without id parameter. - Hack3rcon - 02-27-2021

(02-27-2021, 01:03 PM)tschaikowsky Wrote: Yes it is possible, i dont know why you specially talk about an "ID" Parameter, there are few more Parameters out there
Thank you.
I checked https://www.geeksforgeeks.org/use-sqlmap-test-website-sql-injection-vulnerability/ and https://www.binarytides.com/sqlmap-hacking-tutorial/ and other tutorials, but they worked with the "id" parameter.
Can you show me how?


RE: Sqlmap without id parameter. - tschaikowsky - 02-27-2021

https://www.geeksforgeeks.org/use-sqlmap-test-website-sql-injection-vulnerability/
http://testphp.vulnweb.com/listproducts.php?cat=1
sqlmap -u http://testphp.vulnweb.com/listproducts.php?cat=1 --dbs

and many more


RE: Sqlmap without id parameter. - Hack3rcon - 02-27-2021

(02-27-2021, 05:36 PM)tschaikowsky Wrote: https://www.geeksforgeeks.org/use-sqlmap-test-website-sql-injection-vulnerability/
http://testphp.vulnweb.com/listproducts.php?cat=1
sqlmap -u http://testphp.vulnweb.com/listproducts.php?cat=1 --dbs

and many more
As I said, that examples have id parameter.


RE: Sqlmap without id parameter. - Pr0blemZ - 05-26-2021

So i have ran into the same wonder
my self in the last few days.Can one add an ID parameter to a specific site target url?Or can one create a custone dork for a specific site with an id parameter?Any further insight
appreiciated here.


RE: Sqlmap without id parameter. - fritz - 05-26-2021

I'm not sure I understand the questions here, but maybe you could start by learning more about post/get requests and html forms, and how they're connected to sql injections