sqlmapproject / sqlmap

Automatic SQL injection and database takeover tool
http://sqlmap.org
Other
30.88k stars 5.56k forks source link

Retrieving datas through cloudflare. #5707

Closed e2002e closed 3 weeks ago

e2002e commented 3 weeks ago

Sqlmap finds a vulnerable cookie and even finds the database (100% certain it is correct guess). Then injection is found but there are a lot of 403, and when testing for false positive it fails.

Is there a way to avoid these 403 ? Manual injection isn't usefull in validating the injection, the page returned by the browser is also a 403 and explains that cloudflare has spotted database data.