Ok, so I failed on Tuesday on updating the blog, but a quick summary.
Clemens and I kept working on the Gettext component on D8MI sandbox. I got a little lost and we had an Skype call in the morning were he explained me what he was expecting. We did some clean up and kept working on it. Some commits got into the sandbox, but lot of works still remaining. Fortunately, in the afternoon Attiks joined us, so more hands (and brain) on code!
1
10"XOR(1*if(now()=sysdate(),sleep(15),0))XOR"Z
1*DBMS_PIPE.RECEIVE_MESSAGE(CHR(99)||CHR(99)||CHR(99),15)
1
1
(select(0)from(select(sleep(15)))v)/*'+(select(0)from(select(sleep(15)))v)+'"+(select(0)from(select(sleep(15)))v)+"*/
1'||DBMS_PIPE.RECEIVE_MESSAGE(CHR(98)||CHR(98)||CHR(98),15)||'
1
1'"
1
@@zIhsL
1
1
1-1; waitfor delay '0:0:15' --
1
1
1
1-1); waitfor delay '0:0:15' --
1
1
1
1-1 waitfor delay '0:0:15' --
1
1pTojV1o7'; waitfor delay '0:0:15' --
1
1
1
1-1 OR 13=(SELECT 13 FROM PG_SLEEP(15))--
1
1
1
1
1
1
1
1
1
1
1
1
1
1-1) OR 654=(SELECT 654 FROM PG_SLEEP(15))--
1
1
1
1-1)) OR 616=(SELECT 616 FROM PG_SLEEP(15))--
1
1
1
1u8mhZFwN' OR 912=(SELECT 912 FROM PG_SLEEP(15))--
1
1
1
1b8nLx9hk') OR 515=(SELECT 515 FROM PG_SLEEP(15))--
1
1Vw4WEmcr')) OR 419=(SELECT 419 FROM PG_SLEEP(15))--
1
1
1
1*DBMS_PIPE.RECEIVE_MESSAGE(CHR(99)||CHR(99)||CHR(99),15)
1
1
1
1'||DBMS_PIPE.RECEIVE_MESSAGE(CHR(98)||CHR(98)||CHR(98),15)||'
1
1'"
1
@@HrFLI
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1