Skip to content

Instantly share code, notes, and snippets.

View MartialBlot's full-sized avatar

BLOT Martial MartialBlot

View GitHub Profile
Challenge 1 --------------
<script>alert('bjobjob')</script>
Challenge 2 --------------
<input class="share" value="Share status!" onclick="return alert('dfdf');">
------- 1
login: "admin'--"
password: "';--"
------- 2
login: "x' OR 1=1 -- "
password: "$INPUT2$"
https://google-gruyere.appspot.com/GRUYEREINSTANCEID/deletesnippet?index=0
@MartialBlot
MartialBlot / Mysql.sql
Created May 27, 2019 21:47
Mysql Advanced
//1
mysql> select team.name, count(*) as nb_player from team join player on team.id=player.team_id GROUP BY team.name ORDER BY nb_player desc;
+------------+-----------+
| name | nb_player |
+------------+-----------+
| Gryffindor | 36 |
| Slytherin | 21 |
| Ravenclaw | 15 |
| Hufflepuff | 12 |
+------------+-----------+
@MartialBlot
MartialBlot / index.js
Created May 21, 2019 10:56
NDE EXPRESS DELETE
const express = require('express');
const app = express();
const port = 3000;
const connection = require('./conf');
app.disable('etag');
const bodyParser = require('body-parser');
// Support JSON-encoded bodies
app.use(bodyParser.json());
@MartialBlot
MartialBlot / index.js
Created May 20, 2019 10:02
NODE Express PUT
const express = require('express');
const app = express();
const port = 3000;
const connection = require('./conf');
app.disable('etag');
const bodyParser = require('body-parser');
// Support JSON-encoded bodies
app.use(bodyParser.json());
@MartialBlot
MartialBlot / index.js
Created May 20, 2019 09:25
NDE EXPRESS 3
const express = require('express');
const app = express();
const port = 3000;
const connection = require('./conf');
app.disable('etag');
const bodyParser = require('body-parser');
// Support JSON-encoded bodies
app.use(bodyParser.json());
@MartialBlot
MartialBlot / Capture
Created May 15, 2019 08:48
Les Jointures MySQL
// Order Alph firstname
mysql> SELECT firstname, lastname, role, name FROM player JOIN wizard ON (wizard.id=player.wizard_id) JOIN team ON (team.id=player.team_id) ORDER BY firstname;
+-------------+-----------------+--------+------------+
| firstname | lastname | role | name |
+-------------+-----------------+--------+------------+
| Aberforth | Dumbledore | keeper | Gryffindor |
| Albus | Dumbledore | chaser | Gryffindor |
| Alice | Longbottom | beater | Gryffindor |
| Alicia | Spinnet | chaser | Gryffindor |
const express = require('express');
const app = express();
const port = 3000;
const connection = require('./conf');
app.disable('etag');
app.get('/api/movies', (req, res) => {
connection.query('SELECT * from movies', (err, results) => {
if (err) {
@MartialBlot
MartialBlot / Index.js
Created May 9, 2019 19:15
NodeJS Express découverte
const express = require('express');
const app = express();
const port = 3000;
app.disable('etag');
app.get('/api/movies', (request, response) => {
response.send('Récupération de tous les films');
});