Search
K
Secure Simple API

Database

Database operations

Reset Database

Reinitializes database with default data

get
https://kong.nonamesec.org/secure/db/restart

Response

200 application/json

Database reset successful

messagestring

Example:Database restarted

get/secure/db/restart
 
200 application/json

Database Search

Searches products database using parameterized queries

get
https://kong.nonamesec.org/secure/db/search

Query Parameters

querystring

Search term

Expected value: RAM

For testing SQL injection:

  • Extract all products: %’ OR ‘1’='1
  • Expose users table: %’ UNION SELECT id, user, password, ‘EXPOSED’ FROM users–
  • Delete all products: %'; DELETE FROM products–

Default:RAM

Example:RAM

Response

200 application/json

Search results

resultsarray[object]
Show Child Parameters
get/secure/db/search
 
200 application/json