Commit dda3c560 authored by bobloblaw's avatar bobloblaw
Browse files

Updates nosql-injections.md

Auto commit by GitBook Editor
parent e098c681
Loading
Loading
Loading
Loading
+1 −1
Original line number Diff line number Diff line
@@ -42,7 +42,7 @@
            * [Remote File Inclusion](remote_file_inclusion.md)
            * [Hidden Files and Directories](web-scanning.md)
            * [SQL-Injections](sql-injections.md)
            * [Nosql-injections](nosql-injections.md)
            * [Nosql-Injections](nosql-injections.md)
            * [XML External Entity Attack](xml_external_entity_attack.md)
            * [Bypass File Upload Filtering](bypass_image_upload.md)
            * [Dictionary Attacks](dictionary_attacks.md)
+2 −1
Original line number Diff line number Diff line
# Nosql-injections

Nosql-databases like MongoDB is becoming more and more common. So this needs to be expanded.

## Login bypass

Basically change the query to this.

```
```javascript
{"user":{"$gt": ""},"pass":{"$gt": ""}}
```