Geçen cuma günü farklı bir konuma da yazmıştın kankam hata aldığını.
hangi sistemde kullanıyorsun, sqlmapı kalidemi yoksa windows cmd mi ? yardımcı olmak isterim
kali
sonuclar bu
___
__H__
___ ___[(]_____ ___ ___ {1.9.8#stable}
|_ -| . ["] | .'| . |
|___|_ [']_|_|_|__,| _|
|_|V... |_|
sqlmap: automatic SQL injection and database takeover tool
[!] legal disclaimer: Usage of sqlmap for attacking targets without prior mutual consent is illegal. It is the end user's responsibility to obey all applicable local, state and federal laws. Developers assume no liability and are not responsible for any misuse or damage caused by this program
[*] starting @ 13:29:54 /2025-08-31/
[13:29:54] [WARNING] using '/root/sqlmap_output' as the output directory
[13:29:54] [INFO] loading tamper module 'space2comment'
[13:29:54] [INFO] loading tamper module 'randomcase'
it appears that you might have mixed the order of tamper scripts. Do you want to auto resolve this? [Y/n/q] Y
[13:29:54] [INFO] loading tamper module 'charencode'
[13:29:54] [INFO] loading tamper module 'between'
[13:29:54] [INFO] loading tamper module 'modsecurityversioned'
[13:29:54] [WARNING] tamper script 'modsecurityversioned' is only meant to be run against MySQL
[13:29:54] [WARNING] using too many tamper scripts is usually not a good idea
[13:29:54] [INFO] fetched random HTTP User-Agent header value 'Mozilla/5.0 (Windows; U; Windows NT 6.0 x64; en-US; rv:1.9.1b2pre) Gecko/20081026 Firefox/3.1b2pre' from file '/usr/share/sqlmap/data/txt/user-agents.txt'
[13:29:54] [INFO] testing connection to the target URL
[13:29:57] [INFO] checking if the target is protected by some kind of WAF/IPS
[13:30:00] [CRITICAL] WAF/IPS identified as 'ModSecurity (Trustwave)'
are you sure that you want to continue with further target testing? [Y/n] Y
[13:30:00] [INFO] testing if the target URL content is stable
[13:30:03] [INFO] target URL content is stable
[13:30:03] [INFO] testing if GET parameter 'id' is dynamic
[13:30:06] [INFO] GET parameter 'id' appears to be dynamic
[13:30:14] [WARNING] heuristic (basic) test shows that GET parameter 'id' might not be injectable
[13:30:16] [INFO] testing for SQL injection on GET parameter 'id'
[13:30:16] [INFO] testing 'AND boolean-based blind - WHERE or HAVING clause'
[13:35:31] [INFO] testing 'OR boolean-based blind - WHERE or HAVING clause'
[13:39:35] [INFO] testing 'OR boolean-based blind - WHERE or HAVING clause (NOT)'