Bernardo Damele
|
2976ed7e90
|
Updated user's manual, added details about URI injection
|
2011-05-03 14:47:01 +00:00 |
|
Bernardo Damele
|
dac59a55bc
|
leftover
|
2011-05-03 14:14:39 +00:00 |
|
Bernardo Damele
|
c58dc4a6d8
|
isDbmsWithin() must stay like this, no getIdentifiedDbms() in there
|
2011-05-03 14:13:45 +00:00 |
|
Miroslav Stampar
|
742b0ef76e
|
major improvement of ERROR data retrieval on MSSQL
|
2011-05-03 13:25:20 +00:00 |
|
Miroslav Stampar
|
2a7838928e
|
minor fancier --replicate update
|
2011-05-03 11:48:04 +00:00 |
|
Miroslav Stampar
|
b202d73b46
|
bug fix for MSSQL identificators which were starting with d, b, o and . Thing is that .lstrip strips all occurances of the given chars :) (spotted ancidentally)
|
2011-05-03 11:09:30 +00:00 |
|
Bernardo Damele
|
b2f6ce9716
|
updated documentation
|
2011-05-03 10:57:55 +00:00 |
|
Miroslav Stampar
|
1840b0e43b
|
fix for a bug reported by k1971@live.co.uk (OperationalError: unknown database dbo)
|
2011-05-03 10:22:38 +00:00 |
|
Miroslav Stampar
|
1e6c2fea74
|
update regarding warning for --random-agent during connection timeout in connection test phase
|
2011-05-03 10:05:42 +00:00 |
|
Miroslav Stampar
|
eceb5eca7b
|
fix for --file-read on MSSQL for error technique (again that unpacking was causing problems); also reverting that check for file paths as one user mentioned that network paths are also possible for usage on Windows machines (e.g. \\bla\bla)
|
2011-05-02 21:55:06 +00:00 |
|
Bernardo Damele
|
6cff3e97f4
|
cosmetics
|
2011-05-02 21:48:08 +00:00 |
|
Miroslav Stampar
|
06498796b9
|
minor cosmetics
|
2011-05-02 20:51:53 +00:00 |
|
Miroslav Stampar
|
b327a78522
|
minor minor update of the last commit
|
2011-05-02 19:24:49 +00:00 |
|
Miroslav Stampar
|
0bb7d715a7
|
more user friendliness/handiness for users which mix Linux and Windows paths where they shouldn't do that
|
2011-05-02 19:18:28 +00:00 |
|
Miroslav Stampar
|
845618934d
|
update of doc/THANKS
|
2011-05-02 18:20:37 +00:00 |
|
Miroslav Stampar
|
5e9620198c
|
fix for a privately reported bug ("AttributeError: item is disabled")
|
2011-05-02 18:18:04 +00:00 |
|
Miroslav Stampar
|
93dee30895
|
better fix for the previous commit
|
2011-05-02 13:34:55 +00:00 |
|
Miroslav Stampar
|
20ad1c1f2f
|
minor update to not confuse users when using -o
|
2011-05-02 13:24:35 +00:00 |
|
Miroslav Stampar
|
f8c3086d15
|
minor minor update
|
2011-05-02 12:37:54 +00:00 |
|
Miroslav Stampar
|
098f53d57a
|
patch for a problem reported by m.martin2311@yahoo.com (unknown charset 'is0-8859-1')
|
2011-05-02 12:34:35 +00:00 |
|
Bernardo Damele
|
ac2550535c
|
Proper fix for --technique=U bug
|
2011-05-01 23:42:41 +00:00 |
|
Miroslav Stampar
|
8e8886cd20
|
minor improvement for --sql-shell/--sql-query (when non-SELECT default is N for retrieve data output which automatically does STACKED injection)
|
2011-05-01 21:41:14 +00:00 |
|
Miroslav Stampar
|
900ee0ff93
|
fix for a major bug reported by k1971@live.co.uk (1..9 99..)
|
2011-05-01 15:47:00 +00:00 |
|
Miroslav Stampar
|
494503b334
|
proper way to deal with generic cases
|
2011-05-01 08:04:08 +00:00 |
|
Miroslav Stampar
|
fcd69ba9c7
|
fix for a --technique=U
|
2011-05-01 07:37:22 +00:00 |
|
Bernardo Damele
|
ebe631ea57
|
doc update
|
2011-05-01 00:43:42 +00:00 |
|
Bernardo Damele
|
64bb480414
|
Do not raise otherwise it won't work with --schema
|
2011-04-30 23:20:16 +00:00 |
|
Miroslav Stampar
|
41fc9f9d54
|
fix for an issue reported by andrew.gecse@upcmail.hu (unknown web page charset 'hungarian-iso-8859-2')
|
2011-04-30 22:41:54 +00:00 |
|
Bernardo Damele
|
d5eeb91b35
|
Aligned Sybase and MaxDB to recent enhancements to --dbs, --tables and --columns
|
2011-04-30 22:11:36 +00:00 |
|
Bernardo Damele
|
b31b861d7b
|
Major rewrote of --columns: now it accepts -D only (enumerate all tables' columns of a specific database), -D and -T (enumerate all columns of a specific database's table), -T (enumerate all columns of a current database's table), etc.
|
2011-04-30 22:10:27 +00:00 |
|
Bernardo Damele
|
284c69a686
|
Improved --tables for MSSQL too, like r3798
|
2011-04-30 22:05:02 +00:00 |
|
Bernardo Damele
|
aeb149db22
|
Proper ordering of enumeration methods, consistent with the others enumeration classes
|
2011-04-30 22:04:08 +00:00 |
|
Bernardo Damele
|
955dbc85e7
|
Minor variable rename
|
2011-04-30 15:29:59 +00:00 |
|
Bernardo Damele
|
cb9b9c4204
|
Code refactoring and improvements to --dbs and --tables: now --tables accepts also -D CD as an alias for Current Database and as usual multiple database comma-separated are supported too
|
2011-04-30 15:29:19 +00:00 |
|
Bernardo Damele
|
b3a0424269
|
More Backend class method usage refactoring
|
2011-04-30 15:24:15 +00:00 |
|
Bernardo Damele
|
00f14bec5f
|
layout adjustment
|
2011-04-30 15:22:33 +00:00 |
|
Bernardo Damele
|
9a4ae7d9e2
|
More code refactoring of Backend class methods used
|
2011-04-30 14:54:29 +00:00 |
|
Bernardo Damele
|
2f2758b033
|
Long form contributor name
|
2011-04-30 14:51:06 +00:00 |
|
Bernardo Damele
|
36a9ddaacc
|
Minor bug fixes and code restyling for --privileges and --passwords
|
2011-04-30 14:50:27 +00:00 |
|
Bernardo Damele
|
f56d135438
|
Minor code restyling
|
2011-04-30 13:20:05 +00:00 |
|
Miroslav Stampar
|
983546d6bf
|
proper fix
|
2011-04-30 07:01:21 +00:00 |
|
Bernardo Damele
|
1a052245a6
|
duplicate code
|
2011-04-30 00:25:15 +00:00 |
|
Bernardo Damele
|
a5968fff3e
|
Added --count switch to count the number of entries for a specific table (when -T is provided), all database's tables (when only -D is provided) or all databases' tables when neither -D nor -T are provided
|
2011-04-30 00:22:22 +00:00 |
|
Bernardo Damele
|
529595fd85
|
Moved method below
|
2011-04-29 22:37:43 +00:00 |
|
Bernardo Damele
|
956e75e2b5
|
Minor adjustment to --mobile.
Bug fix to --random-agent.
|
2011-04-29 21:50:48 +00:00 |
|
Bernardo Damele
|
14bf6abb7e
|
Minor layout adjustment
|
2011-04-29 21:40:48 +00:00 |
|
Bernardo Damele
|
f449688f93
|
Proper resume of --schema data when calling with --columns switch, minor fixes too
|
2011-04-29 21:17:59 +00:00 |
|
Bernardo Damele
|
a23ca952e4
|
Actually brute-force switches make more sense just after their "normal" version. Also, getSchema() method is preferably to be called before getColumns(), see next commit for reason
|
2011-04-29 21:09:07 +00:00 |
|
Miroslav Stampar
|
46f96f3c4c
|
removing Kindle from list as it's not really a smartphone
|
2011-04-29 19:32:30 +00:00 |
|
Miroslav Stampar
|
11124b21f9
|
implemented --mobile switch
|
2011-04-29 19:27:23 +00:00 |
|