Miroslav Stampar 
							
						 
					 
					
						
						
						
						
							
						
						
							7abfa2e6d4 
							
						 
					 
					
						
						
							
							minor fix  
						
						
						
					 
					
						2012-03-19 11:18:00 +00:00 
						 
				 
			
				
					
						
							
							
								Miroslav Stampar 
							
						 
					 
					
						
						
						
						
							
						
						
							cce5c3c009 
							
						 
					 
					
						
						
							
							minor changes for version numbers  
						
						
						
					 
					
						2012-03-19 11:07:03 +00:00 
						 
				 
			
				
					
						
							
							
								Bernardo Damele 
							
						 
					 
					
						
						
						
						
							
						
						
							48e8c978fb 
							
						 
					 
					
						
						
							
							Minor fix, way more to do for --search -C for MSSQL  
						
						
						
					 
					
						2012-03-15 17:55:49 +00:00 
						 
				 
			
				
					
						
							
							
								Bernardo Damele 
							
						 
					 
					
						
						
						
						
							
						
						
							0013b0970f 
							
						 
					 
					
						
						
							
							Minor layout adjustments - foundDb is misleading at that stage  
						
						
						
					 
					
						2012-03-15 16:07:16 +00:00 
						 
				 
			
				
					
						
							
							
								Miroslav Stampar 
							
						 
					 
					
						
						
						
						
							
						
						
							8cf5d260fd 
							
						 
					 
					
						
						
							
							Application Data is not a temporary directory writable by everybody  
						
						
						
					 
					
						2012-03-14 23:44:29 +00:00 
						 
				 
			
				
					
						
							
							
								Bernardo Damele 
							
						 
					 
					
						
						
						
						
							
						
						
							c735d846ee 
							
						 
					 
					
						
						
							
							The default temporary directory as to stay as is, do not touch this code snippet anymore please  
						
						
						
					 
					
						2012-03-14 22:39:46 +00:00 
						 
				 
			
				
					
						
							
							
								Miroslav Stampar 
							
						 
					 
					
						
						
						
						
							
						
						
							ca0d068575 
							
						 
					 
					
						
						
							
							distinguishing NULL from BLANK  
						
						
						
					 
					
						2012-03-14 13:52:23 +00:00 
						 
				 
			
				
					
						
							
							
								Miroslav Stampar 
							
						 
					 
					
						
						
						
						
							
						
						
							1d0c8a7f44 
							
						 
					 
					
						
						
							
							minor update  
						
						
						
					 
					
						2012-03-12 15:19:02 +00:00 
						 
				 
			
				
					
						
							
							
								Bernardo Damele 
							
						 
					 
					
						
						
						
						
							
						
						
							48592f2515 
							
						 
					 
					
						
						
							
							minor adjustments  
						
						
						
					 
					
						2012-03-09 18:34:18 +00:00 
						 
				 
			
				
					
						
							
							
								Bernardo Damele 
							
						 
					 
					
						
						
						
						
							
						
						
							be9b103b51 
							
						 
					 
					
						
						
							
							minor bug fix  
						
						
						
					 
					
						2012-03-09 18:02:50 +00:00 
						 
				 
			
				
					
						
							
							
								Bernardo Damele 
							
						 
					 
					
						
						
						
						
							
						
						
							012fc21b49 
							
						 
					 
					
						
						
							
							Improvements to column(s) search: now it's possible to search column(s) in provided table(s) across all databases, search column(s) across all tables in provided database(s) or let sqlmap alone identify the databases' tables - this is now implemented for error-based, union query and direct connection. Work is still required for boolean-based and time-based.  
						
						... 
						
						
						
						Adapted the queries.xml file accordingly 
						
					 
					
						2012-03-09 17:47:50 +00:00 
						 
				 
			
				
					
						
							
							
								Miroslav Stampar 
							
						 
					 
					
						
						
						
						
							
						
						
							c878dd3e5a 
							
						 
					 
					
						
						
							
							doing a dummy test for --os-shell in case of xp_cmdshell  
						
						
						
					 
					
						2012-03-09 14:21:41 +00:00 
						 
				 
			
				
					
						
							
							
								Bernardo Damele 
							
						 
					 
					
						
						
						
						
							
						
						
							d9e499af9f 
							
						 
					 
					
						
						
							
							Set Id property  
						
						
						
					 
					
						2012-03-09 12:05:21 +00:00 
						 
				 
			
				
					
						
							
							
								Bernardo Damele 
							
						 
					 
					
						
						
						
						
							
						
						
							7330dff255 
							
						 
					 
					
						
						
							
							Minor bug fix for --search -C so that now if not columns are found (with criteria specified, e.g. -D testdb -T testtable), it won't ask to dump for the entries  
						
						
						
					 
					
						2012-03-08 16:57:53 +00:00 
						 
				 
			
				
					
						
							
							
								Miroslav Stampar 
							
						 
					 
					
						
						
						
						
							
						
						
							e678219a8c 
							
						 
					 
					
						
						
							
							minor update  
						
						
						
					 
					
						2012-03-08 15:51:30 +00:00 
						 
				 
			
				
					
						
							
							
								Bernardo Damele 
							
						 
					 
					
						
						
						
						
							
						
						
							ae87df5670 
							
						 
					 
					
						
						
							
							leftover  
						
						
						
					 
					
						2012-03-08 15:45:33 +00:00 
						 
				 
			
				
					
						
							
							
								Bernardo Damele 
							
						 
					 
					
						
						
						
						
							
						
						
							4bc6f3f6c9 
							
						 
					 
					
						
						
							
							Minor bug fix so that --search -T tablename -D db1,db2 now correctly forges the query concatenating db1 and db2 with a OR, not an AND anymore  
						
						
						
					 
					
						2012-03-08 15:32:05 +00:00 
						 
				 
			
				
					
						
							
							
								Miroslav Stampar 
							
						 
					 
					
						
						
						
						
							
						
						
							68b9d48d0a 
							
						 
					 
					
						
						
							
							minor update  
						
						
						
					 
					
						2012-03-08 15:30:23 +00:00 
						 
				 
			
				
					
						
							
							
								Miroslav Stampar 
							
						 
					 
					
						
						
						
						
							
						
						
							2ab80bfb2c 
							
						 
					 
					
						
						
							
							minor bug fix  
						
						
						
					 
					
						2012-03-08 15:24:05 +00:00 
						 
				 
			
				
					
						
							
							
								Bernardo Damele 
							
						 
					 
					
						
						
						
						
							
						
						
							c79807f5fb 
							
						 
					 
					
						
						
							
							Minor layout adjustments  
						
						
						
					 
					
						2012-03-08 15:11:24 +00:00 
						 
				 
			
				
					
						
							
							
								Miroslav Stampar 
							
						 
					 
					
						
						
						
						
							
						
						
							761ec7529a 
							
						 
					 
					
						
						
							
							minor appereance fix  
						
						
						
					 
					
						2012-03-01 11:52:30 +00:00 
						 
				 
			
				
					
						
							
							
								Miroslav Stampar 
							
						 
					 
					
						
						
						
						
							
						
						
							8b9c5c66cc 
							
						 
					 
					
						
						
							
							code refactoring regarding charsetType inside inference/bisection  
						
						
						
					 
					
						2012-02-29 14:36:23 +00:00 
						 
				 
			
				
					
						
							
							
								Miroslav Stampar 
							
						 
					 
					
						
						
						
						
							
						
						
							10dd9096f7 
							
						 
					 
					
						
						
							
							one more just in case fix for safeSQLIdentificator naming on MSSQL --tables  
						
						
						
					 
					
						2012-02-29 14:05:53 +00:00 
						 
				 
			
				
					
						
							
							
								Miroslav Stampar 
							
						 
					 
					
						
						
						
						
							
						
						
							d06182347f 
							
						 
					 
					
						
						
							
							fixing few potential problems  
						
						
						
					 
					
						2012-02-29 13:56:40 +00:00 
						 
				 
			
				
					
						
							
							
								Miroslav Stampar 
							
						 
					 
					
						
						
						
						
							
						
						
							74b19a0386 
							
						 
					 
					
						
						
							
							minor update  
						
						
						
					 
					
						2012-02-25 10:43:10 +00:00 
						 
				 
			
				
					
						
							
							
								Miroslav Stampar 
							
						 
					 
					
						
						
						
						
							
						
						
							26b33154ab 
							
						 
					 
					
						
						
							
							optimal fix related to the last commit  
						
						
						
					 
					
						2012-02-24 14:28:41 +00:00 
						 
				 
			
				
					
						
							
							
								Miroslav Stampar 
							
						 
					 
					
						
						
						
						
							
						
						
							9d6fd2e507 
							
						 
					 
					
						
						
							
							bug fix for --schema --technique=BST  
						
						
						
					 
					
						2012-02-24 14:12:19 +00:00 
						 
				 
			
				
					
						
							
							
								Miroslav Stampar 
							
						 
					 
					
						
						
						
						
							
						
						
							f9d2971474 
							
						 
					 
					
						
						
							
							minor just in case fix  
						
						
						
					 
					
						2012-02-23 16:37:06 +00:00 
						 
				 
			
				
					
						
							
							
								Miroslav Stampar 
							
						 
					 
					
						
						
						
						
							
						
						
							6e54cb171f 
							
						 
					 
					
						
						
							
							minor code restyling  
						
						
						
					 
					
						2012-02-22 15:53:36 +00:00 
						 
				 
			
				
					
						
							
							
								Miroslav Stampar 
							
						 
					 
					
						
						
						
						
							
						
						
							61a25418a9 
							
						 
					 
					
						
						
							
							minor update  
						
						
						
					 
					
						2012-02-22 10:45:10 +00:00 
						 
				 
			
				
					
						
							
							
								Miroslav Stampar 
							
						 
					 
					
						
						
						
						
							
						
						
							b3bd4144f5 
							
						 
					 
					
						
						
							
							removing of unused imports together with some general code refactoring  
						
						
						
					 
					
						2012-02-22 10:40:11 +00:00 
						 
				 
			
				
					
						
							
							
								Bernardo Damele 
							
						 
					 
					
						
						
						
						
							
						
						
							f55ad46119 
							
						 
					 
					
						
						
							
							Use %TEMP% environment variable as temporary directory (--tmp-path overwrites this btw) folder with direct connection (-d). Via SQL injection, env variables do not work apparently  
						
						
						
					 
					
						2012-02-20 11:06:55 +00:00 
						 
				 
			
				
					
						
							
							
								Miroslav Stampar 
							
						 
					 
					
						
						
						
						
							
						
						
							08bf8c201f 
							
						 
					 
					
						
						
							
							few minor fixes  
						
						
						
					 
					
						2012-02-20 10:24:55 +00:00 
						 
				 
			
				
					
						
							
							
								Bernardo Damele 
							
						 
					 
					
						
						
						
						
							
						
						
							121148f27f 
							
						 
					 
					
						
						
							
							There was no point relying on a support table (sqlmapoutput) to get the stdout of executed OS commands when using direct connection (-d) and it saves also number of requests.  
						
						... 
						
						
						
						Also, BULK INSERT apparently does not work on MSSQL when running as Network Service (at least on Windows XP) so one more reason to avoid using support table.
Minor fix also to threat MSSQL's EXEC statements as SELECT ones 
						
					 
					
						2012-02-17 15:54:49 +00:00 
						 
				 
			
				
					
						
							
							
								Bernardo Damele 
							
						 
					 
					
						
						
						
						
							
						
						
							ebd40b3933 
							
						 
					 
					
						
						
							
							Minor bug fix to make --file-read and --os-bof syntactically work also with -d (direct connection)  
						
						
						
					 
					
						2012-02-17 15:16:05 +00:00 
						 
				 
			
				
					
						
							
							
								Miroslav Stampar 
							
						 
					 
					
						
						
						
						
							
						
						
							dcf7277a0f 
							
						 
					 
					
						
						
							
							some more refactorings  
						
						
						
					 
					
						2012-02-16 14:42:28 +00:00 
						 
				 
			
				
					
						
							
							
								Miroslav Stampar 
							
						 
					 
					
						
						
						
						
							
						
						
							e1f86c97c4 
							
						 
					 
					
						
						
							
							minor refactoring  
						
						
						
					 
					
						2012-02-16 09:46:41 +00:00 
						 
				 
			
				
					
						
							
							
								Miroslav Stampar 
							
						 
					 
					
						
						
						
						
							
						
						
							7bca926a0b 
							
						 
					 
					
						
						
							
							fixes, updates, patches  
						
						
						
					 
					
						2012-02-09 10:16:58 +00:00 
						 
				 
			
				
					
						
							
							
								Miroslav Stampar 
							
						 
					 
					
						
						
						
						
							
						
						
							948cf25de4 
							
						 
					 
					
						
						
							
							more consistent  
						
						
						
					 
					
						2012-02-09 09:53:40 +00:00 
						 
				 
			
				
					
						
							
							
								Miroslav Stampar 
							
						 
					 
					
						
						
						
						
							
						
						
							980367b7b2 
							
						 
					 
					
						
						
							
							minor update  
						
						
						
					 
					
						2012-02-09 09:48:47 +00:00 
						 
				 
			
				
					
						
							
							
								Miroslav Stampar 
							
						 
					 
					
						
						
						
						
							
						
						
							1d4b10dbd1 
							
						 
					 
					
						
						
							
							bug fix  
						
						
						
					 
					
						2012-02-08 13:55:50 +00:00 
						 
				 
			
				
					
						
							
							
								Miroslav Stampar 
							
						 
					 
					
						
						
						
						
							
						
						
							2662fe84f7 
							
						 
					 
					
						
						
							
							minor update  
						
						
						
					 
					
						2012-02-08 12:02:50 +00:00 
						 
				 
			
				
					
						
							
							
								Miroslav Stampar 
							
						 
					 
					
						
						
						
						
							
						
						
							85a4ef6593 
							
						 
					 
					
						
						
							
							minor update  
						
						
						
					 
					
						2012-02-08 12:00:03 +00:00 
						 
				 
			
				
					
						
							
							
								Miroslav Stampar 
							
						 
					 
					
						
						
						
						
							
						
						
							f7bf1fbe94 
							
						 
					 
					
						
						
							
							upgrade/fixes for direct DBMS access  
						
						
						
					 
					
						2012-02-07 10:46:55 +00:00 
						 
				 
			
				
					
						
							
							
								Miroslav Stampar 
							
						 
					 
					
						
						
						
						
							
						
						
							e94f86a1ad 
							
						 
					 
					
						
						
							
							minor update  
						
						
						
					 
					
						2012-02-03 15:46:28 +00:00 
						 
				 
			
				
					
						
							
							
								Miroslav Stampar 
							
						 
					 
					
						
						
						
						
							
						
						
							22f4d5650f 
							
						 
					 
					
						
						
							
							fix for retrieving version of backend OS on MSSQL  
						
						
						
					 
					
						2012-02-03 15:42:36 +00:00 
						 
				 
			
				
					
						
							
							
								Miroslav Stampar 
							
						 
					 
					
						
						
						
						
							
						
						
							a48fc4efec 
							
						 
					 
					
						
						
							
							minor update  
						
						
						
					 
					
						2012-02-03 15:32:23 +00:00 
						 
				 
			
				
					
						
							
							
								Miroslav Stampar 
							
						 
					 
					
						
						
						
						
							
						
						
							e3466fa5d8 
							
						 
					 
					
						
						
							
							minor update  
						
						
						
					 
					
						2012-02-03 15:28:11 +00:00 
						 
				 
			
				
					
						
							
							
								Miroslav Stampar 
							
						 
					 
					
						
						
						
						
							
						
						
							2136b3447d 
							
						 
					 
					
						
						
							
							better solution  
						
						
						
					 
					
						2012-02-03 15:22:21 +00:00 
						 
				 
			
				
					
						
							
							
								Miroslav Stampar 
							
						 
					 
					
						
						
						
						
							
						
						
							f86c365694 
							
						 
					 
					
						
						
							
							added one more failsafe for MSSQL --tables  
						
						
						
					 
					
						2012-02-03 10:56:39 +00:00