Bernardo Damele
|
c211255773
|
replaced outfile with dumpfile so works even if the original statement outputs blob
|
2014-03-21 11:01:57 +00:00 |
|
Miroslav Stampar
|
d405fc1157
|
Minor update (for the consistency sake)
|
2014-02-16 22:04:12 +01:00 |
|
Miroslav Stampar
|
58eac364a2
|
Bug fix
|
2014-02-16 21:57:14 +01:00 |
|
Miroslav Stampar
|
dfa727cbc5
|
Fix for a same bug mentioned in last commit
|
2014-02-16 21:47:14 +01:00 |
|
Miroslav Stampar
|
43df4efd11
|
Bug fix (bad idea is to do os.path.join on web URLs - especially on Windows OS)
|
2014-02-16 21:44:57 +01:00 |
|
Bernardo Damele
|
be6767b3b0
|
minor fix for command execution via web shell
|
2014-02-10 09:59:57 +00:00 |
|
Miroslav Stampar
|
0e44132778
|
Removing unused imports
|
2014-02-01 21:49:12 +01:00 |
|
Bernardo Damele
|
1505f1dc74
|
removed useless sink
|
2014-01-13 23:55:32 +00:00 |
|
Bernardo Damele
|
124ebefc7f
|
code cleanup
|
2014-01-13 23:48:15 +00:00 |
|
Bernardo Damele
|
43a4e85749
|
updated copyright
|
2014-01-13 17:24:49 +00:00 |
|
Bernardo Damele
|
dfa9076a70
|
fixed and improved web shell upload in MySQL (it was actually broken since fc57b7565d )
|
2014-01-13 17:12:37 +00:00 |
|
Miroslav Stampar
|
95ed6b7203
|
Minor patch (Issue #470)
|
2013-06-24 14:37:45 +02:00 |
|
Bernardo Damele
|
a72096a345
|
slightly more appropriate definition of output variable
|
2013-06-19 20:25:01 +01:00 |
|
Bernardo Damele
|
cae108d9fc
|
careful at merging pull requests with TABs (#466)
|
2013-06-19 19:49:53 +01:00 |
|
Meatballs
|
c5087399c1
|
Fix exception if init technique not available
|
2013-06-16 10:47:27 +01:00 |
|
Meatballs
|
2c98507f1e
|
Add better error msg
|
2013-06-16 10:27:08 +01:00 |
|
Meatballs
|
caa326774c
|
Fallback to blind
|
2013-06-16 10:22:20 +01:00 |
|
stamparm
|
8fbf4b11d2
|
Trivial update regarding last commit
|
2013-05-29 15:45:13 +02:00 |
|
Miroslav Stampar
|
e18796dbe1
|
Minor style update
|
2013-05-25 18:00:20 +02:00 |
|
stamparm
|
214d9aaf4b
|
Language fix
|
2013-04-30 14:06:04 +02:00 |
|
stamparm
|
3266c6c1f1
|
Language fix
|
2013-04-30 14:06:04 +02:00 |
|
stamparm
|
ae6ce7db30
|
Removal of unused imports
|
2013-03-20 10:44:15 +01:00 |
|
Miroslav Stampar
|
8acf033715
|
Code refactoring
|
2013-03-19 19:24:14 +01:00 |
|
Bernardo Damele
|
0c79d7b1e2
|
unnecessary import
|
2013-02-14 18:33:47 +00:00 |
|
Bernardo Damele
|
614ff6029d
|
working on #396 - handle the case when we dont have a web backdoor/file stager for the language API, added a few more log messages to give further information about what is going on, minor bug fix to docRoot
|
2013-02-14 18:31:14 +00:00 |
|
Bernardo Damele
|
3b38b20176
|
working on #396 - adaptation for the verification phase
|
2013-02-14 18:29:55 +00:00 |
|
Bernardo Damele
|
261db6ed4f
|
working on #396 - verify shellcodeexec executable has been properly uploaded
|
2013-02-14 18:29:35 +00:00 |
|
Bernardo Damele
|
4d5ecc3b03
|
working on #396 - verify icmpsh executable has been properly uploaded
|
2013-02-14 18:28:48 +00:00 |
|
Bernardo Damele
|
66cee83ca4
|
if needed, allow to reinitialize the environment for takeover - issue #396
|
2013-02-14 17:39:19 +00:00 |
|
Bernardo Damele
|
d42d28392a
|
avoid tracebacks because the parameter does not exist
|
2013-02-14 13:18:33 +00:00 |
|
Bernardo Damele
|
4b9d8ed673
|
reverted a previous commit as not all distributions create a link file /usr/bin/python2 to the Python interpreter
|
2013-02-14 11:32:17 +00:00 |
|
Bernardo Damele
|
2267dd8f47
|
working on #392 to fix --os-cmd and --os-shell output parsing
|
2013-02-14 11:31:20 +00:00 |
|
Bernardo Damele
|
a67ef4117f
|
make sure to use Python 2 interpreter when default system Python is version 3
|
2013-02-14 11:25:04 +00:00 |
|
Miroslav Stampar
|
dd6f50a00e
|
Removing unused imports
|
2013-02-13 11:15:24 +01:00 |
|
Miroslav Stampar
|
dc41484b3f
|
Refactoring of funcionality for finding out if stacking is available
|
2013-02-13 09:57:16 +01:00 |
|
Miroslav Stampar
|
7c06a937e5
|
Minor refactoring
|
2013-02-09 20:21:17 +01:00 |
|
Bernardo Damele
|
f970b4f240
|
minor adjustment fixing the regression test stall
|
2013-02-09 12:19:21 +00:00 |
|
Bernardo Damele
|
e48181e28d
|
another attempt to fix the stall during regression test
|
2013-02-09 12:16:56 +00:00 |
|
Bernardo Damele
|
138a846cf1
|
possible fix for regression test stall
|
2013-02-09 10:50:06 +00:00 |
|
Bernardo Damele
|
1596b9ed59
|
revert
|
2013-02-08 16:43:49 +00:00 |
|
Bernardo Damele
|
98864e425f
|
minor "fix"
|
2013-02-08 16:30:34 +00:00 |
|
Bernardo Damele
|
8b510c55fb
|
minor code cleanup
|
2013-02-08 16:29:16 +00:00 |
|
Miroslav Stampar
|
5aaf7f1aa6
|
BUG fix
|
2013-02-08 16:44:30 +01:00 |
|
Miroslav Stampar
|
c0e59d94a9
|
Better naming
|
2013-02-08 16:28:58 +01:00 |
|
Miroslav Stampar
|
cdfe43560b
|
Update for an Issue #207 (and a potential patch for regression tests)
|
2013-02-08 16:20:48 +01:00 |
|
Miroslav Stampar
|
f41460f8d8
|
Better naming
|
2013-01-29 20:53:11 +01:00 |
|
Bernardo Damele
|
f4028bd7d2
|
minor adjustment
|
2013-01-23 02:10:38 +00:00 |
|
Bernardo Damele
|
d8a0e7eacb
|
fixes #187
|
2013-01-23 01:27:01 +00:00 |
|
Bernardo Damele
|
dea15b5892
|
notify user if --udf-inject is provided but no stacked queries SQLi is detected
|
2013-01-22 18:28:48 +00:00 |
|
Bernardo Damele
|
adf97e630f
|
add possibility to provide a list of web server document root possible directories for web shell upload in --os-cmd and --os-shell for MySQL
|
2013-01-19 18:04:33 +00:00 |
|