Miroslav Stampar
|
b43334165d
|
update regarding brute forcing
|
2010-11-09 16:53:33 +00:00 |
|
Miroslav Stampar
|
a7fa8d4975
|
update regarding brute force retrieval of table names and table column names
|
2010-11-09 16:15:55 +00:00 |
|
Miroslav Stampar
|
7752b5efe9
|
minor update
|
2010-11-09 09:51:54 +00:00 |
|
Miroslav Stampar
|
221f976fbd
|
minor update
|
2010-11-09 01:23:54 +00:00 |
|
Bernardo Damele
|
45ec8c169a
|
Consistency between --*-test switches/output
|
2010-11-08 16:46:25 +00:00 |
|
Miroslav Stampar
|
fda8752dca
|
revert of some HTTP headers handling
|
2010-11-08 13:26:45 +00:00 |
|
Bernardo Damele
|
78d7b17483
|
More replacements for refactoring.
Minor layout adjustments.
Alignment of conffile/optiondict/cmdline parameters.
|
2010-11-08 12:36:48 +00:00 |
|
Miroslav Stampar
|
eb999de0f1
|
added Range handler (dealing with 206 HTTP messages)
|
2010-11-08 12:26:13 +00:00 |
|
Miroslav Stampar
|
a3de10e3a2
|
new option -t
|
2010-11-08 11:22:47 +00:00 |
|
Miroslav Stampar
|
0d0e2a2228
|
minor update
|
2010-11-08 09:49:57 +00:00 |
|
Miroslav Stampar
|
d551423379
|
further enum refactoring
|
2010-11-08 09:44:32 +00:00 |
|
Miroslav Stampar
|
862395ced1
|
further refactoring (all enumerations are now put into enums.py)
|
2010-11-08 09:20:02 +00:00 |
|
Miroslav Stampar
|
8e44aa605a
|
refactoring regarding injection place (more left)
|
2010-11-08 08:02:36 +00:00 |
|
Bernardo Damele
|
b6da946883
|
Added one new verbose level, -v 3 now shows the full injected payload.
Fixed also -d verbose output.
|
2010-11-07 22:34:29 +00:00 |
|
Miroslav Stampar
|
d3e7e89e60
|
major improvement with display of payloads (all payloads are displayed now) and removal of "pesky" spaces
|
2010-11-07 21:18:09 +00:00 |
|
Bernardo Damele
|
73e85bfc75
|
Minor bug fix: the --tamper scripts have to be provided from the highest to the lowest priority, if not, sqlmap will reverse-sort them automatically as per user's choice. Tested, works now
|
2010-11-07 16:24:44 +00:00 |
|
Bernardo Damele
|
9669dbdae1
|
Minor cosmetics and adjustments
|
2010-11-07 15:34:52 +00:00 |
|
Miroslav Stampar
|
afba26a53f
|
tiny winy update
|
2010-11-07 09:00:45 +00:00 |
|
Miroslav Stampar
|
2b8c942b4a
|
more update
|
2010-11-07 08:58:24 +00:00 |
|
Miroslav Stampar
|
16f52ab7ba
|
cosmetic fix
|
2010-11-07 08:13:20 +00:00 |
|
Miroslav Stampar
|
8d93bdfa4b
|
minor update (optimization) regarding -a switch
|
2010-11-07 08:11:56 +00:00 |
|
Miroslav Stampar
|
508b9cc763
|
dynamicity engine update
|
2010-11-07 00:12:00 +00:00 |
|
Miroslav Stampar
|
3619fc5127
|
minor update
|
2010-11-06 08:31:11 +00:00 |
|
Miroslav Stampar
|
06760182f1
|
cosmetics
|
2010-11-05 16:08:42 +00:00 |
|
Miroslav Stampar
|
f3e3420677
|
fix for a bug reported by Marcos Mateos Garcia (ValueError)
|
2010-11-05 11:34:09 +00:00 |
|
Miroslav Stampar
|
3f0a443b83
|
some updates
|
2010-11-04 23:08:59 +00:00 |
|
Miroslav Stampar
|
e1cec8c02b
|
fix for all that stable, dynamic mambo jambo :)
|
2010-11-04 16:44:34 +00:00 |
|
Miroslav Stampar
|
3aba0b1bec
|
minor update
|
2010-11-04 12:51:04 +00:00 |
|
Bernardo Damele
|
0e9515c540
|
Cosmetics
|
2010-11-04 12:21:06 +00:00 |
|
Miroslav Stampar
|
18aea251b3
|
added concept of tamper script priority
|
2010-11-04 10:29:40 +00:00 |
|
Miroslav Stampar
|
303359e8b1
|
refix
|
2010-11-04 09:34:04 +00:00 |
|
Bernardo Damele
|
b152b1a04d
|
Cosmetics
|
2010-11-03 22:07:13 +00:00 |
|
Miroslav Stampar
|
6adee3792a
|
removed all trailing spaces from blank lines
|
2010-11-03 10:08:27 +00:00 |
|
Miroslav Stampar
|
cd0d4135ac
|
implemented --banner for MaxDB and some minor fixes
|
2010-11-02 20:51:55 +00:00 |
|
Miroslav Stampar
|
70f6eab715
|
minor update
|
2010-11-02 12:08:28 +00:00 |
|
Miroslav Stampar
|
685a8e7d2c
|
refactoring of hard coded dbms names
|
2010-11-02 11:59:24 +00:00 |
|
Miroslav Stampar
|
5269cb8c08
|
some code refactoring and beautification
|
2010-11-02 09:06:38 +00:00 |
|
Miroslav Stampar
|
13e93f564a
|
one bug fix in dynamic content engine and some code refactoring
|
2010-11-02 07:32:08 +00:00 |
|
Miroslav Stampar
|
73b33ed765
|
fix for a bug reported by Ulisses Castro (Too many open files) - also, added an important caching mechanism with thread safe logic
|
2010-11-01 20:56:13 +00:00 |
|
Bernardo Damele
|
f3cc41601c
|
Added check on --first and --last values
|
2010-10-31 14:42:13 +00:00 |
|
Bernardo Damele
|
0ffffef088
|
Implemented --tamper for direct connection too (-d)
|
2010-10-31 14:22:32 +00:00 |
|
Bernardo Damele
|
c7b374534b
|
Minor cosmetics
|
2010-10-31 12:29:00 +00:00 |
|
Bernardo Damele
|
617edf7fc2
|
Minor bug fix
|
2010-10-31 12:24:19 +00:00 |
|
Bernardo Damele
|
fcada4df0f
|
Removed debug print
|
2010-10-31 12:21:22 +00:00 |
|
Bernardo Damele
|
2a2f949275
|
Minor bug fix
|
2010-10-31 12:20:38 +00:00 |
|
Bernardo Damele
|
264247d318
|
revert of a stupid commit
|
2010-10-31 12:09:55 +00:00 |
|
Bernardo Damele
|
2fb059a644
|
Bug fix
|
2010-10-31 12:02:20 +00:00 |
|
Bernardo Damele
|
9d08cb3a6f
|
Revert r2209 and minor code refactoring
|
2010-10-31 11:51:45 +00:00 |
|
Bernardo Damele
|
3869ccebe8
|
Minor code refactoring
|
2010-10-31 11:17:51 +00:00 |
|
Bernardo Damele
|
6afc9bffaa
|
Minor bug fix: there will always be only one pair of delimiters as we add it for each place
|
2010-10-31 11:09:29 +00:00 |
|
Miroslav Stampar
|
0125198210
|
minor fix
|
2010-10-29 21:19:28 +00:00 |
|
Miroslav Stampar
|
5a38ac7ea9
|
important update regarding (Bug #209) - probably more will be needed
|
2010-10-29 16:11:50 +00:00 |
|
Bernardo Damele
|
b3b2c3864a
|
Minor code refactoring
|
2010-10-29 10:51:09 +00:00 |
|
Miroslav Stampar
|
d75578c81f
|
some update regarding common tables
|
2010-10-29 09:00:51 +00:00 |
|
Bernardo Damele
|
43de8247ac
|
Code refactoring
|
2010-10-27 20:39:50 +00:00 |
|
Bernardo Damele
|
d554ffc0ae
|
yes, I am quite paranoid with cosmetics
|
2010-10-27 10:37:54 +00:00 |
|
Miroslav Stampar
|
8803096343
|
some update regarding beep()
|
2010-10-26 08:32:58 +00:00 |
|
Miroslav Stampar
|
b9ff91b6e9
|
update of beep
|
2010-10-26 06:30:27 +00:00 |
|
Miroslav Stampar
|
9ec9d223e1
|
minor
|
2010-10-26 06:08:40 +00:00 |
|
Bernardo Damele
|
f5904d0bc0
|
Major bug fix to --union-test
|
2010-10-25 23:39:55 +00:00 |
|
Bernardo Damele
|
7effd0c301
|
Cosmetics
|
2010-10-25 22:54:56 +00:00 |
|
Miroslav Stampar
|
73eea81b3a
|
minor cosmetics
|
2010-10-25 19:45:53 +00:00 |
|
Miroslav Stampar
|
d7bf94d4d6
|
fix for --beep
|
2010-10-25 19:16:42 +00:00 |
|
Miroslav Stampar
|
228ac0cde5
|
refactoring regarding --check-payload
|
2010-10-25 18:38:54 +00:00 |
|
Bernardo Damele
|
7c343c2d67
|
Forgot
|
2010-10-25 16:34:43 +00:00 |
|
Bernardo Damele
|
215175e3b7
|
Minor code adjustments
|
2010-10-25 14:11:47 +00:00 |
|
Miroslav Stampar
|
24c5d7b313
|
code refactoring
|
2010-10-25 14:06:56 +00:00 |
|
Miroslav Stampar
|
9c94a233a1
|
conf.md5hash thrown out
|
2010-10-25 13:52:21 +00:00 |
|
Miroslav Stampar
|
9a3879feba
|
keeping things neat and tidy
|
2010-10-25 12:33:49 +00:00 |
|
Miroslav Stampar
|
71543092b7
|
update regarding comparison engine
|
2010-10-25 12:00:59 +00:00 |
|
Miroslav Stampar
|
8df7c88174
|
implementation of a new dynamic content removal engine
|
2010-10-25 10:41:37 +00:00 |
|
Miroslav Stampar
|
2194d47782
|
setting conf.threads when -o switch is used
|
2010-10-22 19:10:45 +00:00 |
|
Bernardo Damele
|
1288def3b7
|
Cosmetics
|
2010-10-22 14:23:14 +00:00 |
|
Miroslav Stampar
|
a9b50a1e82
|
minor fix
|
2010-10-21 23:09:57 +00:00 |
|
Miroslav Stampar
|
bc79eec702
|
removed queriesfile.py, implemented XMLObject approach (still shell.py and udf.py TODO)
|
2010-10-21 13:13:12 +00:00 |
|
Miroslav Stampar
|
be443c6947
|
refactoring regarding __START__,...
|
2010-10-21 09:51:07 +00:00 |
|
Bernardo Damele
|
d8bfa76dca
|
Minor possible bug fix
|
2010-10-20 22:12:53 +00:00 |
|
Bernardo Damele
|
e73e06069b
|
Minor code refactoring
|
2010-10-20 22:09:03 +00:00 |
|
Bernardo Damele
|
3b5c5cc457
|
Minor possible bug fix
|
2010-10-20 21:49:05 +00:00 |
|
Bernardo Damele
|
f95098693f
|
Removed unused functions
|
2010-10-20 21:16:28 +00:00 |
|
Miroslav Stampar
|
e24bff0497
|
nice refactoring
|
2010-10-20 09:46:57 +00:00 |
|
Miroslav Stampar
|
5d3cbec457
|
no more regex. web server independent.
|
2010-10-20 09:35:46 +00:00 |
|
Bernardo Damele
|
0817d1b78d
|
Cosmetics
|
2010-10-19 23:09:30 +00:00 |
|
Miroslav Stampar
|
8776db872c
|
minor refactoring
|
2010-10-19 23:05:24 +00:00 |
|
Miroslav Stampar
|
1b376c99a6
|
removed temp dictionary and replaced with kb.misc
|
2010-10-19 23:00:19 +00:00 |
|
Bernardo Damele
|
813f44da16
|
Minor bug fix for MSSQL connector --tables option
|
2010-10-19 22:11:17 +00:00 |
|
Miroslav Stampar
|
8d9201a3dc
|
minor update
|
2010-10-19 18:23:21 +00:00 |
|
Miroslav Stampar
|
4009ef385e
|
more update regarding error based injection support
|
2010-10-19 18:17:34 +00:00 |
|
Miroslav Stampar
|
ccda92536f
|
added header
|
2010-10-19 09:13:30 +00:00 |
|
Miroslav Stampar
|
264e0a6fda
|
added support for displaying revision number at unhandled exception message
|
2010-10-19 08:55:14 +00:00 |
|
Miroslav Stampar
|
729156e91c
|
proper fix
|
2010-10-18 21:39:46 +00:00 |
|
Miroslav Stampar
|
3d5494845c
|
minor bug fix
|
2010-10-18 21:32:50 +00:00 |
|
Bernardo Damele
|
1d74036ee3
|
Minor cosmetic fixes
|
2010-10-18 11:34:53 +00:00 |
|
Miroslav Stampar
|
6b70dadfb2
|
minor cosmetics
|
2010-10-18 09:09:22 +00:00 |
|
Miroslav Stampar
|
149837ebf5
|
added the same for proxy authorization header
|
2010-10-18 09:02:56 +00:00 |
|
Miroslav Stampar
|
aaebb4336e
|
fix for Bug #202
|
2010-10-18 08:54:08 +00:00 |
|
Bernardo Damele
|
64b9f94fcf
|
Renamed --common-prediction switch to --predict-output
|
2010-10-16 23:50:13 +00:00 |
|
Bernardo Damele
|
6211915da5
|
Cosmetic fix
|
2010-10-16 22:31:16 +00:00 |
|
Bernardo Damele
|
7b71262de6
|
Cosmetic fix
|
2010-10-16 22:07:29 +00:00 |
|
Bernardo Damele
|
a2997a6dce
|
Minor bug fix to --tamper
|
2010-10-16 21:55:34 +00:00 |
|