Commit Graph

  • 3a3f9c5ea1 Trivial commit related to the last one stamparm 2013-03-01 12:09:03 +0100
  • 55f33da85a Fix for invalid logical test cases stamparm 2013-03-01 12:04:49 +0100
  • 440b484bf6 Minor update (one more just in case dummy request in false positive check for time-based injections - when DBMS could be unresponsive a bit due to previous heavy-queries) stamparm 2013-03-01 10:59:04 +0100
  • e42350ddce Minor style update Miroslav Stampar 2013-02-28 20:28:34 +0100
  • 0e89cc62a2 Adding a hidden switch --dummy used for dummy runs (getPage() returns random data) - usefull for testing purposes for skipping connections Miroslav Stampar 2013-02-28 20:20:08 +0100
  • bf05709841 Addin new WAF scripts Miroslav Stampar 2013-02-28 18:54:56 +0100
  • b5cc1a99db Minor fix (KONA uses same core set rules) Miroslav Stampar 2013-02-28 18:54:12 +0100
  • 9ef79df23d Cleaning up cases with Set-Cookie (conf.cj is handling it automatically; also, default redirector needed to be patched) stamparm 2013-02-28 13:51:08 +0100
  • aa59266804 Minor update stamparm 2013-02-27 14:28:54 +0100
  • 2e2658d4fa Adding new WAF scripts stamparm 2013-02-26 16:06:19 +0100
  • be50192d8d Refactoring WAF scripts stamparm 2013-02-26 15:54:50 +0100
  • e5835dc74f Update for WAF scripts stamparm 2013-02-26 15:30:11 +0100
  • 6c38afab35 Minor update stamparm 2013-02-26 14:49:37 +0100
  • 17fa0f568c Minor patch for an Issue #404 stamparm 2013-02-26 12:54:54 +0100
  • ecbcd4afe6 Minor update stamparm 2013-02-26 12:50:43 +0100
  • 0835fb2e0f Merge branch 'master' of github.com:sqlmapproject/sqlmap Bernardo Damele 2013-02-26 10:20:19 +0000
  • 88cda87451 Merge branch 'master' of github.com:sqlmapproject/sqlmap Bernardo Damele 2013-02-26 10:19:23 +0000
  • 2fc9396bb0 Minor fix for TrafficShield WAF script stamparm 2013-02-26 11:19:12 +0100
  • af4762ace2 Minor style update stamparm 2013-02-26 11:16:09 +0100
  • c85d57522c Merge branch 'master' of github.com:sqlmapproject/sqlmap Bernardo Damele 2013-02-26 10:12:25 +0000
  • 34ce8742f1 removed leftover Bernardo Damele 2013-02-26 10:12:18 +0000
  • f6b43b4b13 Minor update for an Issue #290 stamparm 2013-02-26 11:08:06 +0100
  • 9d81be7af5 Removing redundant piece of code stamparm 2013-02-25 14:12:57 +0100
  • dc9dc233b6 Adding a comment stamparm 2013-02-25 14:07:20 +0100
  • 0d2138a4a0 Minor fix for escaping unicode strings in SQLite escaper stamparm 2013-02-25 14:06:46 +0100
  • e5e39bc682 Fix for an Issue #410 stamparm 2013-02-25 11:07:30 +0100
  • 6fbd902265 Minor refactoring (Issue #411) stamparm 2013-02-25 10:44:04 +0100
  • bdf72b0ffa Minor fix stamparm 2013-02-22 17:34:53 +0100
  • 7127869ede Minor bug fix (live test specific verbosity should be valid only inside of it) stamparm 2013-02-22 17:26:48 +0100
  • 68ce51bfd4 Changing from warn to info for no WAF found stamparm 2013-02-22 12:15:38 +0100
  • ad471368f5 Fixing a display bug (cases where messages are just appended after the readInput line in batch mode) introduced with b472d9809a stamparm 2013-02-22 11:42:09 +0100
  • 0bbbfc2eac Adding a small warning message (related to the Issue #407) stamparm 2013-02-22 11:12:41 +0100
  • 42cbd94fa4 Better update regarding 6acb2480b8 stamparm 2013-02-22 10:49:45 +0100
  • 44a46d2b10 Fix for an Issue #409 stamparm 2013-02-22 10:18:22 +0100
  • 6acb2480b8 Adding WAF script for SecureIIS Miroslav Stampar 2013-02-21 21:34:26 +0100
  • c555120c1f Adding WAF script for Microsoft ISA Server Miroslav Stampar 2013-02-21 21:13:48 +0100
  • 229e4e167b Minor cosmetics Miroslav Stampar 2013-02-21 21:06:31 +0100
  • 6058eecba0 Adding WAF script for WebKnight Miroslav Stampar 2013-02-21 21:04:49 +0100
  • 09b775d3e2 Merge 2479cb5ec8 into 3a8c0cd3a2 Meng Dong 2013-02-21 05:54:12 -0800
  • 3a8c0cd3a2 Minor style update stamparm 2013-02-21 14:52:56 +0100
  • fc554e5b99 Update for an doc/THANKS (Issue #290) stamparm 2013-02-21 14:51:04 +0100
  • 29ba43ee6c Unhidding switch '--identify-waf' (Issue #290) stamparm 2013-02-21 14:48:19 +0100
  • 08f0670aca Minor refactoring for an Issue #290 stamparm 2013-02-21 14:39:22 +0100
  • 8e49872d7c Finalizing implementation for an Issue #290 stamparm 2013-02-21 14:33:12 +0100
  • 6a2129268d Update of year in COPYING file stamparm 2013-02-21 12:48:12 +0100
  • 6b2981ef4e Update for an Issue #290 (adding tamper-like scripts into (new) directory waf) stamparm 2013-02-21 11:14:57 +0100
  • f593e1d30f Reverting last commit as there is bunch of similar Miroslav Stampar 2013-02-20 17:35:36 +0100
  • e2b7384921 Adding a new test case (--sql-query) stamparm 2013-02-20 14:10:39 +0100
  • ba015608c6 Update for special cases stamparm 2013-02-19 10:12:47 +0100
  • 69063947b6 Debug message should go with logging.DEBUG stamparm 2013-02-19 09:46:51 +0100
  • d7247a51ee do not prompt constantly if the page is not found Bernardo Damele 2013-02-18 18:08:20 +0000
  • 6c8e8e2a0f Minor fix Miroslav Stampar 2013-02-18 15:23:55 +0100
  • 7f293afe74 Proper escaping for SQL identificators in Oracle (also, revert for 9b5f33560b) Miroslav Stampar 2013-02-18 15:18:53 +0100
  • f817105db3 Minor bug fix Miroslav Stampar 2013-02-18 14:40:39 +0100
  • 75a9404cb5 Bug fix (unenclosed 'SELECT * FROM user' returns result for a system function user <- previous results were illegal) Miroslav Stampar 2013-02-18 14:15:48 +0100
  • 5c099efccc Fix for an Issue #401 Miroslav Stampar 2013-02-18 11:38:01 +0100
  • 6bacbdb031 Merge branch 'master' of github.com:sqlmapproject/sqlmap Bernardo Damele 2013-02-15 17:12:09 +0000
  • 5abca52924 added one more test case Bernardo Damele 2013-02-15 17:11:40 +0000
  • 9b5f33560b Oracle is too specific (only column names can be enclosed) - removing it Miroslav Stampar 2013-02-15 17:36:04 +0100
  • bf82506c1b Oracle can't enclose table names with double quotations Miroslav Stampar 2013-02-15 17:34:12 +0100
  • 1b3d749488 Proper fix related to the last commit/revert Miroslav Stampar 2013-02-15 17:11:53 +0100
  • 5a793cbc7c Minor revert Miroslav Stampar 2013-02-15 17:09:25 +0100
  • 046f347f5d Minor fix Miroslav Stampar 2013-02-15 17:08:50 +0100
  • 834ae6aac0 Another minor update Miroslav Stampar 2013-02-15 16:58:02 +0100
  • 799bd51c2e Minor fix when two readInput/dataToStdout are called one at a time Miroslav Stampar 2013-02-15 16:55:30 +0100
  • 97c06854a4 Minor fixes Miroslav Stampar 2013-02-15 16:48:58 +0100
  • 0e7f771be6 minor adjustment Bernardo Damele 2013-02-15 16:28:09 +0000
  • 35aa785870 bug fix to make --predict-output work also with time-based technique Bernardo Damele 2013-02-15 16:25:33 +0000
  • 014e4e0055 Minor represenation fix Miroslav Stampar 2013-02-15 14:48:24 +0100
  • 2479cb5ec8 add waf vendor detection (from waffit) - #290 whenov 2013-02-15 21:37:43 +0800
  • 67157fa2ba Some more minor fixes Miroslav Stampar 2013-02-15 14:26:50 +0100
  • 63ddeb9008 unnecessary variable Bernardo Damele 2013-02-15 13:26:28 +0000
  • b1c0cabde5 Minor fixes Miroslav Stampar 2013-02-15 14:21:51 +0100
  • 345d10a9e0 Consistency fix (everywhere else we show unsafe format of identificator names) Miroslav Stampar 2013-02-15 14:05:14 +0100
  • 2fb599619a Bug fix Miroslav Stampar 2013-02-15 13:54:42 +0100
  • b472d9809a another consistency fix to readInput() Bernardo Damele 2013-02-15 09:35:09 +0000
  • 32c8c67888 Merge branch 'master' of github.com:sqlmapproject/sqlmap Bernardo Damele 2013-02-15 09:29:41 +0000
  • 20c5f9a030 consistency fix Bernardo Damele 2013-02-15 09:29:36 +0000
  • 11bcf28d86 Fix for an Issue #399 Miroslav Stampar 2013-02-15 10:04:13 +0100
  • 5d068896a9 Minor bug fix Miroslav Stampar 2013-02-15 09:54:51 +0100
  • 87db5d0dab minor bug fix to avoid duplicates - #297 Bernardo Damele 2013-02-15 00:53:05 +0000
  • c3f1e196e1 added missing parameter Bernardo Damele 2013-02-15 00:43:46 +0000
  • 4727589135 code consistency Bernardo Damele 2013-02-15 00:17:13 +0000
  • 515be4ee0b Minor just in case commit related to the last one Miroslav Stampar 2013-02-14 19:58:10 +0100
  • fef60b73f4 Minor update for proper display of [PAYLOAD] in JSON/XML/SOAP cases Miroslav Stampar 2013-02-14 19:53:12 +0100
  • 0c79d7b1e2 unnecessary import Bernardo Damele 2013-02-14 18:33:47 +0000
  • d8942d2ae0 fixes #396 - adapted the engine to properly verify all steps of takeover were successul, minor code refactoring too Bernardo Damele 2013-02-14 18:32:22 +0000
  • 614ff6029d working on #396 - handle the case when we dont have a web backdoor/file stager for the language API, added a few more log messages to give further information about what is going on, minor bug fix to docRoot Bernardo Damele 2013-02-14 18:31:14 +0000
  • 3b38b20176 working on #396 - adaptation for the verification phase Bernardo Damele 2013-02-14 18:29:55 +0000
  • 261db6ed4f working on #396 - verify shellcodeexec executable has been properly uploaded Bernardo Damele 2013-02-14 18:29:35 +0000
  • 4d5ecc3b03 working on #396 - verify icmpsh executable has been properly uploaded Bernardo Damele 2013-02-14 18:28:48 +0000
  • 66cee83ca4 if needed, allow to reinitialize the environment for takeover - issue #396 Bernardo Damele 2013-02-14 17:39:19 +0000
  • d91530f885 Merge branch 'master' of github.com:sqlmapproject/sqlmap Bernardo Damele 2013-02-14 17:16:55 +0000
  • 52264f544e minor fix for Windows file paths, do not strip the windows drive letter Bernardo Damele 2013-02-14 17:16:49 +0000
  • fdf00e4842 Fix for an Issue #397 Miroslav Stampar 2013-02-14 17:14:36 +0100
  • 368a2fd297 Fix for an Issue #393 Miroslav Stampar 2013-02-14 16:18:16 +0100
  • f97f575018 Trivial restyling Miroslav Stampar 2013-02-14 15:41:27 +0100
  • 605c5b089e Minor style update Miroslav Stampar 2013-02-14 15:34:03 +0100
  • 06d8547916 Implementation for an Issue #394 Miroslav Stampar 2013-02-14 15:32:16 +0100
  • 7944684ff2 This was supposed to be a separate commit (going to commit it in next one) Miroslav Stampar 2013-02-14 15:31:32 +0100