Commit Graph

  • 74b19a0386 minor update Miroslav Stampar 2012-02-25 10:43:10 +0000
  • 5b67af3b20 minor update Miroslav Stampar 2012-02-24 15:03:39 +0000
  • 8a203ef79d making session data strictly dependent on url through HashDB helper functions Miroslav Stampar 2012-02-24 14:58:24 +0000
  • c36cbbb3ae minor fix Miroslav Stampar 2012-02-24 14:54:10 +0000
  • 26b33154ab optimal fix related to the last commit Miroslav Stampar 2012-02-24 14:28:41 +0000
  • 9d6fd2e507 bug fix for --schema --technique=BST Miroslav Stampar 2012-02-24 14:12:19 +0000
  • f94b91ad87 added helper function for HashDB data storing/retrieval Miroslav Stampar 2012-02-24 13:07:20 +0000
  • b481c0352f minor update Miroslav Stampar 2012-02-24 11:25:56 +0000
  • 1f6ce265b9 minor fix Miroslav Stampar 2012-02-24 11:05:04 +0000
  • 5afbd52b61 more update related to last commits Miroslav Stampar 2012-02-24 10:57:23 +0000
  • 570d3a19c2 more general fix Miroslav Stampar 2012-02-24 10:53:28 +0000
  • e8352e504f fixing problems with chars deletition by logging messages in inference mode Miroslav Stampar 2012-02-24 10:48:19 +0000
  • 71028a81f5 fix for proper retrieval of columns in SQLite Miroslav Stampar 2012-02-24 09:55:13 +0000
  • f9d2971474 minor just in case fix Miroslav Stampar 2012-02-23 16:37:06 +0000
  • 7941504c3a minor update Miroslav Stampar 2012-02-23 15:32:36 +0000
  • 0478e4166a minor justin case fix Miroslav Stampar 2012-02-23 15:19:20 +0000
  • 086c3a3662 minor fix Miroslav Stampar 2012-02-23 13:31:50 +0000
  • 82e2f27024 Minor doc update Bernardo Damele 2012-02-23 10:45:52 +0000
  • da22e82309 minor fix Miroslav Stampar 2012-02-23 10:29:55 +0000
  • 2866aaf4cf minor fixes Miroslav Stampar 2012-02-23 10:16:58 +0000
  • 4e44900039 minor update Miroslav Stampar 2012-02-23 10:01:45 +0000
  • 03070d17a6 minor update Miroslav Stampar 2012-02-23 09:40:03 +0000
  • a0106ff7b4 minor update of CHANGES Miroslav Stampar 2012-02-23 09:34:18 +0000
  • 6e54cb171f minor code restyling Miroslav Stampar 2012-02-22 15:53:36 +0000
  • 61a25418a9 minor update Miroslav Stampar 2012-02-22 10:45:10 +0000
  • b3bd4144f5 removing of unused imports together with some general code refactoring Miroslav Stampar 2012-02-22 10:40:11 +0000
  • 386e98a0e3 using UNION SELECT for where=..NEGATIVE Miroslav Stampar 2012-02-22 09:41:58 +0000
  • c9d570c83b minor update Miroslav Stampar 2012-02-21 13:49:30 +0000
  • 686eacda9a minor update regarding --hex Miroslav Stampar 2012-02-21 13:38:18 +0000
  • bcf3255fe1 implementation of switch --hex for 4 major DBMSes Miroslav Stampar 2012-02-21 11:44:48 +0000
  • 77723a7aee minor update Miroslav Stampar 2012-02-21 10:24:04 +0000
  • d70f4b7150 adding hex conversion functions to queries.xml for 4 major DBMSes Miroslav Stampar 2012-02-21 10:10:43 +0000
  • 3e4db6d140 minor fix for Python v2.6 Miroslav Stampar 2012-02-20 19:35:57 +0000
  • f55ad46119 Use %TEMP% environment variable as temporary directory (--tmp-path overwrites this btw) folder with direct connection (-d). Via SQL injection, env variables do not work apparently Bernardo Damele 2012-02-20 11:06:55 +0000
  • 08bf8c201f few minor fixes Miroslav Stampar 2012-02-20 10:24:55 +0000
  • bc4dd7c0dd fix for -g Miroslav Stampar 2012-02-20 10:02:19 +0000
  • 121148f27f There was no point relying on a support table (sqlmapoutput) to get the stdout of executed OS commands when using direct connection (-d) and it saves also number of requests. Also, BULK INSERT apparently does not work on MSSQL when running as Network Service (at least on Windows XP) so one more reason to avoid using support table. Minor fix also to threat MSSQL's EXEC statements as SELECT ones Bernardo Damele 2012-02-17 15:54:49 +0000
  • ebd40b3933 Minor bug fix to make --file-read and --os-bof syntactically work also with -d (direct connection) Bernardo Damele 2012-02-17 15:16:05 +0000
  • aee269cc14 gazillion changes, nothing will work, muhahaha Miroslav Stampar 2012-02-17 14:22:48 +0000
  • dcf7277a0f some more refactorings Miroslav Stampar 2012-02-16 14:42:28 +0000
  • 6632aa7308 some more refactoring Miroslav Stampar 2012-02-16 13:46:01 +0000
  • 32ca99da53 minor update of FAQ files Miroslav Stampar 2012-02-16 13:26:00 +0000
  • 17d9cc0c7a replaced tabs with spaces and removed some pesky unprintable chars Miroslav Stampar 2012-02-16 13:15:01 +0000
  • 844fc8addb minor cleanup Miroslav Stampar 2012-02-16 10:19:36 +0000
  • 0e23521adc some more refactoring Miroslav Stampar 2012-02-16 09:54:29 +0000
  • e1f86c97c4 minor refactoring Miroslav Stampar 2012-02-16 09:46:41 +0000
  • bcf9fc6c6f minor refactoring Miroslav Stampar 2012-02-16 09:32:47 +0000
  • 8d7912ad34 minor update and refactoring Miroslav Stampar 2012-02-15 14:05:50 +0000
  • bf923a97df minor update Miroslav Stampar 2012-02-15 13:45:10 +0000
  • 122db6e164 minor update Miroslav Stampar 2012-02-15 13:24:02 +0000
  • 9059d30312 adding first code example for SPL snippets Miroslav Stampar 2012-02-15 13:17:01 +0000
  • edeb4b6113 bug fix for --os-shell on Windows (echo ... > requires double quotes if the piped filename contains whitespace, otherwise doesn't hurt) Miroslav Stampar 2012-02-15 11:14:01 +0000
  • 35fa214a1e minor update (it was working before too, but this is cleaner) Miroslav Stampar 2012-02-15 10:14:29 +0000
  • 1c44d6d3c7 Fixed annoying bug that prevented proper checkBooleanExpression() function to work with direct connection (-d). Now DBMS fingerprint should work properly with -d Bernardo Damele 2012-02-14 17:29:00 +0000
  • 23cc8b6974 minor fix for special cases when parameter value contains html encoded characters Miroslav Stampar 2012-02-14 14:08:10 +0000
  • c1ab02494c minor grammar and cosmetics Miroslav Stampar 2012-02-14 13:18:37 +0000
  • bb5113980b minor update Miroslav Stampar 2012-02-14 10:27:56 +0000
  • 3f15c52188 minor change in workflow for "tainted" parameter values Miroslav Stampar 2012-02-14 09:26:52 +0000
  • 2604e73d88 minor change in workflow Miroslav Stampar 2012-02-13 11:18:47 +0000
  • 96f589fc89 minor fix Miroslav Stampar 2012-02-12 19:22:33 +0000
  • 8a2bd3897d minor output fix Miroslav Stampar 2012-02-12 19:11:54 +0000
  • 48583a9b8d update of THANKS file Miroslav Stampar 2012-02-12 19:01:36 +0000
  • c1368053e5 minor fix Miroslav Stampar 2012-02-12 18:46:25 +0000
  • 249cb48b0b minor fix Miroslav Stampar 2012-02-10 15:59:11 +0000
  • 6be95194a7 matter of concision Miroslav Stampar 2012-02-10 15:37:43 +0000
  • eab7a54e03 cosmetics Miroslav Stampar 2012-02-10 15:34:04 +0000
  • 92590d0d59 minor fix Miroslav Stampar 2012-02-10 15:26:55 +0000
  • e36e9de57e minor update by request Miroslav Stampar 2012-02-10 15:12:23 +0000
  • b140ef4a14 minor update (preparing for switching to HashDB from old sessionFile) Miroslav Stampar 2012-02-10 10:24:48 +0000
  • 7bca926a0b fixes, updates, patches Miroslav Stampar 2012-02-09 10:16:58 +0000
  • 948cf25de4 more consistent Miroslav Stampar 2012-02-09 09:53:40 +0000
  • 980367b7b2 minor update Miroslav Stampar 2012-02-09 09:48:47 +0000
  • 7e9e582eca minor update Miroslav Stampar 2012-02-08 14:23:57 +0000
  • 1d4b10dbd1 bug fix Miroslav Stampar 2012-02-08 13:55:50 +0000
  • 2662fe84f7 minor update Miroslav Stampar 2012-02-08 12:02:50 +0000
  • 85a4ef6593 minor update Miroslav Stampar 2012-02-08 12:00:03 +0000
  • 93d7d6c355 minor patch Miroslav Stampar 2012-02-08 10:38:58 +0000
  • 6bedb80ffa adding --force-ssl switch (most useful in combination with -r) Miroslav Stampar 2012-02-08 09:11:57 +0000
  • 11887f331d update of THANKS file Miroslav Stampar 2012-02-07 15:00:01 +0000
  • e50d64546f minor fix Miroslav Stampar 2012-02-07 14:57:48 +0000
  • 2b05ded9c3 just a makeup Miroslav Stampar 2012-02-07 12:05:23 +0000
  • b4f4a982e4 minor update Miroslav Stampar 2012-02-07 11:37:54 +0000
  • 11af0b1bbc minor fix Miroslav Stampar 2012-02-07 11:16:03 +0000
  • f7bf1fbe94 upgrade/fixes for direct DBMS access Miroslav Stampar 2012-02-07 10:46:55 +0000
  • af71e3c563 minor update Miroslav Stampar 2012-02-06 09:48:44 +0000
  • e94f86a1ad minor update Miroslav Stampar 2012-02-03 15:46:28 +0000
  • 22f4d5650f fix for retrieving version of backend OS on MSSQL Miroslav Stampar 2012-02-03 15:42:36 +0000
  • a48fc4efec minor update Miroslav Stampar 2012-02-03 15:32:23 +0000
  • e3466fa5d8 minor update Miroslav Stampar 2012-02-03 15:28:11 +0000
  • 2136b3447d better solution Miroslav Stampar 2012-02-03 15:22:21 +0000
  • f86c365694 added one more failsafe for MSSQL --tables Miroslav Stampar 2012-02-03 10:56:39 +0000
  • 8c45ff0d57 bug fix Miroslav Stampar 2012-02-03 10:38:04 +0000
  • c0f4b4632d Minor fix Bernardo Damele 2012-02-02 12:55:39 +0000
  • a7970d094a minor update Miroslav Stampar 2012-02-01 15:10:06 +0000
  • e56309f3b1 minor makeup update Miroslav Stampar 2012-02-01 15:04:56 +0000
  • 8405ef59ac some estetic updates Miroslav Stampar 2012-02-01 14:49:42 +0000
  • f4e7bf1d51 minor update regarding support for Unicode characters in Oracle Miroslav Stampar 2012-02-01 14:17:27 +0000
  • 704488a4e4 proper retrieval of unicode characters in inference mode on MSSQL Miroslav Stampar 2012-02-01 13:01:46 +0000
  • a6c2fc7ecc some refactoring on MSSQL support Miroslav Stampar 2012-02-01 12:53:07 +0000
  • df43157284 minor patch Miroslav Stampar 2012-02-01 12:28:06 +0000