Re: [sqlmap-users] Fwd: sqlmap and follow redirections sql-inj
Brought to you by:
inquisb
From: Miroslav S. <mir...@gm...> - 2011-01-29 22:24:16
|
Hi. How many columns? Have you tried to exploit it manually? Have you tried to use --union-cols? KR On Sat, Jan 29, 2011 at 8:40 PM, Valentin Kurkov <zac...@gm...> wrote: > > > ---------- Forwarded message ---------- > From: Valentin Kurkov <zac...@gm...> > Date: 2011/1/29 > Subject: Re: [sqlmap-users] sqlmap and follow redirections sql-inj > To: "Bernardo Damele A. G." <ber...@gm...> > > > update sqlmap from svn upto revision 3127,but now sqlmap don`t detect a > sql-inj,even only with -u "http://url.com/test.php?id=1" .And,Of course, no > following redirection(( > > > 2011/1/28 Bernardo Damele A. G. <ber...@gm...> >> >> Svn update and try with latest version. Http redirects should be well >> supported now. >> >> Bernardo Damele A. G. >> >> This message was sent from a smartphone >> >> On 28 Jan 2011, at 17:59, Valentin Kurkov <zac...@gm...> wrote: >> >> > i have an 0.8 version,but don`t find no info about following redirection >> > on the page for union based sql(else -just blind sql).Maybe in future >> > releases this functions will be add?) >> > >> > ------------------------------------------------------------------------------ >> > Special Offer-- Download ArcSight Logger for FREE (a $49 USD value)! >> > Finally, a world-class log management solution at an even better >> > price-free! >> > Download using promo code Free_Logger_4_Dev2Dev. Offer expires >> > February 28th, so secure your free ArcSight Logger TODAY! >> > http://p.sf.net/sfu/arcsight-sfd2d >> > _______________________________________________ >> > sqlmap-users mailing list >> > sql...@li... >> > https://lists.sourceforge.net/lists/listinfo/sqlmap-users > > > > ------------------------------------------------------------------------------ > Special Offer-- Download ArcSight Logger for FREE (a $49 USD value)! > Finally, a world-class log management solution at an even better price-free! > Download using promo code Free_Logger_4_Dev2Dev. Offer expires > February 28th, so secure your free ArcSight Logger TODAY! > http://p.sf.net/sfu/arcsight-sfd2d > _______________________________________________ > sqlmap-users mailing list > sql...@li... > https://lists.sourceforge.net/lists/listinfo/sqlmap-users > > -- Miroslav Stampar E-mail / Jabber: miroslav.stampar (at) gmail.com Mobile: +385921010204 (HR 0921010204) PGP Key ID: 0xB5397B1B Location: Zagreb, Croatia |