Need help with dumping boolean based error MS SQL
by - Thursday, January 1, 1970 at 12:00 AM
Hi,

I know of a vulnerable site, using blind boolean based technique you can exploit the db. It works with sql map but due to the nature of the technique, it takes forever.

I have tried sqli dumper but it doesn't seem to pick it up, even if i try and manually configure it.

Could anyone advise a better way of dumping this? Happy to share the db if successful
Reply
With boolean based blind did you verify what are the privileges for the current database and user instead of dumping data?
[align=justify]:kappa: [/align]
Reply
(April 5, 2022, 07:38 AM)onlyengilsh Wrote: With boolean based blind did you verify what are the privileges for the current database and user instead of dumping data?


I can't find the address of the database, I have found the origin ip of the webserver but it isn't running ms-sql, Im currently trying to find that then will look into attempting to connect directly to the database, any suggestions for finding a way to remote connect? 

The version is ms msql server 2012 11.0.2, so may even be able to exploit it with a CVE
Reply
The thread is few months old but this might help in some cases
DNS Exfiltration through Blind SQL Injection in a MS-SQL Environment Using Burp Collaborator

Reply
niiice workkkkkk
Reply


 Users viewing this thread: Need help with dumping boolean based error MS SQL: No users currently viewing.