Exploiting Second Order SQL Injection with Stored Procedures
netspi.com | vulnerability | #sql-injection | #second-order | #oob | #web-pentesting | #stored-procedures | #xp-dirtree | #dns-exfiltration
Summary
This walkthrough covers exploiting second-order SQL injection in an Excel report export feature, chaining stored procedure UNC path injection via xp_dirtree to exfiltrate database details over DNS.
- Published
- Collected
Skip to content