killchain-compendium/exploit/sqli/mssql.md

10 lines
124 B
Markdown

# MSSQL
# Usage
* `sqsh` as a shell
* After connection is established check `xp_cmdshell'
```sh
xp_cmdshell 'whoami';
```