Web - Server

Saturday 28 April 2018, 18:52  #1
Web - Server SQL Truncation
catn0b0t
  • 3 posts

This one had me puzzled for a moment but that is basically because the attached document isn’t really helping you (I think).

Truncation is actually really easy to exploit and if you’ve ever worked seriously with sql-server you need to dig in your mind and remember that time you tried to execute dynamic sql which in some cases rendered beyond the varchar-limit of 4000 characters.

Now, the hint, just watch this video: https://www.youtube.com/watch?v=F1Tm4b57ors

cheers, have fun!

Friday 7 February 2020, 11:11  #2
Web - Server SQL Truncation
ackbar03
  • 6 posts

This was very helpful, the video was very informative thank you for that.

Yes, their provided material was not really useful, if not a bit confusing... I feel like they do it on purpose sometimes.

Saturday 19 December 2020, 21:49  #3
Web - Server SQL Truncation
OSTEONE
  • 12 posts

this very cool guys thank you help me much