sqsh
sqsh - Interactive database shell
sqsh common commands
# Connection
sqsh -S 10.10.10.143 -U username -P password
sqsh -S 10.11.1.31 -U sa -P poiuytrewq
# Check version
1> select @@version
2> go
# Check current user
1> select suser_sname()
2> go
# Check database names
1>SELECT name FROM master..sysdatabases
2>go
1>SELECT name FROM master.dbo.sysdatabases
2>go
# Check table names
1>SELECT * FROM <databaseName>.INFORMATION_SCHEMA.TABLES
SELECT * FROM master.INFORMATION_SCHEMA.TABLES # master database
2>go
1>SELECT name FROM master..sysobjects WHERE xtype = 'U'
2>go
# Check column names
1>SELECT name FROM syscolumns WHERE id =(SELECT id FROM sysobjects WHERE name = 'table_name')
2>go
# Extract data
1>SELECT colum_name_1 FROM table_name1
2>go
# Check hte users with sysadmin rights
1>select loginname from syslogins where sysadmin = 1
2>go
# Extract password hash
1>select name, password_hash from master.sys.sql_logins
2>gosqsh RCE commands
Check sqsh Responder commands section.
Last updated