Web Hack List

Collected research

Lateral SQL Injection

Shows how Oracle session settings can influence supposedly safe DATE values embedded in dynamic SQL. Changing NLS_DATE_FORMAT introduces SQL through date parameters or SYSDATE, reaching procedures with no direct user input and enabling privilege escalation with cursor injection. It also demonstrates quote insertion through numeric formatting, while limiting claims about its exploitability.

Record

Researcher
David Litchfield
Published by
NGSSoftware
Format
Whitepaper
Topic
Injection

In the archive

Tags

This page is the archive's own catalogue record. The research is the work of David Litchfield, first published at the original source. Preserved copies are kept so the citation survives its host; this one was last captured on .