sqlmap-database-pentesting
Fail
Audited by Gen Agent Trust Hub on Jun 21, 2026
Risk Level: HIGHCOMMAND_EXECUTIONDATA_EXFILTRATIONCREDENTIALS_UNSAFE
Full Analysis
- [COMMAND_EXECUTION]: Provides specific command-line instructions for obtaining interactive OS shell access on remote servers using the --os-shell flag.
- [COMMAND_EXECUTION]: Details how to execute arbitrary operating system commands on target machines using the --os-cmd parameter.
- [DATA_EXFILTRATION]: Facilitates the bulk extraction of sensitive database content through the --dump and --dump-all commands.
- [DATA_EXFILTRATION]: Instructs on how to read sensitive system files from the target's local file system, such as /etc/passwd, using the --file-read option.
- [CREDENTIALS_UNSAFE]: Enables the retrieval of administrative credentials and the automated cracking of password hashes with the --passwords flag.
Recommendations
- AI detected serious security threats
Audit Metadata