sqlmap-database-pentesting

Fail

Audited by Gen Agent Trust Hub on Jun 21, 2026

Risk Level: HIGHCOMMAND_EXECUTIONDATA_EXFILTRATIONCREDENTIALS_UNSAFE
Full Analysis
  • [COMMAND_EXECUTION]: Provides specific command-line instructions for obtaining interactive OS shell access on remote servers using the --os-shell flag.
  • [COMMAND_EXECUTION]: Details how to execute arbitrary operating system commands on target machines using the --os-cmd parameter.
  • [DATA_EXFILTRATION]: Facilitates the bulk extraction of sensitive database content through the --dump and --dump-all commands.
  • [DATA_EXFILTRATION]: Instructs on how to read sensitive system files from the target's local file system, such as /etc/passwd, using the --file-read option.
  • [CREDENTIALS_UNSAFE]: Enables the retrieval of administrative credentials and the automated cracking of password hashes with the --passwords flag.
Recommendations
  • AI detected serious security threats
Audit Metadata
Risk Level
HIGH
Analyzed
Jun 21, 2026, 09:19 AM
Security Audit — agent-trust-hub — sqlmap-database-pentesting