From 12883cac166701434354d3aed7c7de6f1f8ca8c6 Mon Sep 17 00:00:00 2001 From: Miroslav Stampar Date: Mon, 7 Jan 2019 13:45:01 +0100 Subject: [PATCH] Minor update --- lib/core/settings.py | 2 +- txt/checksum.md5 | 4 ++-- waf/reblaze.py | 3 ++- 3 files changed, 5 insertions(+), 4 deletions(-) diff --git a/lib/core/settings.py b/lib/core/settings.py index d673b455e..c59dc1023 100644 --- a/lib/core/settings.py +++ b/lib/core/settings.py @@ -19,7 +19,7 @@ from lib.core.enums import DBMS_DIRECTORY_NAME from lib.core.enums import OS # sqlmap version (...) -VERSION = "1.3.1.8" +VERSION = "1.3.1.9" TYPE = "dev" if VERSION.count('.') > 2 and VERSION.split('.')[-1] != '0' else "stable" TYPE_COLORS = {"dev": 33, "stable": 90, "pip": 34} VERSION_STRING = "sqlmap/%s#%s" % ('.'.join(VERSION.split('.')[:-1]) if VERSION.count('.') > 2 and VERSION.split('.')[-1] == '0' else VERSION, TYPE) diff --git a/txt/checksum.md5 b/txt/checksum.md5 index f9654769d..60cb8d989 100644 --- a/txt/checksum.md5 +++ b/txt/checksum.md5 @@ -49,7 +49,7 @@ fe370021c6bc99daf44b2bfc0d1effb3 lib/core/patch.py 9a7d68d5fa01561500423791f15cc676 lib/core/replication.py 3179d34f371e0295dd4604568fb30bcd lib/core/revision.py d6269c55789f78cf707e09a0f5b45443 lib/core/session.py -f483f079c8682b64940e78c6b75bac77 lib/core/settings.py +114e8b6f28ec0c03f083dd15bf257b28 lib/core/settings.py a8a7501d1e6b21669b858a62e921d191 lib/core/shell.py 5dc606fdf0afefd4b305169c21ab2612 lib/core/subprocessng.py eec3080ba5baca44c6de4595f1c92a0d lib/core/target.py @@ -448,7 +448,7 @@ a59aff03a5b3fb40ea0feb3489677040 waf/onmessage.py 2979bb64c24256a83625d75a385dde9b waf/profense.py 8de0d46738335a4e498c4ac9038ac3c3 waf/proventia.py ac60456fe7af4eb501d448910e98ee4b waf/radware.py -dba6a3b52851d2d7a0a1ab83a51caa5a waf/reblaze.py +1315066be1abb4f1d34290239be0af14 waf/reblaze.py 987389e4f403b7615d6d8006420a6260 waf/requestvalidationmode.py 8dae5619edafaaceccf1c4eb051c7d22 waf/rsfirewall.py 2a7b234e903d13b3c21d6c17e05d1c46 waf/safe3.py diff --git a/waf/reblaze.py b/waf/reblaze.py index a5a6a7936..0dd5c6546 100644 --- a/waf/reblaze.py +++ b/waf/reblaze.py @@ -16,9 +16,10 @@ def detect(get_page): retval = False for vector in WAF_ATTACK_VECTORS: - _, headers, _ = get_page(get=vector) + page, headers, _ = get_page(get=vector) retval = re.search(r"\Arbzid=", headers.get(HTTP_HEADER.SET_COOKIE, ""), re.I) is not None retval |= re.search(r"Reblaze Secure Web Gateway", headers.get(HTTP_HEADER.SERVER, ""), re.I) is not None + retval |= all(_ in (page or "") for _ in ("Current session has been terminated", "For further information, do not hesitate to contact us", "Access denied (403)")) if retval: break