mirror of
https://github.com/sqlmapproject/sqlmap.git
synced 2025-07-28 09:00:08 +03:00
override conf.csrfToken with the real name value
This commit is contained in:
parent
05888b6f7a
commit
87e9ec2b4b
|
@ -981,6 +981,8 @@ class Connect(object):
|
|||
|
||||
token = extractRegexResult(
|
||||
r"(?i)<input[^>]+\bname=[\"']?%s\b[^>]*\bvalue=[\"']?(?P<result>[^>'\"]*)" % csrfTokenPattern, page or "")
|
||||
conf.csrfToken = extractRegexResult(
|
||||
r"(?i)<input[^>]+\bname=[\"']?(?P<result>%s)\b[^>]*\bvalue=[\"']?[^>'\"]*" % csrfTokenPattern, page or "")[:-2]
|
||||
else:
|
||||
token = extractRegexResult(r"(?i)<input[^>]+\bname=[\"']?%s\b[^>]*\bvalue=[\"']?(?P<result>[^>'\"]*)" % re.escape(conf.csrfToken), page or "")
|
||||
|
||||
|
|
Loading…
Reference in New Issue
Block a user