mirror of
				https://github.com/sqlmapproject/sqlmap.git
				synced 2025-11-04 18:07:46 +03:00 
			
		
		
		
	Fixes #2692
This commit is contained in:
		
							parent
							
								
									f67f26cebd
								
							
						
					
					
						commit
						93cb879e5d
					
				| 
						 | 
				
			
			@ -113,7 +113,7 @@ class Agent(object):
 | 
			
		|||
            if kb.postHint in (POST_HINT.SOAP, POST_HINT.XML):
 | 
			
		||||
                origValue = origValue.split('>')[-1]
 | 
			
		||||
            elif kb.postHint in (POST_HINT.JSON, POST_HINT.JSON_LIKE):
 | 
			
		||||
                origValue = extractRegexResult(r"(?s)\"\s*:\s*(?P<result>\d+\Z)", origValue) or extractRegexResult(r'(?s)\s*(?P<result>[^"\[,]+\Z)', origValue)
 | 
			
		||||
                origValue = extractRegexResult(r"(?s)\"\s*:\s*(?P<result>\d+\Z)", origValue) or extractRegexResult(r'(?s)[\s:]*(?P<result>[^"\[,]+\Z)', origValue)
 | 
			
		||||
            else:
 | 
			
		||||
                _ = extractRegexResult(r"(?s)(?P<result>[^\s<>{}();'\"&]+\Z)", origValue) or ""
 | 
			
		||||
                origValue = _.split('=', 1)[1] if '=' in _ else ""
 | 
			
		||||
| 
						 | 
				
			
			
 | 
			
		|||
| 
						 | 
				
			
			@ -19,7 +19,7 @@ from lib.core.enums import DBMS_DIRECTORY_NAME
 | 
			
		|||
from lib.core.enums import OS
 | 
			
		||||
 | 
			
		||||
# sqlmap version (<major>.<minor>.<month>.<monthly commit>)
 | 
			
		||||
VERSION = "1.1.9.11"
 | 
			
		||||
VERSION = "1.1.9.12"
 | 
			
		||||
TYPE = "dev" if VERSION.count('.') > 2 and VERSION.split('.')[-1] != '0' else "stable"
 | 
			
		||||
TYPE_COLORS = {"dev": 33, "stable": 90, "pip": 34}
 | 
			
		||||
VERSION_STRING = "sqlmap/%s#%s" % ('.'.join(VERSION.split('.')[:-1]) if VERSION.count('.') > 2 and VERSION.split('.')[-1] == '0' else VERSION, TYPE)
 | 
			
		||||
| 
						 | 
				
			
			
 | 
			
		|||
| 
						 | 
				
			
			@ -142,8 +142,8 @@ def _setRequestParams():
 | 
			
		|||
                    conf.data = getattr(conf.data, UNENCODED_ORIGINAL_VALUE, conf.data)
 | 
			
		||||
                    conf.data = conf.data.replace(kb.customInjectionMark, ASTERISK_MARKER)
 | 
			
		||||
                    conf.data = re.sub(r'("(?P<name>[^"]+)"\s*:\s*"[^"]*)"', functools.partial(process, repl=r'\g<1>%s"' % kb.customInjectionMark), conf.data)
 | 
			
		||||
                    conf.data = re.sub(r'("(?P<name>[^"]+)"\s*:\s*)(-?\d[\d\.]*)\b', functools.partial(process, repl=r'\g<1>"\g<3>%s"' % kb.customInjectionMark), conf.data)
 | 
			
		||||
                    conf.data = re.sub(r'("(?P<name>[^"]+)"\s*:\s*)((true|false|null))\b', functools.partial(process, repl=r'\g<1>"\g<3>%s"' % kb.customInjectionMark), conf.data)
 | 
			
		||||
                    conf.data = re.sub(r'("(?P<name>[^"]+)"\s*:\s*)(-?\d[\d\.]*)\b', functools.partial(process, repl=r'\g<1>\g<3>%s' % kb.customInjectionMark), conf.data)
 | 
			
		||||
                    conf.data = re.sub(r'("(?P<name>[^"]+)"\s*:\s*)((true|false|null))\b', functools.partial(process, repl=r'\g<1>\g<3>%s' % kb.customInjectionMark), conf.data)
 | 
			
		||||
                    match = re.search(r'(?P<name>[^"]+)"\s*:\s*\[([^\]]+)\]', conf.data)
 | 
			
		||||
                    if match and not (conf.testParameter and match.group("name") not in conf.testParameter):
 | 
			
		||||
                        _ = match.group(2)
 | 
			
		||||
| 
						 | 
				
			
			
 | 
			
		|||
| 
						 | 
				
			
			@ -25,7 +25,7 @@ c55b400b72acc43e0e59c87dd8bb8d75  extra/shellcodeexec/windows/shellcodeexec.x32.
 | 
			
		|||
a66093c734c7f94ecdf94d882c2d8b89  lib/controller/controller.py
 | 
			
		||||
926bdaf98d082a41fdd57bb41c1692d1  lib/controller/handler.py
 | 
			
		||||
310efc965c862cfbd7b0da5150a5ad36  lib/controller/__init__.py
 | 
			
		||||
9f1adb993f66da030a4168571978e6fa  lib/core/agent.py
 | 
			
		||||
5a15aba70e75749ada5c194aba640de3  lib/core/agent.py
 | 
			
		||||
6cc95a117fbd34ef31b9aa25520f0e31  lib/core/bigarray.py
 | 
			
		||||
8dafb651e35d90c05ffe08bf2a9832ae  lib/core/common.py
 | 
			
		||||
9edefb92b0b9cad862543fcd587aaa66  lib/core/convert.py
 | 
			
		||||
| 
						 | 
				
			
			@ -46,10 +46,10 @@ c5f09788ee8ff9c9d12a052986875bc6  lib/core/option.py
 | 
			
		|||
d8e9250f3775119df07e9070eddccd16  lib/core/replication.py
 | 
			
		||||
785f86e3f963fa3798f84286a4e83ff2  lib/core/revision.py
 | 
			
		||||
40c80b28b3a5819b737a5a17d4565ae9  lib/core/session.py
 | 
			
		||||
d3d234152b3f74559d5fadff31a100da  lib/core/settings.py
 | 
			
		||||
0a387452776db9ef7f0648048f965561  lib/core/settings.py
 | 
			
		||||
d91291997d2bd2f6028aaf371bf1d3b6  lib/core/shell.py
 | 
			
		||||
2ad85c130cc5f2b3701ea85c2f6bbf20  lib/core/subprocessng.py
 | 
			
		||||
1576b63db3261e2afd5459189abf967b  lib/core/target.py
 | 
			
		||||
effc153067a00bd43461bfc1cdec1122  lib/core/target.py
 | 
			
		||||
8970b88627902239d695280b1160e16c  lib/core/testing.py
 | 
			
		||||
40881e63d516d8304fc19971049cded0  lib/core/threads.py
 | 
			
		||||
ad74fc58fc7214802fd27067bce18dd2  lib/core/unescaper.py
 | 
			
		||||
| 
						 | 
				
			
			
 | 
			
		|||
		Loading…
	
		Reference in New Issue
	
	Block a user