mirror of
				https://github.com/sqlmapproject/sqlmap.git
				synced 2025-10-26 21:51:12 +03:00 
			
		
		
		
	Major bug fix to forge SQL injection payload on Oracle
This commit is contained in:
		
							parent
							
								
									bc448211c5
								
							
						
					
					
						commit
						fd7cb9101c
					
				|  | @ -334,7 +334,7 @@ class Agent: | ||||||
|             elif fieldsNoSelect: |             elif fieldsNoSelect: | ||||||
|                 concatQuery = "'%s'||%s||'%s'" % (temp.start, concatQuery, temp.stop) |                 concatQuery = "'%s'||%s||'%s'" % (temp.start, concatQuery, temp.stop) | ||||||
| 
 | 
 | ||||||
|             if kb.dbms == "Oracle" and ( fieldsSelect or fieldsNoSelect ): |             if kb.dbms == "Oracle" and " FROM " not in concatQuery and ( fieldsSelect or fieldsNoSelect ): | ||||||
|                 concatQuery += " FROM DUAL" |                 concatQuery += " FROM DUAL" | ||||||
| 
 | 
 | ||||||
|         elif kb.dbms == "Microsoft SQL Server": |         elif kb.dbms == "Microsoft SQL Server": | ||||||
|  |  | ||||||
		Loading…
	
		Reference in New Issue
	
	Block a user