Thanks to visit codestin.com
Credit goes to github.com

Skip to content

Commit 04708c6

Browse files
committed
Minor improvement
1 parent 6823971 commit 04708c6

4 files changed

Lines changed: 9 additions & 9 deletions

File tree

lib/controller/action.py

Lines changed: 4 additions & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -181,7 +181,10 @@ def action():
181181
raise
182182

183183
if conf.sqlQuery:
184-
conf.dumper.sqlQuery(conf.sqlQuery, conf.dbmsHandler.sqlQuery(conf.sqlQuery))
184+
for query in conf.sqlQuery.strip(';').split(';'):
185+
query = query.strip()
186+
if query:
187+
conf.dumper.sqlQuery(query, conf.dbmsHandler.sqlQuery(query))
185188

186189
if conf.sqlShell:
187190
conf.dbmsHandler.sqlShell()

lib/core/settings.py

Lines changed: 1 addition & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -18,7 +18,7 @@
1818
from thirdparty.six import unichr as _unichr
1919

2020
# sqlmap version (<major>.<minor>.<month>.<monthly commit>)
21-
VERSION = "1.3.11.102"
21+
VERSION = "1.3.11.103"
2222
TYPE = "dev" if VERSION.count('.') > 2 and VERSION.split('.')[-1] != '0' else "stable"
2323
TYPE_COLORS = {"dev": 33, "stable": 90, "pip": 34}
2424
VERSION_STRING = "sqlmap/%s#%s" % ('.'.join(VERSION.split('.')[:-1]) if VERSION.count('.') > 2 and VERSION.split('.')[-1] == '0' else VERSION, TYPE)

lib/core/testing.py

Lines changed: 1 addition & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -80,7 +80,7 @@ def vulnTest():
8080
("-u '<url>&echo=foobar*' --flush-session", ("might be vulnerable to cross-site scripting",)),
8181
("-u '<url>&query=*' --flush-session --technique=Q --banner", ("Title: SQLite inline queries", "banner: '3")),
8282
("-d <direct> --flush-session --dump -T users --binary-fields=name --where \"id=3\"", ("7775", "179ad45c6ce2cb97cf1029e212046e81 (testpass)",)),
83-
("-d <direct> --flush-session --banner --schema --sql-query=\"SELECT 987654321\"", ("banner: '3", "INTEGER", "TEXT", "id", "name", "surname", "[*] 987654321",)),
83+
("-d <direct> --flush-session --banner --schema --sql-query=\"UPDATE users SET name='foobar' WHERE id=5; SELECT * FROM users; SELECT 987654321\"", ("banner: '3", "INTEGER", "TEXT", "id", "name", "surname", "5, foobar, nameisnull", "[*] 987654321",)),
8484
)
8585

8686
retVal = True

plugins/generic/custom.py

Lines changed: 3 additions & 6 deletions
Original file line numberDiff line numberDiff line change
@@ -61,16 +61,13 @@ def sqlQuery(self, query):
6161
return None
6262
else:
6363
if sqlType:
64-
debugMsg = "executing %s query: '%s'" % (sqlType if sqlType is not None else "SQL", query)
64+
infoMsg = "executing %s statement: '%s'" % (sqlType if sqlType is not None else "SQL", query)
6565
else:
66-
debugMsg = "executing unknown SQL type query: '%s'" % query
67-
logger.debug(debugMsg)
66+
infoMsg = "executing unknown SQL command: '%s'" % query
67+
logger.info(infoMsg)
6868

6969
inject.goStacked(query)
7070

71-
debugMsg = "done"
72-
logger.debug(debugMsg)
73-
7471
output = NULL
7572

7673
except SqlmapNoneDataException as ex:

0 commit comments

Comments
 (0)