Thanks to visit codestin.com
Credit goes to github.com

Skip to content

Commit 87bccf4

Browse files
committed
Patch related to the #4187
1 parent 1c17967 commit 87bccf4

2 files changed

Lines changed: 7 additions & 1 deletion

File tree

lib/core/settings.py

Lines changed: 1 addition & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -18,7 +18,7 @@
1818
from thirdparty.six import unichr as _unichr
1919

2020
# sqlmap version (<major>.<minor>.<month>.<monthly commit>)
21-
VERSION = "1.4.5.4"
21+
VERSION = "1.4.5.5"
2222
TYPE = "dev" if VERSION.count('.') > 2 and VERSION.split('.')[-1] != '0' else "stable"
2323
TYPE_COLORS = {"dev": 33, "stable": 90, "pip": 34}
2424
VERSION_STRING = "sqlmap/%s#%s" % ('.'.join(VERSION.split('.')[:-1]) if VERSION.count('.') > 2 and VERSION.split('.')[-1] == '0' else VERSION, TYPE)

lib/techniques/union/use.py

Lines changed: 6 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -167,6 +167,12 @@ def _(regex):
167167
warnMsg += "(probably due to its length and/or content): "
168168
warnMsg += safecharencode(trimmed)
169169
logger.warn(warnMsg)
170+
elif re.search(r"ORDER BY [^ ]+\Z", expression):
171+
debugMsg = "retrying failed SQL query without the ORDER BY clause"
172+
logger.debug(debugMsg)
173+
174+
expression = re.sub(r"\s*ORDER BY [^ ]+\Z", "", expression)
175+
retVal = _oneShotUnionUse(expression, unpack=True, limited=False)
170176
else:
171177
vector = kb.injection.data[PAYLOAD.TECHNIQUE.UNION].vector
172178
kb.unionDuplicates = vector[7]

0 commit comments

Comments
 (0)