mirror of
https://github.com/sqlmapproject/sqlmap
synced 2026-01-20 23:21:55 +01:00
Major bug fix to forge SQL injection payload on Oracle
This commit is contained in:
parent
bc448211c5
commit
fd7cb9101c
1 changed files with 1 additions and 1 deletions
|
|
@ -334,7 +334,7 @@ class Agent:
|
|||
elif fieldsNoSelect:
|
||||
concatQuery = "'%s'||%s||'%s'" % (temp.start, concatQuery, temp.stop)
|
||||
|
||||
if kb.dbms == "Oracle" and ( fieldsSelect or fieldsNoSelect ):
|
||||
if kb.dbms == "Oracle" and " FROM " not in concatQuery and ( fieldsSelect or fieldsNoSelect ):
|
||||
concatQuery += " FROM DUAL"
|
||||
|
||||
elif kb.dbms == "Microsoft SQL Server":
|
||||
|
|
|
|||
Loading…
Reference in a new issue