putting kb.negativeLogic setting to the safe place

This commit is contained in:
Miroslav Stampar
2012-03-16 09:17:11 +00:00
parent 209e795369
commit 577caac4de
3 changed files with 2 additions and 10 deletions

View File

@@ -322,9 +322,6 @@ def checkSqlInjection(place, parameter, value):
boundPayload = agent.suffixQuery(boundPayload, comment, suffix, where)
cmpPayload = agent.payload(place, parameter, newValue=boundPayload, where=where)
pushValue(kb.negativeLogic)
kb.negativeLogic = "OR NOT" in cmpPayload
return cmpPayload
# Useful to set kb.matchRatio at first based on
@@ -350,8 +347,6 @@ def checkSqlInjection(place, parameter, value):
injectable = True
kb.negativeLogic = popValue()
# In case of error-based SQL injection
elif method == PAYLOAD.METHOD.GREP:
# Perform the test's request and grep the response