You can not select more than 25 topics
Topics must start with a letter or number, can include dashes ('-') and can be up to 35 characters long.
This file contains ambiguous Unicode characters that may be confused with others in your current locale. If your use case is intentional and legitimate, you can safely ignore this warning. Use the Escape button to highlight these characters.
#!/usr/bin/env python
"""
Copyright (c) 2006-2024 sqlmap developers (https://sqlmap.org/)
See the file ' LICENSE ' for copying permission
"""
import string
from lib . core . enums import PRIORITY
__priority__ = PRIORITY . LOWEST
def dependencies ( ) :
pass
def tamper ( payload , * * kwargs ) :
"""
Converts all characters in a given payload to overlong UTF8 (not processing already encoded) (e.g. SELECT -> % C1 %93% C1 %85% C1 % 8C % C1 %85% C1 %83% C1 % 94)
Reference:
* https://www.acunetix.com/vulnerabilities/unicode-transformation-issues/
* https://www.thecodingforums.com/threads/newbie-question-about-character-encoding-what-does-0xc0-0x8a-have-in-common-with-0xe0-0x80-0x8a.170201/
>>> tamper( ' SELECT FIELD FROM TABLE WHERE 2>1 ' )
' % C1 %93% C1 %85% C1 % 8C % C1 %85% C1 %83% C1 %94% C0 % A0 % C1 %86% C1 %89% C1 %85% C1 % 8C % C1 %84% C0 % A0 % C1 %86% C1 %92% C1 %8F % C1 % 8D % C0 % A0 % C1 %94% C1 %81% C1 %82% C1 % 8C % C1 %85% C0 % A0 % C1 %97% C1 %88% C1 %85% C1 %92% C1 %85% C0 % A0 % C0 % B2 % C0 % BE % C0 % B1 '
"""
retVal = payload
if payload :
retVal = " "
i = 0
while i < len ( payload ) :
# 如果当前字符是%,并且后面两个字符是十六进制数字,则认为这是一个已经编码的字符
if payload [ i ] == ' % ' and ( i < len ( payload ) - 2 ) and payload [ i + 1 : i + 2 ] in string . hexdigits and payload [ i + 2 : i + 3 ] in string . hexdigits :
retVal + = payload [ i : i + 3 ]
i + = 3
else :
# 将当前字符转换为overlong UTF8编码
# 每个字符被编码为两个字节, 第一个字节的高位设置为10( 0xC0) , 第二个字节的高位设置为10( 0x80)
retVal + = " %% %.2X %% %.2X " % ( 0xc0 + ( ord ( payload [ i ] ) >> 6 ) , 0x80 + ( ord ( payload [ i ] ) & 0x3f ) )
i + = 1
return retVal