Book a Demo!
CoCalc Logo Icon
StoreFeaturesDocsShareSupportNewsAboutPoliciesSign UpSign In
sqlmapproject
GitHub Repository: sqlmapproject/sqlmap
Path: blob/master/plugins/dbms/snowflake/fingerprint.py
3557 views
1
#!/usr/bin/env python
2
3
"""
4
Copyright (c) 2006-2026 sqlmap developers (https://sqlmap.org)
5
See the file 'LICENSE' for copying permission
6
"""
7
8
from lib.core.common import Backend
9
from lib.core.common import Format
10
from lib.core.data import conf
11
from lib.core.data import kb
12
from lib.core.data import logger
13
from lib.core.enums import DBMS
14
from lib.core.session import setDbms
15
from lib.core.settings import SNOWFLAKE_ALIASES
16
from lib.request import inject
17
from plugins.generic.fingerprint import Fingerprint as GenericFingerprint
18
19
class Fingerprint(GenericFingerprint):
20
def __init__(self):
21
GenericFingerprint.__init__(self, DBMS.SNOWFLAKE)
22
23
def getFingerprint(self):
24
value = ""
25
wsOsFp = Format.getOs("web server", kb.headersFp)
26
27
if wsOsFp:
28
value += "%s\n" % wsOsFp
29
30
if kb.data.banner:
31
dbmsOsFp = Format.getOs("back-end DBMS", kb.bannerFp)
32
33
if dbmsOsFp:
34
value += "%s\n" % dbmsOsFp
35
36
value += "back-end DBMS: "
37
38
if not conf.extensiveFp:
39
value += DBMS.SNOWFLAKE
40
return value
41
42
actVer = Format.getDbms()
43
blank = " " * 15
44
value += "active fingerprint: %s" % actVer
45
46
if kb.bannerFp:
47
banVer = kb.bannerFp.get("dbmsVersion")
48
49
if banVer:
50
banVer = Format.getDbms([banVer])
51
value += "\n%sbanner parsing fingerprint: %s" % (blank, banVer)
52
53
htmlErrorFp = Format.getErrorParsedDBMSes()
54
55
if htmlErrorFp:
56
value += "\n%shtml error message fingerprint: %s" % (blank, htmlErrorFp)
57
58
return value
59
60
def checkDbms(self):
61
"""
62
References for fingerprint:
63
64
* https://docs.snowflake.com/en/sql-reference/functions/current_warehouse
65
* https://docs.snowflake.com/en/sql-reference/functions/md5_number_upper64
66
"""
67
68
if not conf.extensiveFp and Backend.isDbmsWithin(SNOWFLAKE_ALIASES):
69
setDbms("%s %s" % (DBMS.SNOWFLAKE, Backend.getVersion()))
70
self.getBanner()
71
return True
72
73
infoMsg = "testing %s" % DBMS.SNOWFLAKE
74
logger.info(infoMsg)
75
76
result = inject.checkBooleanExpression("CURRENT_WAREHOUSE()=CURRENT_WAREHOUSE()")
77
if result:
78
infoMsg = "confirming %s" % DBMS.SNOWFLAKE
79
logger.info(infoMsg)
80
81
result = inject.checkBooleanExpression("MD5_NUMBER_UPPER64('[RANDSTR]')=MD5_NUMBER_UPPER64('[RANDSTR]')")
82
if not result:
83
warnMsg = "the back-end DBMS is not %s" % DBMS.SNOWFLAKE
84
logger.warning(warnMsg)
85
return False
86
87
setDbms(DBMS.SNOWFLAKE)
88
self.getBanner()
89
return True
90
91
else:
92
warnMsg = "the back-end DBMS is not %s" % DBMS.SNOWFLAKE
93
logger.warning(warnMsg)
94
95
return False
96
97