From 9e17b096326141328b5e6bbe13568cad26557fdb Mon Sep 17 00:00:00 2001 From: sinn3r Date: Fri, 17 Feb 2012 18:17:28 -0600 Subject: [PATCH] This module is only meant to handle GET and PUT, so let's be strict on that --- modules/auxiliary/scanner/http/error_sql_injection.rb | 4 ++-- 1 file changed, 2 insertions(+), 2 deletions(-) diff --git a/modules/auxiliary/scanner/http/error_sql_injection.rb b/modules/auxiliary/scanner/http/error_sql_injection.rb index 7a0b9fd4ea..371a3a217b 100644 --- a/modules/auxiliary/scanner/http/error_sql_injection.rb +++ b/modules/auxiliary/scanner/http/error_sql_injection.rb @@ -36,9 +36,9 @@ class Metasploit3 < Msf::Auxiliary register_options( [ - OptString.new('METHOD', [ true, "HTTP Method",'GET']), + OptEnum.new('METHOD', [true, 'HTTP Request Method', 'GET', ['GET', 'POST']]), OptString.new('PATH', [ true, "The path/file to test SQL injection", '/default.aspx']), - OptString.new('QUERY', [ false, "HTTP URI Query", '']), + OptString.new('QUERY',[ false, "HTTP URI Query", '']), OptString.new('DATA', [ false, "HTTP Body/Data Query", '']) ], self.class)