8000 扫描插件误报 · Issue #10 · iceyhexman/onlinetools · GitHub
[go: up one dir, main page]
More Web Proxy on the site http://driver.im/
Skip to content
This repository was archived by the owner on Apr 7, 2023. It is now read-only.
This repository was archived by the owner on Apr 7, 2023. It is now read-only.
扫描插件误报 #10
Open
Open
@MagicZer0

Description

@MagicZer0

插件位置:
scanner/plugins/cms/zfsoft/zfsoft_database_control.py

该漏洞检测插件判断原理是拆分用户提交的主机和端口,然后socket直接连接,连接成功就认为存在该漏洞。这是绝对不严谨的。比如127.0.0.1:8080开着就存在这个漏洞。

Metadata

Metadata

Assignees

No one assigned

    Labels

    No labels
    No labels

    Projects

    No projects

    Milestone

    No milestone

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions

      0